Create Interactive Tour

Analysis Report https://drive.google.com/file/d/1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9/view?usp=drivesdk

Overview

General Information

Sample URL:https://drive.google.com/file/d/1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9/view?usp=drivesdk
Analysis ID:347664

Most interesting Screenshot:

Detection

Score:1
Range:0 - 100
Whitelisted:false
Confidence:80%

Signatures

Found iframes
Unusual large HTML page

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64
  • iexplore.exe (PID: 6880 cmdline: 'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding MD5: 6465CB92B25A7BC1DF8E01D8AC5E7596)
    • iexplore.exe (PID: 6936 cmdline: 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6880 CREDAT:17410 /prefetch:2 MD5: 071277CC2E3DF41EEEA8013E2AB58D5A)
  • cleanup

Malware Configuration

No configs have been found

Yara Overview

No yara matches

Sigma Overview

No Sigma rule has matched

Signature Overview

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://accounts.google.com/o/oauth2/postmessageRelay?parent=https%3A%2F%2Fsupport.google.com&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#rpctoken=1168259865&forcesecure=1
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://scone-pa.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#parent=https%3A%2F%2Fsupport.google.com&rpctoken=1550688045
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://realtimesupport.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#parent=https%3A%2F%2Fsupport.google.com&rpctoken=958152234
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Iframe src: https://accounts.youtube.com/accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1457805394&timestamp=1612302605386
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Iframe src: /_/bscframe
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://accounts.google.com/o/oauth2/postmessageRelay?parent=https%3A%2F%2Fsupport.google.com&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#rpctoken=1168259865&forcesecure=1
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://scone-pa.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#parent=https%3A%2F%2Fsupport.google.com&rpctoken=1550688045
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: Iframe src: https://realtimesupport.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__#parent=https%3A%2F%2Fsupport.google.com&rpctoken=958152234
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Iframe src: https://accounts.youtube.com/accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1457805394&timestamp=1612302605386
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Iframe src: /_/bscframe
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Total size: 1597634
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: Total size: 1597634
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: No <meta name="author".. found
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: No <meta name="author".. found
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: No <meta name="author".. found
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: No <meta name="author".. found
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: No <meta name="copyright".. found
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: No <meta name="copyright".. found
Source: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1HTTP Parser: No <meta name="copyright".. found
Source: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&flowName=GlifWebSignIn&flowEntry=ServiceLoginHTTP Parser: No <meta name="copyright".. found

Compliance:

barindex
Uses new MSVCR Dlls
Source: C:\Program Files (x86)\Internet Explorer\iexplore.exeFile opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\msvcr100.dllJump to behavior
Uses secure TLS version for HTTPS connections
Source: unknownHTTPS traffic detected: 172.217.23.1:443 -> 192.168.2.4:49769 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.1:443 -> 192.168.2.4:49770 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.33:443 -> 192.168.2.4:49783 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.33:443 -> 192.168.2.4:49784 version: TLS 1.2
Source: 48l-xdS4pXg[1].htm.2.drString found in binary or memory: <link rel="canonical" href="https://www.youtube.com/watch?v=48l-xdS4pXg"> equals www.youtube.com (Youtube)
Source: YlmVKT3Zvhw[1].htm.2.drString found in binary or memory: <link rel="canonical" href="https://www.youtube.com/watch?v=YlmVKT3Zvhw"> equals www.youtube.com (Youtube)
Source: ZdEIZNg3epQ[1].htm.2.drString found in binary or memory: <link rel="canonical" href="https://www.youtube.com/watch?v=ZdEIZNg3epQ"> equals www.youtube.com (Youtube)
Source: iframe_api[1].js.2.drString found in binary or memory: if(!window["YT"])var YT={loading:0,loaded:0};if(!window["YTConfig"])var YTConfig={"host":"https://www.youtube.com"}; equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: like an email address to receive updates about our services.</p><p>We also collect the content that you create, upload or receive from others when using our services. This includes things such as email you write and receive, photos and videos that you save, docs and spreadsheets you create and comments that you make on YouTube videos.</p><h2>Information that we collect as you use our services</h2><h3>Your apps, browsers & devices</h3><div class="pjyxF "><img class="zZLvvc" alt="" src="https://www.gstatic.com/policies/privacy/e79ea0ed464fc8952d5b5582f9f9ae53.svg"/></div><p>We collect information about the apps, browsers and <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-devices" data-name="devices" jsaction="click:IPbaae(preventDefault=true)">devices</a> that you use to access Google services, which helps us provide features such as automatic product updates and dimming your screen if your battery runs low.</p><p>The information that we collect includes <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-unique-id" data-name="unique-id" jsaction="click:IPbaae(preventDefault=true)">unique identifiers</a>, browser type and settings, device type and settings, operating system, mobile network information including operator name and phone number and application version number. We also collect information about the interaction of your apps, browsers and devices with our services, including <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-ip" data-name="ip" jsaction="click:IPbaae(preventDefault=true)">IP address</a>, crash reports, system activity, and the date, time and referrer URL of your request.</p><p>We collect this information when a Google service on your device contacts our servers equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: (g.Zm(b,"www.youtube.com"),c=b.toString()):c=Ow(c);b=new Qw(c);b.set("cmo=pf","1");d&&b.set("cmo=td","a1.googlevideo.com");return b}; equals www.youtube.com (Youtube)
Source: so[1].htm0.2.drString found in binary or memory: ,[36,"YouTube","0 -2829px","https://www.youtube.com/?gl\u003dGB","_blank",false,null,""] equals www.youtube.com (Youtube)
Source: so[1].htm.2.drString found in binary or memory: ,[36,"YouTube","0 -2829px","https://www.youtube.com/?gl\u003dGB\u0026tab\u003du1","_blank",false,null,""] equals www.youtube.com (Youtube)
Source: www-widgetapi[1].js.2.drString found in binary or memory: ;var $i=new Set,aj=0,bj=0,cj=0,dj=["PhantomJS","Googlebot","TO STOP THIS SECURITY SCAN go/scan"];function Y(a,b,c){this.o=this.h=this.i=null;this.m=Ka(this);this.j=0;this.u=!1;this.s=[];this.l=null;this.D=c;this.G={};c=document;if(a="string"===typeof a?c.getElementById(a):a)if(c="iframe"==a.tagName.toLowerCase(),b.host||(b.host=c?nc(a.src):"https://www.youtube.com"),this.i=new Xf(b),c||(b=ej(this,a),this.o=a,(c=a.parentNode)&&c.replaceChild(b,a),a=b),this.h=a,this.h.id||(this.h.id="widget"+Ka(this.h)),Rf[this.h.id]=this,window.postMessage){this.l=new L;fj(this);b=N(this.i,"events");for(var d in b)b.hasOwnProperty(d)&& equals www.youtube.com (Youtube)
Source: accounts[2].htm.2.drString found in binary or memory: </script> <script nonce="xXNyH2QcEhlozPeG+g2u">window['sc_initLightbox']();</script> <script data-id="video" nonce="xXNyH2QcEhlozPeG+g2u">var Aba=Dc(qc(rc("//www.youtube.com/player_api"))),kO=[],lO=!1;function mO(){if(!lO){window.onYouTubeIframeAPIReady=Bba;var a=ph("SCRIPT");ce(a,Aba);document.head.appendChild(a);lO=!0}} equals www.youtube.com (Youtube)
Source: 48l-xdS4pXg[1].htm.2.drString found in binary or memory: <noscript><div class="player-unavailable"><h1 class="message">An error occurred.</h1><div class="submessage"><a href="https://www.youtube.com/watch?v=48l-xdS4pXg" target="_blank">Try watching this video on www.youtube.com</a>, or enable JavaScript if it is disabled in your browser.</div></div></noscript></body></html> equals www.youtube.com (Youtube)
Source: YlmVKT3Zvhw[1].htm.2.drString found in binary or memory: <noscript><div class="player-unavailable"><h1 class="message">An error occurred.</h1><div class="submessage"><a href="https://www.youtube.com/watch?v=YlmVKT3Zvhw" target="_blank">Try watching this video on www.youtube.com</a>, or enable JavaScript if it is disabled in your browser.</div></div></noscript></body></html> equals www.youtube.com (Youtube)
Source: ZdEIZNg3epQ[1].htm.2.drString found in binary or memory: <noscript><div class="player-unavailable"><h1 class="message">An error occurred.</h1><div class="submessage"><a href="https://www.youtube.com/watch?v=ZdEIZNg3epQ" target="_blank">Try watching this video on www.youtube.com</a>, or enable JavaScript if it is disabled in your browser.</div></div></noscript></body></html> equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: b),this.U=!1,this.videoData.Y("html5_playready_enable_non_persist_license")&&(this.F.pst="0"));b=CH(this.B)?kta(c.initData).replace("skd://","https://"):this.B.C;this.videoData.Y("enable_shadow_yttv_channels")&&(b=new g.Xm(b),document.location.origin&&document.location.origin.includes("green")?g.Zm(b,"web-green-qa.youtube.com"):g.Zm(b,"www.youtube.com"),b=b.toString());this.baseUrl=b;this.fairplayKeyId=Rd(this.baseUrl,"ek")||"";if(b=Rd(this.baseUrl,"cpi")||"")this.cryptoPeriodIndex=Number(b);this.ga= equals www.youtube.com (Youtube)
Source: accounts[2].htm.2.drString found in binary or memory: b.open("GET","https://www.googleapis.com/youtube/v3/videos?part=snippet%2C+id&key=AIzaSyD-4tE5aKFZYIS_IrfpCDRsgQZbv5VCJZM&id="+a.ka);b.send()} equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: d like saved in your account. For example, you can turn on Location History if you want traffic predictions for your daily commute, or you can save your YouTube Watch History to get better video suggestions.</p><p class="n8ZyWe"><a href="https://myaccount.google.com/activitycontrols?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-activitycontrols">Go to Activity Controls</a></p></div></div><div class="h0yEnd"><div class="IN2z4b"><img class="mZPFM uTLSAb" alt="" src="https://www.gstatic.com/policies/privacy/900a793eae04f4bddd675f8d95c4a794.svg"/></div><div class="gwGFXb"><h3 class="SWFQ9e">Ad settings</h3><p class="n8ZyWe">Manage your preferences about the ads shown to you on Google and on sites and apps that <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-partner" data-name="partner" jsaction="click:IPbaae(preventDefault=true)">partner with Google</a> to show ads. You can modify your interests, choose whether your personal information is used to make ads more relevant to you, and turn on or off certain advertising services.</p><p class="n8ZyWe"><a href="https://adssettings.google.com/?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-adssettings">Go to Ad Settings</a></p></div></div><div class="h0yEnd"><div class="IN2z4b"><img class="mZPFM uTLSAb" alt="" src="https://www.gstatic.com/policies/privacy/c1b97d74dace7e43a9ccb26841a7cae4.svg"/></div><div class="gwGFXb"><h3 class="SWFQ9e">About you</h3><p class="n8ZyWe">Control what others see about you across Google services.</p><p class="n8ZyWe"><a href="https://myaccount.google.com/profile?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-aboutme">Go to About You</a></p></div></div><div class="h0yEnd"><div class="IN2z4b"><img class="mZPFM uTLSAb" alt="" src="https://www.gstatic.com/policies/privacy/e28714c71f217892f72b2698ea5cefef.svg"/></div><div class="gwGFXb"><h3 class="SWFQ9e">Shared endorsements</h3><p class="n8ZyWe">Choose whether your name and photo appear next to your activity, such as reviews and recommendations, which appear in ads.</p><p class="n8ZyWe"><a href="https://myaccount.google.com/shared-endorsements?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-sharedendorsements">Go to Shared Endorsements</a></p></div></div><h3>Ways to review & update your information</h3><div class="h0yEnd WTetv adRtod"><div class="IN2z4b"><img class="mZPFM uTLSAb" alt="" src="https://www.gstatic.com/policies/privacy/5e7cd445f8861a262a3da876f855a4cc.svg"/></div><div class="gwGFXb"><h3 class="SWFQ9e">My Activity</h3><p class="n8ZyWe">My Activity allows you to review and control data that equals www.youtube.com (Youtube)
Source: accounts[2].htm.2.drString found in binary or memory: function zfa(a){if(Eg())2==sg().rs?window.YT&&window.YT.Player?QW(a,a.o):(kO.push(function(f){QW(this,f)}.bind(a,a.o)),mO()):Ig("//www.youtube.com/embed/"+a.ka+"/?rel=0&cc_load_policy=1&autoplay=1&hl="+window.sc_pageModel.lang); equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: g.FO.prototype.B=function(a){var b=this;Apa(this);var c=a.Mx,d=this.api.S();"GENERIC_WITHOUT_LINK"!==c||d.I?"TOO_MANY_REQUESTS"===c?(d=this.api.getVideoData(),this.Fc(IO(this,"TOO_MANY_REQUESTS_WITH_LINK",d.El(),void 0,void 0,void 0,!1))):"HTML5_NO_AVAILABLE_FORMATS_FALLBACK"!==c||d.I?this.Fc(g.GO(a.errorMessage)):this.Fc(IO(this,"HTML5_NO_AVAILABLE_FORMATS_FALLBACK_WITH_LINK_SHORT","//www.youtube.com/supported_browsers")):(a=d.hostLanguage,c="//support.google.com/youtube/?p=player_error1",a&&(c= equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: g.OD=function(a){a=DD(a.U);return"www.youtube-nocookie.com"===a?"www.youtube.com":a}; equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: g.eE=function(a){var b=g.PD(a);!a.Y("yt_embeds_disable_new_error_lozenge_url")&&Kha.includes(b)&&(b="www.youtube.com");return a.protocol+"://"+b}; equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: g.k.clone=function(){var a=new cn;a.C=this.C;this.u&&(a.u=this.u.clone(),a.B=this.B);return a};var kn="://secure-...imrworldwide.com/ ://cdn.imrworldwide.com/ ://aksecure.imrworldwide.com/ ://[^.]*.moatads.com ://youtube[0-9]+.moatpixel.com ://pm.adsafeprotected.com/youtube ://pm.test-adsafeprotected.com/youtube ://e[0-9]+.yt.srs.doubleverify.com www.google.com/pagead/xsul www.youtube.com/pagead/slav".split(" "),Pda=/\bocr\b/;var Qda=/(?:\[|%5B)([a-zA-Z0-9_]+)(?:\]|%5D)/g;var KD={hY:"LIVING_ROOM_APP_MODE_UNSPECIFIED",eY:"LIVING_ROOM_APP_MODE_MAIN",dY:"LIVING_ROOM_APP_MODE_KIDS",fY:"LIVING_ROOM_APP_MODE_MUSIC",gY:"LIVING_ROOM_APP_MODE_UNPLUGGED",cY:"LIVING_ROOM_APP_MODE_GAMING"},Uxa={B0:"PLAYBACK_TYPE_UNKNOWN",v0:"PLAYBACK_TYPE_APPLICATION",u0:"PLAYBACK_TYPE_ADS",z0:"PLAYBACK_TYPE_REMOTE",A0:"PLAYBACK_TYPE_SECONDARY_CAMERA",y0:"PLAYBACK_TYPE_PREROLL_INTERSTITIAL",x0:"PLAYBACK_TYPE_POSTROLL_INTERSTITIAL",w0:"PLAYBACK_TYPE_MIDROLL_INTERSTITIAL"};nn.prototype.set=function(a,b){b=void 0===b?!0:b;0<=a&&52>a&&0===a%1&&this.B[a]!=b&&(this.B[a]=b,this.u=-1)}; equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: g.k.getVideoUrl=function(a,b,c,d,e){b={list:b};c&&(e?b.time_continue=c:b.t=c);c=g.PD(this);d&&"www.youtube.com"===c?d="https://youtu.be/"+a:g.ID(this)?(d="https://"+c+"/fire",b.v=a):(d=this.protocol+"://"+c+"/watch",b.v=a,Ir&&(a=$p())&&(b.ebc=a));return g.Nd(d,b)}; equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: l,"Trusted Ad Domain URL");this.ka=Q(!1,a.privembed);this.protocol=0===this.Zb.indexOf("http:")?"http":"https";this.U=Jw((b?b.customBaseYoutubeUrl:a.BASE_YT_URL)||"")||Jw(this.Zb)||this.protocol+"://www.youtube.com/";l=b?b.eventLabel:a.el;h="detailpage";"adunit"===l?h=this.B?"embedded":"detailpage":"embedded"===l||this.C?h=hD(h,l,Iha):l&&(h="embedded");this.da=h;Gp();l=null;h=b?b.playerStyle:a.ps;var m=g.gb(nD,h);!h||m&&!this.C||(l=h);this.playerStyle=l;this.K=(this.I=g.gb(nD,this.playerStyle))&& equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: lL.prototype.replace=function(a,b){for(var c=g.q(a),d=c.next();!d.done;d=c.next())delete this.u[d.value.encryptedTokenJarContents];Ala(this,b)};mL.prototype.tn=function(a){var b,c,d=null===(b=a.responseContext)||void 0===b?void 0:b.locationPlayabilityToken;void 0!==d&&(this.locationPlayabilityToken=d,this.u=void 0,"TVHTML5"===(null===(c=a.responseContext)||void 0===c?void 0:c.clientName)?(this.localStorage=Bla(this))&&this.localStorage.set("yt-location-playability-token",d,15552E3):g.Eq("YT_CL",JSON.stringify({w4:d}),15552E3,void 0,!0))};var Ela={bluetooth:"CONN_DISCO",cellular:"CONN_CELLULAR_UNKNOWN",ethernet:"CONN_WIFI",none:"CONN_NONE",wifi:"CONN_WIFI",wimax:"CONN_CELLULAR_4G",other:"CONN_UNKNOWN",unknown:"CONN_UNKNOWN","slow-2g":"CONN_CELLULAR_2G","2g":"CONN_CELLULAR_2G","3g":"CONN_CELLULAR_3G","4g":"CONN_CELLULAR_4G"};var pL;g.u(oL,Rq);oL.prototype.Nt=function(a,b){var c=Rq.prototype.Nt.call(this,a,b);return Object.assign(Object.assign({},c),this.u)};var Ula=/[&\?]action_proxy=1/,Tla=/[&\?]token=([\w-]*)/,Vla=/[&\?]video_id=([\w-]*)/,Wla=/[&\?]index=([\d-]*)/,Xla=/[&\?]m_pos_ms=([\d-]*)/,$la=/[&\?]vvt=([\w-]*)/,ama=/[&\?]mt=([\d-]*)/,Ola="ca_type dt el flash u_tz u_his u_h u_w u_ah u_aw u_cd u_nplug u_nmime frm u_java bc bih biw brdim vis wgl".split(" "),Yla="www.youtube-nocookie.com youtube-nocookie.com www.youtube-nocookie.com:443 youtube.googleapis.com www.youtubeedu.com www.youtubeeducation.com video.google.com redirector.gvt1.com".split(" "), equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: ll keep a record of your request in order to help solve any issues you might be facing.</p><h3>Protect Google, our users and the public</h3><div class="pjyxF "><img class="zZLvvc" alt="" src="https://www.gstatic.com/policies/privacy/02f8664b95445de6f27ba682f3c5f9ab.svg"/></div><p>We use information to help improve the <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-safety-reliability" data-name="safety-reliability" jsaction="click:IPbaae(preventDefault=true)">safety and reliability</a> of our services. This includes detecting, preventing, and responding to fraud, abuse, security risks and technical issues that could harm Google, our users or the public.</p><hr/><p>We use different technologies to process your information for these purposes. We use automated systems that analyse your content to provide you with things like customised search results, personalised ads or other features tailored to how you use our services. And we analyse your content to help us <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-detect-abuse" data-name="detect-abuse" jsaction="click:IPbaae(preventDefault=true)">detect abuse</a> such as spam, malware, and illegal content. We also use <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-algorithm" data-name="algorithm" jsaction="click:IPbaae(preventDefault=true)">algorithms</a> to recognise patterns in data. For example, Google Translate helps people communicate across languages by detecting common language patterns in phrases that you ask it to translate.</p><p>We may <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-combine-info" data-name="combine-info" jsaction="click:IPbaae(preventDefault=true)">combine the information we collect</a> among our services and across your devices for the purposes described above. For example, if you watch videos of guitar players on YouTube, you might see an ad for guitar lessons on a site that uses our ad products. Depending on your account settings, <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-other-sites" data-name="other-sites" jsaction="click:IPbaae(preventDefault=true)">your activity on other sites and apps</a> may be associated with your personal information in order to improve Google equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: ll provide a more prominent notice (including, for certain services, email notification of Privacy Policy changes).</p></div></div><div class="m9JGT xXnO1d"><div class="nrAB0c"><div id="products" class="ahbJ5"></div><h1>Related privacy practices</h1><h2>Specific Google services</h2><p>The following privacy notices provide additional information about some Google services:</p><ul><li><a href="https://www.google.com/chrome/intl/en-GB/privacy.html" class="N6CPUe" target="_blank">Chrome & the Chrome Operating System</a></li><li><a href="https://payments.google.com/legaldocument?family=0.privacynotice&hl=en-GB" class="N6CPUe" target="_blank">Payments</a></li><li><a href="https://fiber.google.com/legal/privacy.html" class="N6CPUe" target="_blank">Fiber</a></li><li><a href="https://fi.google.com/about/tos/#project-fi-privacy-notice" class="N6CPUe" target="_blank">Google Fi</a></li><li><a href="https://www.google.com/work/apps/terms/education_privacy.html" class="N6CPUe" target="_blank">G Suite for Education</a></li><li><a href="https://readalong.google/intl/en-GB_GB/privacy" class="N6CPUe" target="_blank">Read Along</a></li><li><a href="https://kids.youtube.com/privacynotice" class="N6CPUe" target="_blank">YouTube Kids</a></li><li><a href="https://families.google.com/familylink/privacy/child-policy/" class="N6CPUe" target="_blank">Google Accounts Managed with Family Link, for Children under 13 (or applicable age in your country)</a></li><li><a href="https://assistant.google.com/privacy-notice-childrens-features/?hl=en_GB" class="N6CPUe" target="_blank">Voice and audio collection from children equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: new Set;this.deviceHasDisplay=b?!b.deviceIsAudioOnly:Q(!0,a.deviceHasDisplay);this.Fe=iD(this.Fe,a.ismb);t=a;g.fB(this.experiments,"html5_qoe_intercept")?t=g.fB(this.experiments,"html5_qoe_intercept"):this.hj?(t=t.vss_host||"s.youtube.com",this.Y("www_for_videostats")&&"s.youtube.com"===t&&(t=DD(this.U)||"www.youtube.com")):t="video.google.com";this.Rh=t;ED(this,a,!0);this.N=new VC;g.C(this,this.N);t=b?b.innertubeApiKey:jD("",a.innertube_api_key);r=b?b.innertubeApiVersion:jD("",a.innertube_api_version); equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: oha=function(a,b){if(!a.u["0"]){var c=new oB("0","fakesb",void 0,new jB(0,0,0,void 0,void 0,"auto"),null,null,1);a.u["0"]=b?new gA(new Qw("http://www.youtube.com/videoplayback"),c,"fake"):new Iy(new Qw("http://www.youtube.com/videoplayback"),c,new Qv(0,0),new Qv(0,0),0,NaN)}}; equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: re signed in to a Google Account, including:</p><ul><li>Browser settings: For example, you can configure your browser to indicate when Google has set a <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-cookies" data-name="cookies" jsaction="click:IPbaae(preventDefault=true)">cookie</a> in your browser. You can also configure your browser to block all cookies from a specific domain or all domains. But remember that our services <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-rely-on-cookies" data-name="rely-on-cookies" jsaction="click:IPbaae(preventDefault=true)">rely on cookies to function properly</a>, for things such as remembering your language preferences.</li><li>Device-level settings: Your device may have controls that determine what information we collect. For example, you can <a href="https://support.google.com/websearch?p=privpol_locserp&amp;hl=en_GB" class="N6CPUe" target="_blank">modify location settings</a> on your Android device.</li></ul></div></div><div class=" xXnO1d"><div class="nrAB0c"><div id="infosharing" class="ahbJ5"></div><div class="pjyxF m2dIJf"><img class="zZLvvc" alt="" src="https://www.gstatic.com/policies/privacy/fa9e0e90d1e7ec399dad9f3257a9bb63.svg"/></div><h1>Sharing your information</h1><h2>When you share your information</h2><p>Many of our services let you share information with other people, and you have control over how you share. For example, you can share videos on YouTube publicly or you can decide to keep your videos private. Remember, when you share information publicly, your content may become accessible through search engines, including Google Search.</p><p>When you equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: re signed out, you can manage information associated with your browser or device, including:</p><ul><li>Signed-out search personalisation: <a href="https://www.google.com/history/optout?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">Choose</a> whether your search activity is used to offer you more relevant results and recommendations.</li><li>YouTube settings: Pause and delete your <a href="https://www.youtube.com/feed/history/search_history?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">YouTube Search History</a> and your <a href="https://www.youtube.com/feed/history?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">YouTube Watch History</a>.</li><li>Ad Settings: <a href="https://adssettings.google.com/?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">Manage</a> your preferences about the ads shown to you on Google and on sites and apps that partner with Google to show ads.</li></ul><h2>Exporting, removing & deleting your information</h2><p>You can export a copy of content in your Google Account if you want to back it up or use it with a service outside of Google.</p><div class="h0yEnd"><div class="IN2z4b"><img class="mZPFM " alt="" src="https://www.gstatic.com/policies/privacy/5959e84c2197c8a27da0a717f1cd47d5.svg"/></div><div class="gwGFXb"><p class="n8ZyWe"><a href="https://takeout.google.com/?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-takeout">Export your data</a></p></div></div><p>You can also <a href="https://support.google.com/legal?p=privpol_remove&amp;hl=en_GB" class="N6CPUe" target="_blank">request to remove content</a> from specific Google services based on applicable law.</p><p>To delete your information, you can:</p><ul><li>Delete your content from <a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-delete-specific" data-name="delete-specific" jsaction="click:IPbaae(preventDefault=true)">specific Google services</a></li><li>Search for and then delete specific items from your account using <a href="https://myactivity.google.com/?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">My Activity</a></li><li><a href="https://myaccount.google.com/deleteservices?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">Delete specific Google products</a>, including your information associated with those products</li><li><a href="https://myaccount.google.com/deleteaccount?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank">Delete your entire Google Account</a></li></ul><div class="h0yEnd"><div class="IN2z4b"><img class="mZPFM " alt="" src="https://www.gstatic.com/policies/privacy/1fa3e4ce8ac456f39ed02a6f9eb49b14.svg"/></div><div class="gwGFXb"><p class="n8ZyWe"><a href="https://myaccount.google.com/delete-services-or-account?utm_source=pp&amp;hl=en_GB" class="ky8S2" data-track-as="pgc-pp-delete">Delete your information</a></p></div></div><p>And finally, <a href="https://myaccount.google.com/inactive?utm_source=pp&amp;hl=en_GB" class="N6CPUe" target="_blank"
Source: privacy[1].htm.2.drString found in binary or memory: t want this level of search customisation, you can <a href="https://support.google.com/websearch?p=privpol_incognito&amp;hl=en_GB">search and browse privately</a> or turn off <a href="https://www.google.com/history/optout?utm_source=pp&amp;hl=en_GB">signed-out search personalisation</a>.</p><h3 id="footnote-customizing">Customising our services</h3><p>For example, we may display a Google Doodle on the Search homepage to celebrate an event specific to your country.</p><h3 id="footnote-deliver-services">deliver our services</h3><p>Examples of how we use your information to deliver our services include:</p><ul><li>We use the IP address assigned to your device to send you the data you requested, such as loading a YouTube video</li><li>We use unique identifiers stored in cookies on your device to help us authenticate you as the person who should have access to your Google Account</li><li>Photos and videos you upload to Google Photos are used to help you create albums, animations and other creations that you can share. <a href="https://support.google.com/photos?p=privpol_manage&amp;hl=en_GB">Learn more</a></li><li>A flight confirmation email that you receive may be used to create a 'check-in' button that appears in your Gmail</li><li>When you purchase services or physical goods from us, you may provide us information like your delivery address or delivery instructions. We use this information for things like processing, fulfilling and delivering your order, and to provide support in connection with the product or service that you purchase.</li></ul><h3 id="footnote-detect-abuse">detect abuse</h3><p>When we detect spam, malware, illegal content and other forms of abuse on our systems in violation of our policies, we may disable your account or take other appropriate action. In certain circumstances, we may also report the violation to appropriate authorities.</p><h3 id="footnote-devices">devices</h3><p>For example, we can use information from your devices to help you decide which device you equals www.youtube.com (Youtube)
Source: base[1].js.2.drString found in binary or memory: this.V("highrepfallback");else if(a.u){var d=this.B?this.B.B.F:null;if(hua(a)&&d&&d.isLocked())var e="FORMAT_UNAVAILABLE";else if(!this.u.I&&"auth"===a.errorCode&&"429"===a.details.rc){e="TOO_MANY_REQUESTS";var f="6"}this.V("playererror",a.errorCode,e,g.DB(a.details),f)}else d=/^pp/.test(this.videoData.clientPlaybackNonce),kU(this,a.errorCode,a.details),d&&"manifest.net.connect"===a.errorCode&&(d="https://www.youtube.com/generate_204?cpn="+this.videoData.clientPlaybackNonce+"&t="+(0,g.M)(),(new xT(d, equals www.youtube.com (Youtube)
Source: NGX8DP50.js.2.drString found in binary or memory: var Oqa=function(a){var b=_.$s("HEAD",a);return b&&0!=b.length?b[0]:a.documentElement},Pqa=function(){var a=_.Ob(_.Oc(new _.Nc(_.Hc,"https://www.youtube.com/iframe_api?trustedtypes=1"))),b={},c=b.document||document,d=_.Sc(a),e=_.af(document,"SCRIPT"),f={Hx:e,Dl:void 0},g=new _.Of(Nqa,f),k=null,l=null!=b.timeout?b.timeout:5E3;0<l&&(k=window.setTimeout(function(){q6(e,!0);g.Xc(new r6(1,"Timeout reached for loading script "+d))},l),f.Dl=k);e.onload=e.onreadystatechange=function(){e.readyState&&"loaded"!= equals www.youtube.com (Youtube)
Source: iframe_api[1].js.2.drString found in binary or memory: var scriptUrl = 'https:\/\/www.youtube.com\/s\/player\/f6ef8aad\/www-widgetapi.vflset\/www-widgetapi.js'; equals www.youtube.com (Youtube)
Source: player_api[1].js.2.drString found in binary or memory: var scriptUrl = 'https:\/\/www.youtube.com\/s\/player\/f6ef8aad\/www-widgetapi.vflset\/www-widgetapi.js';if(!window["YT"])var YT={loading:0,loaded:0};if(!window["YTConfig"])var YTConfig={"host":"https://www.youtube.com"}; equals www.youtube.com (Youtube)
Source: privacy[1].htm.2.drString found in binary or memory: ve installed.</p><h3>Your activity</h3><div class="pjyxF "><img class="zZLvvc" alt="" src="https://www.gstatic.com/policies/privacy/39b031d352a2e1586cf50ac7f2bbc18b.svg"/></div><p>We collect information about your activity in our services, which we use to do things like recommend a YouTube video that you might like. The activity information that we collect may include:</p><ul><li>Terms that you search for</li><li>Videos that you watch</li><li><a class="g1mG8c" href="privacy?gl=GB&amp;hl=en-GB#footnote-content-views" data-name="content-views" jsaction="click:IPbaae(preventDefault=true)">Views and interactions with content and ads</a></li><li>Voice and audio information when you use audio features</li><li>Purchase activity</li><li>People with whom you communicate or share content</li><li>Activity on third-party sites and apps that use our services</li><li>Chrome browsing history that you equals www.youtube.com (Youtube)
Source: NGX8DP50.js.2.drString found in binary or memory: yv=(0,_.M)($o),zv="<a "+_.O(yv)+">Choose</a> whether your search activity is used to offer you more relevant results and recommendations.";var Dk=(0,_.F)(zv);var Av=xv+Dk+"</li><li>"+(0,_.F)("YouTube settings:")+" ",Bv='href="'+_.N(_.P(_.bZ({url:(0,_.L)("https://www.youtube.com/feed/history/search_history?utm_source=pp")},b)))+'" '+_.Y(null),Cv=(0,_.M)(Bv),Dv='href="'+_.N(_.P(_.bZ({url:(0,_.L)("https://www.youtube.com/feed/history?utm_source=pp")},b)))+'" '+_.Y(null),Ev=(0,_.M)(Dv),Fv="Pause and delete your <a "+ equals www.youtube.com (Youtube)
Source: unknownDNS traffic detected: queries for: accounts.youtube.com
Source: operatordeferred_bin_base__en[1].js.2.dr, cb=gapi[1].js0.2.drString found in binary or memory: http://csi.gstatic.com/csi
Source: operatordeferred_bin_base__en[1].js.2.dr, accounts[2].htm.2.drString found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drString found in binary or memory: http://www.broofa.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: http://www.google.com/help/chatsupport/loading.html
Source: accounts[2].htm.2.drString found in binary or memory: http://www.google.com/support/websearch/bin/answer.py?hl=
Source: base[1].js.2.drString found in binary or memory: http://www.youtube.com/videoplayback
Source: base[1].js.2.drString found in binary or memory: http://youtube.com/drm/2012/10/10
Source: base[1].js.2.drString found in binary or memory: http://youtube.com/streaming/metadata/segment/102015
Source: base[1].js.2.drString found in binary or memory: http://youtube.com/streaming/otf/durations/112015
Source: base[1].js.2.drString found in binary or memory: http://youtube.com/yt/2012/10/10
Source: privacy[1].htm.2.drString found in binary or memory: https://about.google/
Source: m=sy19,sy1a,sy1b,sy1d,sy1e,sy30,pwd_view[1].js.2.drString found in binary or memory: https://accounts.google.com/Logout
Source: {98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drString found in binary or memory: https://accounts.google.com/ServiceLogin?service=wise&passive=1209600&continue=https://drive.google.
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://accounts.google.com/TOS?loc=
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://accounts.google.com/TOS?loc=GB&amp;hl=en-GB
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://accounts.google.com/TOS?loc=GB&amp;hl=en-GB&amp;privacy=true
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://accounts.google.com/_/bscframe
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://accounts.google.com/o/oauth2/auth
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://accounts.google.com/o/oauth2/iframe
Source: cb=gapi[2].js.2.drString found in binary or memory: https://accounts.google.com/o/oauth2/postmessageRelay
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://accounts.google.com/o/oauth2/postmessageRelay?parent=https%3A%2F%2Fsupport.google.com&jsh=m%
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://accounts.google.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://accounts.youtube.com/accounts/CheckConnection?pmpo
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://accounts.youtube.com/accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1457
Source: base[1].js.2.drString found in binary or memory: https://admin.youtube.com
Source: so[1].htm.2.drString found in binary or memory: https://ads.google.com/home/?subid
Source: NGX8DP50.js.2.drString found in binary or memory: https://adssettings.google.com/?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://adssettings.google.com/?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://adssettings.google.com/authenticated?utm_source=pp
Source: analytics[1].js.2.drString found in binary or memory: https://ampcid.google.com/v1/publisher:getClientId
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.dr, googleapis.proxy[1].js.2.dr, cb=gapi[2].js.2.dr, so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://apis.google.com
Source: m=_b,_tp[1].js.2.dr, so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://apis.google.com/js/api.js
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://apis.google.com/js/base.js
Source: lazy.min[1].js.2.drString found in binary or memory: https://apis.google.com/js/client.js
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://apis.google.com/js/client.js?onload=%
Source: proxy[1].htm0.2.drString found in binary or memory: https://apis.google.com/js/googleapis.proxy.js?onload=startup
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://apis.google.com/js/rpc:shindig_random.js?onload=credentialservice.postMessage
Source: postmessageRelay[1].htm.2.dr, postmessageRelay[1].htm0.2.drString found in binary or memory: https://apis.google.com/js/rpc:shindig_random.js?onload=init
Source: so[1].htm.2.drString found in binary or memory: https://artsandculture.google.com/?hl
Source: NGX8DP50.js.2.drString found in binary or memory: https://assistant.google.com/privacy-notice-childrens-features/
Source: privacy[1].htm.2.drString found in binary or memory: https://assistant.google.com/privacy-notice-childrens-features/?hl=en_GB
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://autopush-moltron-pa-googleapis.sandbox.google.com
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://books.google.co.uk/?hl
Source: so[1].htm0.2.drString found in binary or memory: https://calendar.google.com/calendar
Source: so[1].htm.2.drString found in binary or memory: https://calendar.google.com/calendar?tab
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://casespartner-pa.clients6.google.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://casespartner-pa.youtube.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://client-channel.google.com/client-channel/client
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://client-channel.youtube.com/client-channel/client
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://clients4.google.com/invalidation/lcs/client
Source: lazy.min[1].js.2.dr, accounts[2].htm.2.dr, cb=gapi[2].js.2.dr, cb=gapi[1].js0.2.drString found in binary or memory: https://clients6.google.com
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://console.developers.google.com/
Source: NGX8DP50.js.2.drString found in binary or memory: https://contacts.google.com
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://contacts.google.com/?hl
Source: privacy[1].htm.2.drString found in binary or memory: https://contacts.google.com?hl=en_GB
Source: operatordeferred_bin_base__en[1].js.2.dr, lazy.min[1].js.2.dr, accounts[2].htm.2.drString found in binary or memory: https://content-googleapis-staging.sandbox.google.com
Source: operatordeferred_bin_base__en[1].js.2.dr, lazy.min[1].js.2.dr, accounts[2].htm.2.drString found in binary or memory: https://content-googleapis-test.sandbox.google.com
Source: cb=gapi[2].js.2.dr, cb=gapi[1].js0.2.drString found in binary or memory: https://content.googleapis.com
Source: operatordeferred_bin_base__en[1].js.2.dr, cb=gapi[1].js0.2.drString found in binary or memory: https://csi.gstatic.com/csi
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://dev-externalultron-pa-googleapis.sandbox.google.com
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://developers.google.com/
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://developers.google.com/api-client-library/javascript/reference/referencedocs
Source: www-widgetapi[1].js.2.drString found in binary or memory: https://developers.google.com/youtube/iframe_api_reference#Events
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://developers.googleblog.com/2018/03/discontinuing-support-for-json-rpc-and.html
Source: so[1].htm.2.drString found in binary or memory: https://docs.google.com/document/?usp
Source: base[1].js.2.drString found in binary or memory: https://docs.google.com/get_video_info
Source: so[1].htm.2.drString found in binary or memory: https://docs.google.com/presentation/?usp
Source: so[1].htm.2.drString found in binary or memory: https://docs.google.com/spreadsheets/?usp
Source: cb=gapi[2].js.2.drString found in binary or memory: https://domains.google.com/suggest/flow
Source: so[1].htm0.2.drString found in binary or memory: https://drive.google.com/
Source: so[1].htm.2.drString found in binary or memory: https://drive.google.com/?tab
Source: ~DF15D787BCCB657D02.TMP.1.drString found in binary or memory: https://drive.google.com/file/d/1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9/view?usp%3Ddrivesdk
Source: so[1].htm.2.drString found in binary or memory: https://duo.google.com/?usp
Source: so[1].htm.2.drString found in binary or memory: https://earth.google.com/web/
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://externalultron-pa.clients6.google.com
Source: NGX8DP50.js.2.dr, privacy[1].htm.2.drString found in binary or memory: https://families.google.com/familylink/privacy/child-policy/
Source: NGX8DP50.js.2.dr, privacy[1].htm.2.drString found in binary or memory: https://fi.google.com/about/tos/#project-fi-privacy-notice
Source: NGX8DP50.js.2.drString found in binary or memory: https://fiber.google.com/
Source: privacy[1].htm.2.drString found in binary or memory: https://fiber.google.com/legal/privacy.html
Source: css[1].css.2.drString found in binary or memory: https://fonts.google.com/license/googlerestricted
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesans/v16/4UaGrENHsxJlGDuGo1OIlL3Owpg.woff)format(
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://fonts.gstatic.com/s/googlesans/v16/4UabrENHsxJlGDuGo1OIlLU94YtzCwA.woff)format(
Source: css[1].css.2.drString found in binary or memory: https://fonts.gstatic.com/s/productsans/v12/pxiDypQkot1TnFhsFMOfGShVF9eI.woff)
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff)format(
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmWUlfBBc-.woff)format(
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format(
Source: css[1].css.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmWUlfBBc-.woff)
Source: css[1].css.2.drString found in binary or memory: https://fonts.gstatic.com/s/roboto/v20/KFOmCnqEu92Fr1Mu4mxM.woff)
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://g.co/recover
Source: lazy.min[1].js.2.drString found in binary or memory: https://gstatic.com/support/content/resources/
Source: lazy.min[1].js.2.drString found in binary or memory: https://gstatic.com/support/content/resources/%
Source: so[1].htm.2.drString found in binary or memory: https://hangouts.google.com/
Source: so[1].htm.2.drString found in binary or memory: https://jamboard.google.com/?usp
Source: so[1].htm.2.drString found in binary or memory: https://keep.google.com
Source: NGX8DP50.js.2.dr, privacy[1].htm.2.drString found in binary or memory: https://kids.youtube.com/privacynotice
Source: accounts[2].htm.2.drString found in binary or memory: https://lh4.ggpht.com/WnIr0x3yhEpMTqI4DCrI_ZOc9vdK_yV0WPig_suRjHQCv4B-2CmQoQu3nE-Eo7_MZ-yZQbq30w=w72
Source: so[1].htm0.2.drString found in binary or memory: https://mail.google.com/mail/
Source: so[1].htm.2.drString found in binary or memory: https://mail.google.com/mail/?tab
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://maps.google.co.uk/maps?hl
Source: so[1].htm.2.drString found in binary or memory: https://meet.google.com?hs
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/?hl=en_GB
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://myaccount.google.com/?utm_source
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/?utm_source=pp&amp;hl=en_GB
Source: 2917834[1].htm.2.drString found in binary or memory: https://myaccount.google.com/activitycontrols
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/activitycontrols?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/activitycontrols?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/dashboard?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/dashboard?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/delete-services-or-account?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/delete-services-or-account?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/deleteaccount?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/deleteaccount?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/deleteservices?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/deleteservices?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/inactive?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/inactive?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/personal-info?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/personal-info?utm_source=pp&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/privacycheckup?utm_source=pp&amp;utm_medium=Promo-in-product&amp;utm_ca
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/privacycheckup?utm_source=pp&utm_medium=Promo-in-product&utm_campaign=p
Source: 2917834[1].htm.2.drString found in binary or memory: https://myaccount.google.com/privacypolicy?hl=
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/profile?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/profile?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/security-checkup?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/security-checkup?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myaccount.google.com/shared-endorsements?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myaccount.google.com/shared-endorsements?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myactivity.google.com/?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myactivity.google.com/?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myactivity.google.com/myactivity
Source: privacy[1].htm.2.drString found in binary or memory: https://myactivity.google.com/myactivity?hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://myactivity.google.com/myactivity?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://myactivity.google.com/myactivity?utm_source=pp&amp;hl=en_GB
Source: so[1].htm0.2.drString found in binary or memory: https://news.google.com/
Source: so[1].htm.2.drString found in binary or memory: https://news.google.com/?tab
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://ogs.google.com/
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://ogs.google.com/widget/app/so
Source: base[1].js.2.drString found in binary or memory: https://pagead2.googlesyndication.com/pagead/osd.js
Source: NGX8DP50.js.2.drString found in binary or memory: https://payments.google.com/legaldocument?family=0.privacynotice&hl=
Source: privacy[1].htm.2.drString found in binary or memory: https://payments.google.com/legaldocument?family=0.privacynotice&hl=en-GB
Source: so[1].htm0.2.drString found in binary or memory: https://photos.google.com/?pageId
Source: so[1].htm.2.drString found in binary or memory: https://photos.google.com/?tab
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://play.google.com/?hl
Source: accounts[2].htm.2.dr, ServiceLogin[1].htm.2.drString found in binary or memory: https://play.google.com/log?format=json&hasfast=true
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://play.google.com/work/enroll?identifier=
Source: cb=gapi[2].js.2.drString found in binary or memory: https://plus.google.com
Source: cb=gapi[2].js.2.drString found in binary or memory: https://plus.googleapis.com
Source: so[1].htm.2.drString found in binary or memory: https://podcasts.google.com/
Source: {98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drString found in binary or memory: https://policies.googl
Source: so[1].htm0.2.drString found in binary or memory: https://policies.google.com
Source: ~DF0544450210876992.TMP.1.dr, privacy[1].htm.2.drString found in binary or memory: https://policies.google.com/
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/privacy?gl=GB&hl=en-GB
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/privacy?gl=GB&hl=en-GB382296
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/privacy?gl=GB&hl=en-GBRPrivacy
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/terms?gl=GB&hl=en-GB
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/terms?gl=GB&hl=en-GB382296
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://policies.google.com/terms?gl=GB&hl=en-GBdGoogle
Source: 2917834[1].htm.2.drString found in binary or memory: https://policies.google.com/terms?hl=
Source: NGX8DP50.js.2.drString found in binary or memory: https://privacy.google.com/businesses/affiliates
Source: privacy[1].htm.2.drString found in binary or memory: https://privacy.google.com/businesses/affiliates?hl=en_GB
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://punctual-dev.corp.google.com
Source: NGX8DP50.js.2.drString found in binary or memory: https://readalong.google
Source: privacy[1].htm.2.drString found in binary or memory: https://readalong.google/intl/en-GB_GB/privacy
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://realtimesupport.clients6.google.com
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://realtimesupport.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-sta
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://realtimesupport.youtube.com
Source: NGX8DP50.js.2.drString found in binary or memory: https://safebrowsing.google.com/?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://safebrowsing.google.com/?utm_source=pp&amp;hl=en_GB
Source: 2917834[1].htm.2.drString found in binary or memory: https://schema.org/BreadcrumbList
Source: 2917834[1].htm.2.drString found in binary or memory: https://schema.org/ListItem
Source: 2917834[1].htm.2.drString found in binary or memory: https://schema.org/Thing
Source: lazy.min[1].js.2.dr, accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://scone-pa.clients6.google.com
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://scone-pa.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://signaler-pa.clients6.google.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://signaler-pa.googleapis.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://signaler-pa.youtube.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://signaler-staging.sandbox.google.com
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://ssl.gstatic.com
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/account-recovery-email-pin.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/account-recovery-password.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/account-recovery-sms-or-voice-pin.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/account-recovery-sms-pin.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/ble_device.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/ble_pin.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/contacts_backup_sync.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/continue_on_your_phone.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/device_phone_number_verification.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidprofileupgrade_all_set.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignin_not_ready.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignin_stick_around.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_accounts.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_created.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_double_device.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_familylink.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_full_house.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_privacy.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_single_device.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_stop.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/kidsignup_two_bikes.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/phone_number_sign_in_2x.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/security_key.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/security_key_ios_center.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/security_key_laptop.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/signin_googleapp_ios.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/signin_googleapp_pulldown.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/signin_tapyes.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/smart_lock_2x.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/embedded/usb_key.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/gmail_ios_authzen.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/screenlock.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_key_ipad.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_key_iphone.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_key_iphone_nfc.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_key_iphone_usb.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_key_phone.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/security_keys.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/marc/success_checkmark_2.svg
Source: postmessageRelay[1].htm.2.dr, postmessageRelay[1].htm0.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/o/2038943760-postmessagerelay.js
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/account.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/family.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/personal.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/privacy.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/safe.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/verify-email.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/signup/glif/verify.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/static/_/js/k=gaia.gaiafe_glif.en_GB.c6Y0h-un5PQ.O/am=BwB0qEADbgAQg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/ui/loading_spinner_gm.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/ui/progress_spinner_color_20dp_4x.gif
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/accounts/ui/success-gm-default_2x.png
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://ssl.gstatic.com/gb/images/p1_cfd8cf40.png
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://ssl.gstatic.com/gb/images/p2_136ed2e0.png
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://ssl.gstatic.com/gb/js/
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/images/hpp/shield_security_checkup_green_2x_web_96dp.png
Source: lazy.min[1].js.2.drString found in binary or memory: https://ssl.gstatic.com/inproduct_help/guidedhelp/guide_inproduct.js
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://ssl.gstatic.com/support/realtime
Source: accounts[2].htm.2.drString found in binary or memory: https://ssl.gstatic.com/support/realtime/operator/
Source: operatorParams[1].json.2.drString found in binary or memory: https://ssl.gstatic.com/support/realtime/operator/1612226769515/operatordeferred_bin_base.js
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://ssl.gstatic.com/ui/v1/activityindicator/loading.svg
Source: so[1].htm.2.drString found in binary or memory: https://stadia.google.com/
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://staging-casespartner-pa-googleapis.sandbox.youtube.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://staging-casespartner-pa.sandbox.googleapis.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://staging-realtimesupport-googleapis.sandbox.google.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://staging-realtimesupport-googleapis.sandbox.youtube.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://staging-supportcases-pa-googleapis.corp.google.com
Source: analytics[1].js.2.drString found in binary or memory: https://stats.g.doubleclick.net/j/collect
Source: 2917834[1].htm.2.drString found in binary or memory: https://support.apple.com/kb/ph21413
Source: accounts[2].htm.2.drString found in binary or memory: https://support.corp.google.com
Source: {98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drString found in binary or memory: https://support.google
Source: 2917834[1].htm.2.dr, so[1].htm.2.drString found in binary or memory: https://support.google.com
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/a?p=privpol_admin&amp;hl=en_GB
Source: accounts[2].htm.2.drString found in binary or memory: https://support.google.com/accounts/
Source: accounts[2].htm.2.drString found in binary or memory: https://support.google.com/accounts/?hl=en
Source: 2917834[1].htm.2.drString found in binary or memory: https://support.google.com/accounts/answer/2917834
Source: 2917834[1].htm.2.drString found in binary or memory: https://support.google.com/accounts/answer/2917834?co=GENIE.Platform%3DDesktop&amp;hl=en
Source: 2917834[1].htm.2.drString found in binary or memory: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&amp;p=sign
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_p
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/accounts/answer/465?authuser=0#auto-delete
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts/answer/465?authuser=0&amp;hl=en_GB#auto-delete
Source: m=sy19,sy1a,sy1b,sy1d,sy1e,sy30,pwd_view[1].js.2.drString found in binary or memory: https://support.google.com/accounts/answer/7162782
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?hl=
Source: ~DF0544450210876992.TMP.1.dr, ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?hl=en-GB
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://support.google.com/accounts?hl=en-GB#topic=3382296
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://support.google.com/accounts?hl=en-GB#topic=3382296637478994226273166-3870769646&p=signin_pri
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://support.google.com/accounts?hl=en-GB7834?visit_id=637478994226273166-3870769646&p=signin_pri
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=autocontacts&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_agereq&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_androidloc&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_controlads&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_endorse
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_endorse&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_location
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_location&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_lochistory
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_lochistory&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_phone&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_whyad
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=privpol_whyad&amp;hl=en_GB
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/accounts?p=signin_privatebrowsing
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/adwordspolicy?p=privpol_p13nad&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/analytics?p=privpol_data&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/blogger?p=privpol_blog&amp;hl=en_GB
Source: operatorParams[1].json.2.drString found in binary or memory: https://support.google.com/chat-upload/support-cases/resumable
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/chrome/answer/6130773
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/chrome?p=privpol_chrsync
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/chrome?p=privpol_chrsync&amp;hl=en_GB
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/chromebook/?p=familylink_accounts?hl=
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/families/answer/7101025
Source: imagestore.dat.2.drString found in binary or memory: https://support.google.com/favicon.ico
Source: imagestore.dat.2.drString found in binary or memory: https://support.google.com/favicon.ico~
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/googlehome?p=privpol_actions&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/googlehome?p=privpol_homedata&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/googleplay?p=privpol_review&amp;hl=en_GB
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://support.google.com/inapp/rts_frame
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/legal?p=privpol_remove&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/mail?p=privpol_signinactivity&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/photos?p=privpol_manage
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/photos?p=privpol_manage&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/policies/troubleshooter/7575787?hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/policies?p=privpol_privts
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/policies?p=privpol_privts&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/sites?p=privpol_delete&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://support.google.com/trends?p=privpol_about
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/trends?p=privpol_about&amp;hl=en_GB
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://support.google.com/websearch/answer/4358949?hl=ko&ref_topic=3285072
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/websearch?p=privpol_feed&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/websearch?p=privpol_incognito&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/websearch?p=privpol_locserp&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/websearch?p=privpol_privresults&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://support.google.com/websearch?p=privpol_searchactivity&amp;hl=en_GB
Source: base[1].js.2.drString found in binary or memory: https://support.google.com/youtube/?p=missing_quality
Source: base[1].js.2.drString found in binary or memory: https://support.google.com/youtube/?p=noaudio
Source: base[1].js.2.drString found in binary or memory: https://support.google.com/youtube/?p=report_playback
Source: base[1].js.2.drString found in binary or memory: https://support.google.com/youtube/answer/6276924
Source: remote[1].js.2.drString found in binary or memory: https://support.google.com/youtube/answer/7640706
Source: {98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drString found in binary or memory: https://support.googlee.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2
Source: 2917834[1].htm.2.drString found in binary or memory: https://support.mozilla.org/en-US/kb/private-browsing-use-firefox-without-history
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://supportcases-pa-googleapis.corp.google.com
Source: NGX8DP50.js.2.drString found in binary or memory: https://takeout.google.com/?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://takeout.google.com/?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://takeout.google.com/settings/takeout?utm_source=pp
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://test-casespartner-pa.sandbox.googleapis.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://test-externalultron-pa-googleapis.sandbox.google.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://test-realtimesupport-googleapis.sandbox.google.com
Source: lazy.min[1].js.2.drString found in binary or memory: https://test-scone-pa-googleapis.sandbox.google.com
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://test-supportcases-pa-googleapis.corp.google.com
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://translate.google.co.uk/?hl
Source: NGX8DP50.js.2.drString found in binary or memory: https://transparencyreport.google.com/user-data/overview
Source: privacy[1].htm.2.drString found in binary or memory: https://transparencyreport.google.com/user-data/overview?hl=en_GB
Source: m=_b,_tp[1].js.2.dr, ServiceLogin[1].htm.2.drString found in binary or memory: https://uberproxy-pen-redirect.corp.google.com/uberproxy/pen?url=
Source: base[1].js.2.drString found in binary or memory: https://viacon.corp.google.com
Source: cb=gapi[2].js.2.drString found in binary or memory: https://workspace.google.com/:session_prefix:marketplace/appfinder?usegapi=1
Source: so[1].htm0.2.drString found in binary or memory: https://www.blogger.com/
Source: so[1].htm.2.drString found in binary or memory: https://www.blogger.com/?tab
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.google-analytics.com/analytics.js
Source: analytics[1].js.2.drString found in binary or memory: https://www.google-analytics.com/gtm/js?id=
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.google.
Source: analytics[1].js.2.drString found in binary or memory: https://www.google.%/ads/ga-audiences
Source: so[1].htm0.2.drString found in binary or memory: https://www.google.co.uk/finance
Source: so[1].htm.2.drString found in binary or memory: https://www.google.co.uk/finance?tab
Source: so[1].htm0.2.drString found in binary or memory: https://www.google.co.uk/intl/en-GB/about/products
Source: so[1].htm.2.drString found in binary or memory: https://www.google.co.uk/intl/en-GB/about/products?tab
Source: so[1].htm.2.drString found in binary or memory: https://www.google.co.uk/save
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://www.google.co.uk/shopping?hl
Source: so[1].htm0.2.drString found in binary or memory: https://www.google.co.uk/webhp
Source: so[1].htm.2.drString found in binary or memory: https://www.google.co.uk/webhp?tab
Source: accounts[2].htm.2.dr, ServiceLogin[1].htm.2.drString found in binary or memory: https://www.google.com
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/?hl=en_GB
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drString found in binary or memory: https://www.google.com/_/og/promos/
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.google.com/about/datacenters/inside/locations
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/about/datacenters/inside/locations?hl=en_GB
Source: accounts[2].htm.2.dr, 2917834[1].htm.2.drString found in binary or memory: https://www.google.com/accounts/TOS
Source: so[1].htm.2.drString found in binary or memory: https://www.google.com/chrome/?brand
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/chrome/intl/en-GB/privacy.html
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://www.google.com/enterprise/marketplace
Source: imagestore.dat.2.drString found in binary or memory: https://www.google.com/favicon.ico
Source: imagestore.dat.2.drString found in binary or memory: https://www.google.com/favicon.ico~
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.google.com/history/optout?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/history/optout?utm_source=pp&amp;hl=en_GB
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/images/branding/googlelogo/1x/googlelogo_color_74x24dp.png
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/images/branding/googlelogo/2x/googlelogo_color_74x24dp.png
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/intl/en-GB/safetycenter/
Source: privacy[1].htm.2.drString found in binary or memory: https://www.google.com/landing/2step/?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.dr, accounts[2].htm.2.dr, ServiceLogin[1].htm.2.drString found in binary or memory: https://www.google.com/log?format=json&hasfast=true
Source: accounts[2].htm.2.drString found in binary or memory: https://www.google.com/recaptcha/api.js?onload=%
Source: accounts[2].htm.2.drString found in binary or memory: https://www.google.com/search?q=
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.google.com/settings/hatsv2
Source: NGX8DP50.js.2.dr, privacy[1].htm.2.drString found in binary or memory: https://www.google.com/work/apps/terms/education_privacy.html
Source: operatordeferred_bin_base__en[1].js.2.drString found in binary or memory: https://www.googleapis.com
Source: cb=gapi[1].js0.2.drString found in binary or memory: https://www.googleapis.com/auth/plus.login
Source: cb=gapi[2].js.2.drString found in binary or memory: https://www.googleapis.com/auth/plus.me
Source: cb=gapi[2].js.2.drString found in binary or memory: https://www.googleapis.com/auth/plus.people.recommended
Source: base[1].js.2.drString found in binary or memory: https://www.googleapis.com/certificateprovisioning/v1/devicecertificates/create?key=AIzaSyB-5OLKTx2i
Source: accounts[2].htm.2.drString found in binary or memory: https://www.googleapis.com/youtube/v3/videos?part=snippet%2C
Source: analytics[1].js.2.drString found in binary or memory: https://www.googletagmanager.com/gtag/js?id=
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.gstatic.
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://www.gstatic.com
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/_/mss/boq-identity/_/js/k=boq-identity.IdentityPoliciesUi.en_GB.o0qWLnvTDl8.
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://www.gstatic.com/_/mss/boq-one-google/_/js/k=boq-one-google.OneGoogleWidgetUi.en_GB.OWZ7Nm9IK
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/accounts/speedbump/authzen_optin_illustration.gif
Source: remote[1].js.2.drString found in binary or memory: https://www.gstatic.com/cv/js/sender/v1/cast_sender.js
Source: accounts[2].htm.2.drString found in binary or memory: https://www.gstatic.com/feedback/js/help/prod/service/lazy.min.js
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drString found in binary or memory: https://www.gstatic.com/gb/html/afbp.html
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/identity/boq/policies/privacy/privacy_illustration.svg
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/images/branding/product/2x/chrome_48dp.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/images/branding/product/2x/googleg_48dp.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/images/branding/product/2x/gsa_48dp.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/images/branding/product/2x/play_prism_48dp.png
Source: ServiceLogin[1].htm.2.drString found in binary or memory: https://www.gstatic.com/images/branding/product/2x/youtube_48dp.png
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drString found in binary or memory: https://www.gstatic.com/images/icons/material/anim/mspin/mspin_googcolor_medium.css
Source: rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drString found in binary or memory: https://www.gstatic.com/images/icons/material/anim/mspin/mspin_googcolor_small.css
Source: accounts[2].htm.2.drString found in binary or memory: https://www.gstatic.com/images/icons/material/system/1x/search_black_24dp.png
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/02698a3383765bd3c250471c53a86c5a.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/02f8664b95445de6f27ba682f3c5f9ab.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/0d6da8d8c44e7e3ee95c4d56c19f04e1.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/13062c65605335a46d14656c46af3868.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/1fa3e4ce8ac456f39ed02a6f9eb49b14.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/2951277d4c35389d7d304ed78d4fb6f6.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/3394102be0315326fd760e503b31c7b6.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/39b031d352a2e1586cf50ac7f2bbc18b.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/4165cd3aa643abb80fe1953668f67551.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/4c5ee41d52605ff6f43538d46a1c0d35.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/4f19891c43001db11efc8048f9bc7cdb.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/51cd09d6239edc9652bc05ad1d149a5c.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/546f2b674b407304a2570e71a216e509.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/5959e84c2197c8a27da0a717f1cd47d5.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/5e7cd445f8861a262a3da876f855a4cc.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/900a793eae04f4bddd675f8d95c4a794.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/a8e78fa7fa279aa946fe1a9d6a0508f2.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/acad335ad7ba163209d8c3e671b2c445.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/b18d13e9ea8a362642b7d25bce665039.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/c1b97d74dace7e43a9ccb26841a7cae4.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/d1b68e2cd423aba52d74f02573df2d2d.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/e28714c71f217892f72b2698ea5cefef.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/e60586c0029adec0bacd3e48470ca6c6.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/e79ea0ed464fc8952d5b5582f9f9ae53.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/fa9e0e90d1e7ec399dad9f3257a9bb63.svg
Source: privacy[1].htm.2.drString found in binary or memory: https://www.gstatic.com/policies/privacy/fb61fc4bfc85ad86f11342e699d685e9.svg
Source: lazy.min[1].js.2.drString found in binary or memory: https://www.gstatic.com/support/content/resources/
Source: lazy.min[1].js.2.drString found in binary or memory: https://www.gstatic.com/support/content/resources/%
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.youtube-nocookie.com/embed/
Source: privacy[1].htm.2.drString found in binary or memory: https://www.youtube-nocookie.com/embed/48l-xdS4pXg?rel=0&amp;showinfo=0&amp;theme=light&amp;version=
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://www.youtube-nocookie.com/embed/48l-xdS4pXg?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c
Source: privacy[1].htm.2.drString found in binary or memory: https://www.youtube-nocookie.com/embed/YlmVKT3Zvhw?rel=0&amp;showinfo=0&amp;theme=light&amp;version=
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://www.youtube-nocookie.com/embed/YlmVKT3Zvhw?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c
Source: privacy[1].htm.2.drString found in binary or memory: https://www.youtube-nocookie.com/embed/ZdEIZNg3epQ?rel=0&amp;showinfo=0&amp;theme=light&amp;version=
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://www.youtube-nocookie.com/embed/ZdEIZNg3epQ?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c
Source: ~DF0544450210876992.TMP.1.drString found in binary or memory: https://www.youtube-nocookie.com/embed/ggoJFaE71W8?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c
Source: iframe_api[1].js.2.dr, www-widgetapi[1].js.2.dr, player_api[1].js.2.drString found in binary or memory: https://www.youtube.com
Source: so[1].htm.2.dr, so[1].htm0.2.drString found in binary or memory: https://www.youtube.com/?gl
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.youtube.com/feed/history/search_history?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://www.youtube.com/feed/history/search_history?utm_source=pp&amp;hl=en_GB
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.youtube.com/feed/history?utm_source=pp
Source: privacy[1].htm.2.drString found in binary or memory: https://www.youtube.com/feed/history?utm_source=pp&amp;hl=en_GB
Source: base[1].js.2.drString found in binary or memory: https://www.youtube.com/generate_204?cpn=
Source: NGX8DP50.js.2.drString found in binary or memory: https://www.youtube.com/iframe_api?trustedtypes=1
Source: 48l-xdS4pXg[1].htm.2.drString found in binary or memory: https://www.youtube.com/watch?v=48l-xdS4pXg
Source: YlmVKT3Zvhw[1].htm.2.drString found in binary or memory: https://www.youtube.com/watch?v=YlmVKT3Zvhw
Source: ZdEIZNg3epQ[1].htm.2.drString found in binary or memory: https://www.youtube.com/watch?v=ZdEIZNg3epQ
Source: base[1].js.2.drString found in binary or memory: https://youtu.be/
Source: base[1].js.2.drString found in binary or memory: https://youtube.com/api/drm/fps?ek=uninitialized
Source: base[1].js.2.drString found in binary or memory: https://youtubei.googleapis.com/youtubei/
Source: base[1].js.2.drString found in binary or memory: https://yurt.corp.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 49783 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49770
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49770 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownHTTPS traffic detected: 172.217.23.1:443 -> 192.168.2.4:49769 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.1:443 -> 192.168.2.4:49770 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.33:443 -> 192.168.2.4:49783 version: TLS 1.2
Source: unknownHTTPS traffic detected: 172.217.23.33:443 -> 192.168.2.4:49784 version: TLS 1.2
Source: classification engineClassification label: clean1.win@3/125@6/2
Source: C:\Program Files\internet explorer\iexplore.exeFile created: C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{98C3C2F2-65A0-11EB-90EB-ECF4BBEA1588}.datJump to behavior
Source: C:\Program Files\internet explorer\iexplore.exeFile created: C:\Users\user\AppData\Local\Temp\~DF7BC35B70B757F035.TMPJump to behavior
Source: C:\Program Files\internet explorer\iexplore.exeFile read: C:\Users\desktop.iniJump to behavior
Source: unknownProcess created: C:\Program Files\internet explorer\iexplore.exe 'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding
Source: unknownProcess created: C:\Program Files (x86)\Internet Explorer\iexplore.exe 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6880 CREDAT:17410 /prefetch:2
Source: C:\Program Files\internet explorer\iexplore.exeProcess created: C:\Program Files (x86)\Internet Explorer\iexplore.exe 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6880 CREDAT:17410 /prefetch:2Jump to behavior
Source: C:\Program Files\internet explorer\iexplore.exeAutomated click: Next
Source: C:\Program Files\internet explorer\iexplore.exeAutomated click: Next
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files (x86)\Internet Explorer\iexplore.exeFile opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\msvcr100.dllJump to behavior

Mitre Att&ck Matrix

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
Drive-by Compromise1Windows Management InstrumentationPath InterceptionProcess Injection1Masquerading1OS Credential DumpingFile and Directory Discovery1Remote ServicesData from Local SystemExfiltration Over Other Network MediumEncrypted Channel2Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsProcess Injection1LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable MediaExfiltration Over BluetoothNon-Application Layer Protocol1Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared DriveAutomated ExfiltrationApplication Layer Protocol2Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 process2 2 Behavior Graph ID: 347664 URL: https://drive.google.com/fi... Startdate: 02/02/2021 Architecture: WINDOWS Score: 1 5 iexplore.exe 17 54 2->5         started        process3 7 iexplore.exe 7 166 5->7         started        dnsIp4 10 googlehosted.l.googleusercontent.com 172.217.23.1, 443, 49769, 49770 GOOGLEUS United States 7->10 12 photos-ugc.l.googleusercontent.com 172.217.23.33, 443, 49783, 49784 GOOGLEUS United States 7->12 14 6 other IPs or domains 7->14

Thumbnails

This section contains all screenshots as thumbnails, including those not shown in the slideshow.

windows-stand
SourceDetectionScannerLabelLink
https://drive.google.com/file/d/1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9/view?usp=drivesdk0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://www.broofa.com0%URL Reputationsafe
http://www.broofa.com0%URL Reputationsafe
http://www.broofa.com0%URL Reputationsafe
http://www.broofa.com0%URL Reputationsafe
https://translate.google.co.uk/?hl0%URL Reputationsafe
https://translate.google.co.uk/?hl0%URL Reputationsafe
https://translate.google.co.uk/?hl0%URL Reputationsafe
https://translate.google.co.uk/?hl0%URL Reputationsafe
https://books.google.co.uk/?hl0%URL Reputationsafe
https://books.google.co.uk/?hl0%URL Reputationsafe
https://books.google.co.uk/?hl0%URL Reputationsafe
https://books.google.co.uk/?hl0%URL Reputationsafe
https://www.google.co.uk/intl/en-GB/about/products?tab0%URL Reputationsafe
https://www.google.co.uk/intl/en-GB/about/products?tab0%URL Reputationsafe
https://www.google.co.uk/intl/en-GB/about/products?tab0%URL Reputationsafe
https://www.google.co.uk/intl/en-GB/about/products?tab0%URL Reputationsafe
https://www.google.co.uk/webhp?tab0%URL Reputationsafe
https://www.google.co.uk/webhp?tab0%URL Reputationsafe
https://www.google.co.uk/webhp?tab0%URL Reputationsafe
https://www.google.co.uk/webhp?tab0%URL Reputationsafe
https://www.google.co.uk/finance?tab0%URL Reputationsafe
https://www.google.co.uk/finance?tab0%URL Reputationsafe
https://www.google.co.uk/finance?tab0%URL Reputationsafe
https://www.google.co.uk/finance?tab0%URL Reputationsafe
https://readalong.google/intl/en-GB_GB/privacy0%Avira URL Cloudsafe
https://www.google.co.uk/save0%URL Reputationsafe
https://www.google.co.uk/save0%URL Reputationsafe
https://www.google.co.uk/save0%URL Reputationsafe
https://www.google.co.uk/save0%URL Reputationsafe
https://www.google.co.uk/webhp0%URL Reputationsafe
https://www.google.co.uk/webhp0%URL Reputationsafe
https://www.google.co.uk/webhp0%URL Reputationsafe
https://www.google.co.uk/webhp0%URL Reputationsafe
https://www.google.0%URL Reputationsafe
https://www.google.0%URL Reputationsafe
https://www.google.0%URL Reputationsafe
https://www.google.0%URL Reputationsafe
https://www.google.co.uk/intl/en-GB/about/products0%VirustotalBrowse
https://www.google.co.uk/intl/en-GB/about/products0%Avira URL Cloudsafe
https://www.gstatic.0%URL Reputationsafe
https://www.gstatic.0%URL Reputationsafe
https://www.gstatic.0%URL Reputationsafe
https://www.gstatic.0%URL Reputationsafe
https://about.google/0%URL Reputationsafe
https://about.google/0%URL Reputationsafe
https://about.google/0%URL Reputationsafe
https://about.google/0%URL Reputationsafe
https://www.google.co.uk/finance0%URL Reputationsafe
https://www.google.co.uk/finance0%URL Reputationsafe
https://www.google.co.uk/finance0%URL Reputationsafe
https://www.google.co.uk/finance0%URL Reputationsafe
https://policies.googl0%URL Reputationsafe
https://policies.googl0%URL Reputationsafe
https://policies.googl0%URL Reputationsafe
https://policies.googl0%URL Reputationsafe
https://maps.google.co.uk/maps?hl0%URL Reputationsafe
https://maps.google.co.uk/maps?hl0%URL Reputationsafe
https://maps.google.co.uk/maps?hl0%URL Reputationsafe
https://maps.google.co.uk/maps?hl0%URL Reputationsafe
https://www.google.co.uk/shopping?hl0%URL Reputationsafe
https://www.google.co.uk/shopping?hl0%URL Reputationsafe
https://www.google.co.uk/shopping?hl0%URL Reputationsafe
https://www.google.co.uk/shopping?hl0%URL Reputationsafe
https://www.google.%/ads/ga-audiences0%URL Reputationsafe
https://www.google.%/ads/ga-audiences0%URL Reputationsafe
https://www.google.%/ads/ga-audiences0%URL Reputationsafe
https://www.google.%/ads/ga-audiences0%URL Reputationsafe
https://support.google0%URL Reputationsafe
https://support.google0%URL Reputationsafe
https://support.google0%URL Reputationsafe
https://support.google0%URL Reputationsafe
https://readalong.google0%URL Reputationsafe
https://readalong.google0%URL Reputationsafe
https://readalong.google0%URL Reputationsafe
https://readalong.google0%URL Reputationsafe

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
photos-ugc.l.googleusercontent.com
172.217.23.33
truefalse
    high
    googlehosted.l.googleusercontent.com
    172.217.23.1
    truefalse
      high
      s.ytimg.com
      172.217.23.46
      truefalse
        high
        accounts.youtube.com
        unknown
        unknownfalse
          high
          www.youtube.com
          unknown
          unknownfalse
            high
            lh3.googleusercontent.com
            unknown
            unknownfalse
              high
              lh4.ggpht.com
              unknown
              unknownfalse
                high
                www.youtube-nocookie.com
                unknown
                unknownfalse
                  high
                  NameSourceMaliciousAntivirus DetectionReputation
                  https://staging-realtimesupport-googleapis.sandbox.youtube.comoperatordeferred_bin_base__en[1].js.2.drfalse
                    high
                    https://schema.org/Thing2917834[1].htm.2.drfalse
                      high
                      https://www.youtube.com/iframe_api?trustedtypes=1NGX8DP50.js.2.drfalse
                        high
                        http://www.broofa.comrs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js0.2.drfalse
                        • URL Reputation: safe
                        • URL Reputation: safe
                        • URL Reputation: safe
                        • URL Reputation: safe
                        unknown
                        https://translate.google.co.uk/?hlso[1].htm.2.dr, so[1].htm0.2.drfalse
                        • URL Reputation: safe
                        • URL Reputation: safe
                        • URL Reputation: safe
                        • URL Reputation: safe
                        unknown
                        https://www.youtube-nocookie.com/embed/ZdEIZNg3epQ?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c~DF0544450210876992.TMP.1.drfalse
                          high
                          https://books.google.co.uk/?hlso[1].htm.2.dr, so[1].htm0.2.drfalse
                          • URL Reputation: safe
                          • URL Reputation: safe
                          • URL Reputation: safe
                          • URL Reputation: safe
                          unknown
                          https://casespartner-pa.youtube.comoperatordeferred_bin_base__en[1].js.2.drfalse
                            high
                            https://www.google.co.uk/intl/en-GB/about/products?tabso[1].htm.2.drfalse
                            • URL Reputation: safe
                            • URL Reputation: safe
                            • URL Reputation: safe
                            • URL Reputation: safe
                            unknown
                            https://www.google.co.uk/webhp?tabso[1].htm.2.drfalse
                            • URL Reputation: safe
                            • URL Reputation: safe
                            • URL Reputation: safe
                            • URL Reputation: safe
                            unknown
                            https://www.youtube.com/feed/history?utm_source=pp&amp;hl=en_GBprivacy[1].htm.2.drfalse
                              high
                              https://signaler-pa.youtube.comoperatordeferred_bin_base__en[1].js.2.drfalse
                                high
                                https://g.co/recoverServiceLogin[1].htm.2.drfalse
                                  high
                                  https://realtimesupport.youtube.comoperatordeferred_bin_base__en[1].js.2.drfalse
                                    high
                                    https://www.google.co.uk/finance?tabso[1].htm.2.drfalse
                                    • URL Reputation: safe
                                    • URL Reputation: safe
                                    • URL Reputation: safe
                                    • URL Reputation: safe
                                    unknown
                                    http://youtube.com/streaming/otf/durations/112015base[1].js.2.drfalse
                                      high
                                      https://readalong.google/intl/en-GB_GB/privacyprivacy[1].htm.2.drfalse
                                      • Avira URL Cloud: safe
                                      unknown
                                      https://www.youtube.com/feed/history/search_history?utm_source=ppNGX8DP50.js.2.drfalse
                                        high
                                        http://youtube.com/streaming/metadata/segment/102015base[1].js.2.drfalse
                                          high
                                          https://www.youtube.comiframe_api[1].js.2.dr, www-widgetapi[1].js.2.dr, player_api[1].js.2.drfalse
                                            high
                                            https://youtu.be/base[1].js.2.drfalse
                                              high
                                              https://www.youtube-nocookie.com/embed/NGX8DP50.js.2.drfalse
                                                high
                                                https://www.google.co.uk/saveso[1].htm.2.drfalse
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                unknown
                                                https://www.google.co.uk/webhpso[1].htm0.2.drfalse
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                • URL Reputation: safe
                                                unknown
                                                https://www.youtube-nocookie.com/embed/48l-xdS4pXg?rel=0&amp;showinfo=0&amp;theme=light&amp;version=privacy[1].htm.2.drfalse
                                                  high
                                                  https://admin.youtube.combase[1].js.2.drfalse
                                                    high
                                                    https://www.google.NGX8DP50.js.2.drfalse
                                                    • URL Reputation: safe
                                                    • URL Reputation: safe
                                                    • URL Reputation: safe
                                                    • URL Reputation: safe
                                                    unknown
                                                    https://www.youtube.com/feed/history?utm_source=ppNGX8DP50.js.2.drfalse
                                                      high
                                                      https://www.google.co.uk/intl/en-GB/about/productsso[1].htm0.2.drfalse
                                                      • 0%, Virustotal, Browse
                                                      • Avira URL Cloud: safe
                                                      unknown
                                                      https://stats.g.doubleclick.net/j/collectanalytics[1].js.2.drfalse
                                                        high
                                                        https://www.blogger.com/?tabso[1].htm.2.drfalse
                                                          high
                                                          https://www.youtube-nocookie.com/embed/YlmVKT3Zvhw?rel=0&amp;showinfo=0&amp;theme=light&amp;version=privacy[1].htm.2.drfalse
                                                            high
                                                            http://www.apache.org/licenses/LICENSE-2.0operatordeferred_bin_base__en[1].js.2.dr, accounts[2].htm.2.drfalse
                                                              high
                                                              https://lh4.ggpht.com/WnIr0x3yhEpMTqI4DCrI_ZOc9vdK_yV0WPig_suRjHQCv4B-2CmQoQu3nE-Eo7_MZ-yZQbq30w=w72accounts[2].htm.2.drfalse
                                                                high
                                                                https://www.youtube-nocookie.com/embed/48l-xdS4pXg?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c~DF0544450210876992.TMP.1.drfalse
                                                                  high
                                                                  https://www.youtube.com/generate_204?cpn=base[1].js.2.drfalse
                                                                    high
                                                                    https://www.gstatic.NGX8DP50.js.2.drfalse
                                                                    • URL Reputation: safe
                                                                    • URL Reputation: safe
                                                                    • URL Reputation: safe
                                                                    • URL Reputation: safe
                                                                    unknown
                                                                    https://youtube.com/api/drm/fps?ek=uninitializedbase[1].js.2.drfalse
                                                                      high
                                                                      https://about.google/privacy[1].htm.2.drfalse
                                                                      • URL Reputation: safe
                                                                      • URL Reputation: safe
                                                                      • URL Reputation: safe
                                                                      • URL Reputation: safe
                                                                      unknown
                                                                      https://schema.org/BreadcrumbList2917834[1].htm.2.drfalse
                                                                        high
                                                                        https://www.google.co.uk/financeso[1].htm0.2.drfalse
                                                                        • URL Reputation: safe
                                                                        • URL Reputation: safe
                                                                        • URL Reputation: safe
                                                                        • URL Reputation: safe
                                                                        unknown
                                                                        https://developers.googleblog.com/2018/03/discontinuing-support-for-json-rpc-and.htmlcb=gapi[1].js0.2.drfalse
                                                                          high
                                                                          https://policies.googl{98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drfalse
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          unknown
                                                                          https://maps.google.co.uk/maps?hlso[1].htm.2.dr, so[1].htm0.2.drfalse
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          • URL Reputation: safe
                                                                          unknown
                                                                          https://www.youtube-nocookie.com/embed/ZdEIZNg3epQ?rel=0&amp;showinfo=0&amp;theme=light&amp;version=privacy[1].htm.2.drfalse
                                                                            high
                                                                            https://www.google.co.uk/shopping?hlso[1].htm.2.dr, so[1].htm0.2.drfalse
                                                                            • URL Reputation: safe
                                                                            • URL Reputation: safe
                                                                            • URL Reputation: safe
                                                                            • URL Reputation: safe
                                                                            unknown
                                                                            https://schema.org/ListItem2917834[1].htm.2.drfalse
                                                                              high
                                                                              https://www.youtube.com/watch?v=ZdEIZNg3epQZdEIZNg3epQ[1].htm.2.drfalse
                                                                                high
                                                                                http://youtube.com/yt/2012/10/10base[1].js.2.drfalse
                                                                                  high
                                                                                  https://support.googlee.com/signin/v2/identifier?service=wise&passive=1209600&continue=https%3A%2F%2{98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drfalse
                                                                                    high
                                                                                    https://www.youtube-nocookie.com/embed/YlmVKT3Zvhw?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c~DF0544450210876992.TMP.1.drfalse
                                                                                      high
                                                                                      https://support.mozilla.org/en-US/kb/private-browsing-use-firefox-without-history2917834[1].htm.2.drfalse
                                                                                        high
                                                                                        https://www.google.%/ads/ga-audiencesanalytics[1].js.2.drfalse
                                                                                        • URL Reputation: safe
                                                                                        • URL Reputation: safe
                                                                                        • URL Reputation: safe
                                                                                        • URL Reputation: safe
                                                                                        low
                                                                                        https://www.youtube.com/watch?v=48l-xdS4pXg48l-xdS4pXg[1].htm.2.drfalse
                                                                                          high
                                                                                          https://support.google{98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat.1.drfalse
                                                                                          • URL Reputation: safe
                                                                                          • URL Reputation: safe
                                                                                          • URL Reputation: safe
                                                                                          • URL Reputation: safe
                                                                                          unknown
                                                                                          http://www.youtube.com/videoplaybackbase[1].js.2.drfalse
                                                                                            high
                                                                                            https://kids.youtube.com/privacynoticeNGX8DP50.js.2.dr, privacy[1].htm.2.drfalse
                                                                                              high
                                                                                              https://client-channel.youtube.com/client-channel/clientoperatordeferred_bin_base__en[1].js.2.drfalse
                                                                                                high
                                                                                                https://www.youtube.com/?glso[1].htm.2.dr, so[1].htm0.2.drfalse
                                                                                                  high
                                                                                                  https://www.blogger.com/so[1].htm0.2.drfalse
                                                                                                    high
                                                                                                    https://www.youtube.com/feed/history/search_history?utm_source=pp&amp;hl=en_GBprivacy[1].htm.2.drfalse
                                                                                                      high
                                                                                                      https://www.youtube-nocookie.com/embed/ggoJFaE71W8?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&c~DF0544450210876992.TMP.1.drfalse
                                                                                                        high
                                                                                                        http://youtube.com/drm/2012/10/10base[1].js.2.drfalse
                                                                                                          high
                                                                                                          https://accounts.youtube.com/accounts/CheckConnection?pmpoServiceLogin[1].htm.2.drfalse
                                                                                                            high
                                                                                                            https://readalong.googleNGX8DP50.js.2.drfalse
                                                                                                            • URL Reputation: safe
                                                                                                            • URL Reputation: safe
                                                                                                            • URL Reputation: safe
                                                                                                            • URL Reputation: safe
                                                                                                            unknown
                                                                                                            https://www.youtube.com/watch?v=YlmVKT3ZvhwYlmVKT3Zvhw[1].htm.2.drfalse
                                                                                                              high
                                                                                                              https://staging-casespartner-pa-googleapis.sandbox.youtube.comoperatordeferred_bin_base__en[1].js.2.drfalse
                                                                                                                high
                                                                                                                • No. of IPs < 25%
                                                                                                                • 25% < No. of IPs < 50%
                                                                                                                • 50% < No. of IPs < 75%
                                                                                                                • 75% < No. of IPs
                                                                                                                IPDomainCountryFlagASNASN NameMalicious
                                                                                                                172.217.23.1
                                                                                                                unknownUnited States
                                                                                                                15169GOOGLEUSfalse
                                                                                                                172.217.23.33
                                                                                                                unknownUnited States
                                                                                                                15169GOOGLEUSfalse

                                                                                                                General Information

                                                                                                                Joe Sandbox Version:31.0.0 Emerald
                                                                                                                Analysis ID:347664
                                                                                                                Start date:02.02.2021
                                                                                                                Start time:22:49:15
                                                                                                                Joe Sandbox Product:CloudBasic
                                                                                                                Overall analysis duration:0h 6m 23s
                                                                                                                Hypervisor based Inspection enabled:false
                                                                                                                Report type:full
                                                                                                                Cookbook file name:browseurl.jbs
                                                                                                                Sample URL:https://drive.google.com/file/d/1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9/view?usp=drivesdk
                                                                                                                Analysis system description:Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211
                                                                                                                Number of analysed new started processes analysed:12
                                                                                                                Number of new started drivers analysed:0
                                                                                                                Number of existing processes analysed:0
                                                                                                                Number of existing drivers analysed:0
                                                                                                                Number of injected processes analysed:0
                                                                                                                Technologies:
                                                                                                                • HCA enabled
                                                                                                                • EGA enabled
                                                                                                                • AMSI enabled
                                                                                                                Analysis Mode:default
                                                                                                                Analysis stop reason:Timeout
                                                                                                                Detection:CLEAN
                                                                                                                Classification:clean1.win@3/125@6/2
                                                                                                                Cookbook Comments:
                                                                                                                • Adjust boot time
                                                                                                                • Enable AMSI
                                                                                                                • Browsing link: https://support.google.com/accounts?p=signin_privatebrowsing&amp;hl=en-GB
                                                                                                                • Browsing link: https://support.google.com/accounts?hl=en-GB
                                                                                                                • Browsing link: https://accounts.google.com/TOS?loc=GB&amp;hl=en-GB&amp;privacy=true
                                                                                                                • Browsing link: https://accounts.google.com/TOS?loc=GB&amp;hl=en-GB
                                                                                                                Warnings:
                                                                                                                • Behavior information exceeds normal sizes, reducing to normal. Report will have missing behavior information.
                                                                                                                • Exclude process from analysis (whitelisted): BackgroundTransferHost.exe, ielowutil.exe, backgroundTaskHost.exe, svchost.exe, wuapihost.exe
                                                                                                                • Excluded IPs from analysis (whitelisted): 13.64.90.137, 104.43.193.48, 104.108.39.131, 172.217.23.14, 172.217.22.205, 172.217.23.67, 172.217.23.35, 172.217.20.238, 172.217.22.206, 216.58.207.164, 216.58.207.174, 51.11.168.160, 172.217.23.46, 172.217.20.227, 172.217.20.234, 216.58.207.142, 216.58.207.138, 172.217.22.234, 172.217.23.78, 172.217.22.238, 152.199.19.161, 2.20.143.16, 2.20.142.209, 52.155.217.156, 20.54.26.129, 92.122.213.194, 92.122.213.247
                                                                                                                • Excluded domains from analysis (whitelisted): gstaticadssl.l.google.com, scone-pa.clients6.google.com, au.download.windowsupdate.com.edgesuite.net, ssl.gstatic.com, arc.msn.com.nsatc.net, support.google.com, ogs.google.com, policies.google.com, a1449.dscg2.akamai.net, arc.msn.com, e11290.dspg.akamaiedge.net, iecvlist.microsoft.com, db5eap.displaycatalog.md.mp.microsoft.com.akadns.net, go.microsoft.com, audownload.windowsupdate.nsatc.net, realtimesupport.clients6.google.com, drive.google.com, www.google.com, displaycatalog.mp.microsoft.com, watson.telemetry.microsoft.com, www.gstatic.com, img-prod-cms-rt-microsoft-com.akamaized.net, au-bg-shim.trafficmanager.net, www.google-analytics.com, displaycatalog-europeeap.md.mp.microsoft.com.akadns.net, skypedataprdcolwus17.cloudapp.net, fonts.googleapis.com, accounts.google.com, www-google-analytics.l.google.com, plus.l.google.com, fonts.gstatic.com, ie9comview.vo.msecnd.net, db3p-ris-pf-prod-atm.trafficmanager.net, displaycatalog.md.mp.microsoft.com.akadns.net, ris-prod.trafficmanager.net, ctldl.windowsupdate.com, a767.dscg3.akamai.net, skypedataprdcolcus15.cloudapp.net, ris.api.iris.microsoft.com, youtube-ui.l.google.com, www3.l.google.com, play.google.com, blobcollector.events.data.trafficmanager.net, go.microsoft.com.edgekey.net, apis.google.com, cs9.wpc.v0cdn.net
                                                                                                                • Report size getting too big, too many NtDeviceIoControlFile calls found.
                                                                                                                No simulations
                                                                                                                No context
                                                                                                                No context
                                                                                                                No context
                                                                                                                No context
                                                                                                                No context
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\BACZYXTY\www.youtube-nocookie[1].xml
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):876
                                                                                                                Entropy (8bit):4.605460371098042
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:W00UJgTYW0UJRW0UJPW0UJXYW0UJFW0UJDW0UJ3W0UJ+0W0UJZWS:1uE0r0x0NY0P0Z0J0k00vt
                                                                                                                MD5:9B1E2ED3A53B7C5C90624A1AC4C63857
                                                                                                                SHA1:2B8ECE226B9C959E5493CC6C5304883B099FEE78
                                                                                                                SHA-256:2A907E76B6C69CBF51BF02C7A374E41703A26A19A679004E8AD2763C031BAE2E
                                                                                                                SHA-512:410A856F11E256B09AB6A1B0B4BD8F01F88D211028E47BA665FC9EA07D6686233FB0C238BC45812A2CA2DB765A95BD101B3730CC4C86930B72FF87D4824CB470
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <root></root><root></root><root></root><root><item name="__sak" value="1" ltime="1857853248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1873413248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1882613248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1898693248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1906933248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1968733248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="1977733248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="2063493248" htime="30865837" /></root><root></root><root><item name="__sak" value="1" ltime="2072053248" htime="30865837" /></root><root></root>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\E5F0NRSV\accounts.google[1].xml
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):94
                                                                                                                Entropy (8bit):4.567426396822443
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3:D90aK1ryRtFwsoIcDAqFf3pvWJCqSRr0uFKb:JFK1rUFxmAq93EJu90Zb
                                                                                                                MD5:75E66117109F2037DE5D8957CE9AB369
                                                                                                                SHA1:0D573AE2DA0A4CAD029E385C897CC9054E9A2DAC
                                                                                                                SHA-256:1C5ED205C9E04362E8B78AD878FDA08D0F563444F85D80BFE2BD6F80F2EBCE1C
                                                                                                                SHA-512:8BED0504167C16146AF131CFC4F647641F9F38C08E92869ED02011DF0E91C0AAEB62166640FF7FAF3BC6F8BFF7A46BCD32867861F8D7137C3BDD8AA7E43100CA
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <root></root><root><item name="promo" value="{}" ltime="1579393248" htime="30865837" /></root>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\URW0GA4Q\support.google[1].xml
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):158
                                                                                                                Entropy (8bit):4.317497612522703
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3:D90aK1r0aK1r0aK1ryRtFwsR9eYHpqqRW+eYHzR3rwPQqSRr0uFK1r0aKb:JFK1rFK1rFK1rUFCYJqqwDYTR3EPE90q
                                                                                                                MD5:C0B441004DDAA653BB0DC0A460C50B37
                                                                                                                SHA1:B9C98D1763142E08276D728FC14D96A3DD52871F
                                                                                                                SHA-256:A9473B33750CA15A6EBDAD48CA3F54A7FF1C39CC60A929A2A8A05C455F42C999
                                                                                                                SHA-512:58D8890D3EE7A8506C0E4F6D6866E07758270294093F39ABAAB6C316C68074E01E1C5382659E525A066F641C7E0975B6434396B79713D09A7EC71896ABF90D01
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <root></root><root></root><root></root><root><item name="__storage_test__" value="__storage_test__" ltime="1774613248" htime="30865837" /></root><root></root>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{98C3C2F2-65A0-11EB-90EB-ECF4BBEA1588}.dat
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:Microsoft Word Document
                                                                                                                Category:dropped
                                                                                                                Size (bytes):30296
                                                                                                                Entropy (8bit):1.854919919196988
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:rIZfZO2N9WOtkifs2UzMW8B1SCD12sf1Z2ZjX:rIhlNUu5ZT1XU
                                                                                                                MD5:E7869CC9AA428BE42DF4F1FB68B07D51
                                                                                                                SHA1:3C6AB1518AB8B0A155A17C31ABE142B786736F81
                                                                                                                SHA-256:FEACEDAA5497312F9E60C7A364A0841FA29CEC09E184E351C4ED745029A9AFA6
                                                                                                                SHA-512:BE17F79189295C464095040347357BD6D3955EDD9744181BE41493D593DB6E3D31ACCAEB8CF30D16EB2B5414D4F45D8583CFA3B852A26F77F701A0E6BD2CF7F4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................R.o.o.t. .E.n.t.r.y.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{98C3C2F4-65A0-11EB-90EB-ECF4BBEA1588}.dat
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:Microsoft Word Document
                                                                                                                Category:dropped
                                                                                                                Size (bytes):131334
                                                                                                                Entropy (8bit):3.102501093963732
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:raymCahQG+Q7GnGShjJM5eGYdGeAzvdFrjARPZmGYdGeAzUdFrjiJqVwujijrD7T:AsF56F/d5xF/s
                                                                                                                MD5:694C0035B2F3B9327C87B50AE10D0754
                                                                                                                SHA1:9F403C4F2511E1623C61CB16D3FBAA82EC6EC71D
                                                                                                                SHA-256:632B61972EF48B21A38728212B32E48DDFE2F37929A0BFE86E515B3216AEDA00
                                                                                                                SHA-512:922651E6B144C5CE47DDF3522E31B09F45929F93B37A9598F3AC24678754FC27F1B6D2070764428A2507D274E25D023A8A938AFEA2CA3981466A3EE6A465E6F9
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................R.o.o.t. .E.n.t.r.y.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9F26D042-65A0-11EB-90EB-ECF4BBEA1588}.dat
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:Microsoft Word Document
                                                                                                                Category:dropped
                                                                                                                Size (bytes):16984
                                                                                                                Entropy (8bit):1.563737852435782
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:IwKGcprzGwpa0G4pQEGrapbSxrGQpKrG7HpR2sTGIpG:ruZtQE6SBSxFAqT24A
                                                                                                                MD5:9726C1E6E656E849100728927DD75DBD
                                                                                                                SHA1:EE495FEBD2FBE9DA7CCAE4141B89E19D9795443C
                                                                                                                SHA-256:4E8086F92CEC56893571D1CF741C35D6F877EEED070571CF5599395066268F5A
                                                                                                                SHA-512:5ADCFD840BABAC8537450E495D4672CD739E4F1FDD71E4A83D847817B17480504B1F40D47DF863DC98941E26DF60187B99DE70FC00181D361505AD0BCA1747DB
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................R.o.o.t. .E.n.t.r.y.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\gee00pr\imagestore.dat
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:data
                                                                                                                Category:dropped
                                                                                                                Size (bytes):11312
                                                                                                                Entropy (8bit):3.7487311714671865
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:YvIJct+cP47v+rcqlBPG9hHvIJct+EHP47v+rcqlBPG9S:YvI6ttPqWceBPGXvI6tFPqWceBPGI
                                                                                                                MD5:67D176AF7ED30208BFA3DDD481D7B54B
                                                                                                                SHA1:1BF59EB5397FFD693E4E47DDCAC8EBA4DAE78AED
                                                                                                                SHA-256:8E78D2535435BF3E63246C4E0921099E5AB190BAF8C0749D5A26AA3B98D7C465
                                                                                                                SHA-512:CFFD6AA7AD67C46F038A01A6945E9A02A2658F63713A9C5D6A3C14B0E6619997B617DAA21AB3F44CB7C7D2BCF66D20C7C52EE38291397575E3C528E6AD403E41
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ".h.t.t.p.s.:././.w.w.w...g.o.o.g.l.e...c.o.m./.f.a.v.i.c.o.n...i.c.o.~............... .h.......(....... ..... ............................................0...................................................................................................................................v.].X.:.X.:.r.Y........................................q.X.S.4.S.4.S.4.S.4.S.4.S.4...X....................0........q.W.S.4.X.:.................J...A...g.........................K.H.V.8..........................F..B.....................,.......................................B..............................................B..B..B..B..B...u..........................................B..B..B..B..B...{.................5.......k...........................................................7R..8F.................................................2........Vb..5C..;I..................R^.....................0................Xc..5C..5C..5C..5C..5C..5C..lv..........................................]i..<J..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\2038943760-postmessagerelay[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):9875
                                                                                                                Entropy (8bit):5.579490775730224
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:1TyJwMuoQ7zm1EeeFWLuivp3YiIJ1MfWXxPKPo5ulhIEkvwt:1TowMuoQ7zm1gC3ZIJvBiPKWaot
                                                                                                                MD5:7800A27DF1F2A78F5B6D6AAA9644802C
                                                                                                                SHA1:FE6DC96D677C9EEB610DB2B16B86B7C1C63C249C
                                                                                                                SHA-256:5BD9CA2F57B6C388332DD095D8C9BE87DC71C2E1B78B843515AE758FE05A1223
                                                                                                                SHA-512:EEC57D75897B295CD37E3588BA3ED4EEB2957B6F339979E9958DE7AA88B7ACAACF04E16B865F075C6307AC7EE0BBA683A44C9074624A8650A59AC7D458605508
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/accounts/o/2038943760-postmessagerelay.js
                                                                                                                Preview: /*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var m=this||self,w=function(a,b){a=a.split(".");var c=m;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var e;a.length&&(e=a.shift());)a.length||void 0===b?c=c[e]&&c[e]!==Object.prototype[e]?c[e]:c[e]={}:c[e]=b},x=function(a,b){function c(){}c.prototype=b.prototype;a.A=b.prototype;a.prototype=new c;a.prototype.constructor=a;a.v=function(e,d,h){for(var l=Array(arguments.length-2),n=2;n<arguments.length;n++)l[n-2]=arguments[n];return b.prototype[d].apply(e,l)}};function y(a){if(Error.captureStackTrace)Error.captureStackTrace(this,y);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a))}x(y,Error);y.prototype.name="CustomError";var z=function(a,b){a=a.split("%s");for(var c="",e=a.length-1,d=0;d<e;d++)c+=a[d]+(d<b.length?b[d]:"%s");y.call(this,c+a[e])};x(z,y);z.prototype.name="AssertionError";var B=function(a,b,c){if(!a){var e="Assertion failed";if(b){e+=": "+b;var
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\4165cd3aa643abb80fe1953668f67551[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):21529
                                                                                                                Entropy (8bit):5.054443624807617
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:X60/6I3ppwx5qaqdT0TM2uTQOi4Rsd22Z1CrTqtqj3UGs8GsCv31Y9YUxzfmUY:/3ppwx5ncTBRsd22Z1CrT8u3M3unY
                                                                                                                MD5:4165CD3AA643ABB80FE1953668F67551
                                                                                                                SHA1:5CB99354ADCF5162232CF6947AEA1423426CF12F
                                                                                                                SHA-256:F3FF1A6BB6153FA3F31FC17B1A8E57F835BB0DA7A9EB6430CFF660A02DEE7E54
                                                                                                                SHA-512:070292AB655F2879879DF09306E5F57BFFCD075B7CBEA27156DD19D981B6E40F441C5DE05EF40DB0AFDB1D6294B4E02A0C304E5E67C4EC4F9011483C0FF7BD8A
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/4165cd3aa643abb80fe1953668f67551.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="240" y1="94" x2="316" y2="94" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="272" y1="68" x2="272" y2="72" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6"/>. <stop offset="1" stop-color="#bdc1c6" st
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\4UaGrENHsxJlGDuGo1OIlL3Owpg[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 26180, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):26180
                                                                                                                Entropy (8bit):7.9847487601205405
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:axmLo3N7711ZHlB8N6yt/DvXjXjmDNzv6:bLodN78Ii7jKJv6
                                                                                                                MD5:4F2E00FBE567FA5C5BE4AB02089AE5F7
                                                                                                                SHA1:5EB9054972461D93427ECAB39FA13AE59A2A19D5
                                                                                                                SHA-256:1F75065DFB36706BA3DC0019397FCA1A3A435C9A0437DB038DAAADD3459335D7
                                                                                                                SHA-512:775404B50D295DBD9ABC85EDBD43AED4057EF3CF6DFCCA50734B8C4FA2FD05B85CF9E5D6DEB01D0D1F4F1053D80D4200CBCB8247C8B24ACD60DEBF3D739A4CF0
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/googlesans/v14/4UaGrENHsxJlGDuGo1OIlL3Owpg.woff
                                                                                                                Preview: wOFF......fD................................GDEF.......\.......QGPOS.......#..+...QGSUB.......y......m.OS/2...|...U...`h...cmap...........~n...cvt .......y........fpgm...........uo..gasp................glyf......=...m...5head..Z....6...6..'.hhea..Z.... ...$.0.5hmtx..[...........).loca..]....y.....K.6maxp..`H... ... .=..name..`h.......r.i6Ppost..a..........i]\prep..d....p..... ..x.U....Q.F..=#.0ZD.@@<..... "...Zp....+.c.f...).>Z.bm.Om..?...\\.zi.f.^b...[y/.........x..Z..+..=Z...~.................0.8....r.|...=s&oG....q.Fg...Y...:Wc..>..p..p....)......{.aX..}.?.k... .......N.=.c.Do.....~2.=.i$....0..>..!.'v.....q....>>.....o....30..0.w..|hR&mrf....,.Y..........%<..0.#.~...._a.c......K.z...H1..u.2.Y_..0.9..`.,.:.=(.N~..*.a.<.D=....*.V....\..>./.B.`iE..A9.S.|?.g).Rj..8Q...h.y.G.^.kx.o.....(...#....9...,4I8...7..o.I|@x..1.>'...H.m..$.yp..f..%..F$0.0.I.1...WR...E..8?a..|"................A.(...ZJ.q.K|...S.1..ht.ck....e...T.Zs,W..0..%.i.R...Ku.K.y.....j.RD..~..dpsh.fc.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\4UabrENHsxJlGDuGo1OIlLU94YtzCwA[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 26412, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):26412
                                                                                                                Entropy (8bit):7.982191465892414
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:BXFxTA19K8CdHMT6KHQO8LWhHCWN1ekhzLS:9f29ZYMTwO8qh1nm
                                                                                                                MD5:142CAD8531B3C073B7A3CA9C5D6A1422
                                                                                                                SHA1:A33B906ECF28D62EFE4941521FDA567C2B417E4E
                                                                                                                SHA-256:F8F2046A2847F22383616CF8A53620E6CECDD29CF2B6044A72688C11370B2FF8
                                                                                                                SHA-512:ED9C3EEBE1807447529B7E45B4ACE3F0890C45695BA04CCCB8A83C3063C033B4B52FA62B0621C06EA781BBEA20BC004E83D82C42F04BB68FD6314945339DF24A
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/googlesans/v14/4UabrENHsxJlGDuGo1OIlLU94YtzCwA.woff
                                                                                                                Preview: wOFF......g,................................GDEF.......q........GPOS.......%..+...RGSUB.......y......m.OS/2.......U...`i`..cmap...........~n...cvt ................fpgm...@.......uo..gasp................glyf......>F..m>Q..head..[\...6...6..'.hhea..[.... ...$...3hmtx..[..........<'3loca..^l...{...._.{.maxp..`.... ... ....name..a........V..4.post..a..........i]\prep..et.......^....x.D...Q...3..IX=D.@@....@....."...}......`.%.....x.........umW...g.WwO.....J..^?.Jci^N{.Nr..Jw@.n(.....t4....g...x.....6.E..8..........affff.0.B..&.L...B.Nzy..n.T.t~w&..%[.dYzzz.Oe" ..lE.........m..7[s}...[l..)..)...(H.A.@q.57..S.@.._..].*.j.-^N.R...'...]v.0..2n.6...~....X..xN.DN.T..b..*Q5.E.).,QI.....M....6.P."..|..*.tI5.......t..r.(...{M..T}..@.kbNP.I*.9-...=E.U'.{.....p|.t..qJE.9...'...*...z...L./.....rnXQ.6.|.....n.V.....K.?.G...<..<..Q.....C..K(s.PR.x\(..P@.P..z.DL.1.$*../.8A.8Q.r.Pr[e.Rt+~.}9.)E.'.U..z.G..G..OH/H...L.../..{S...EP.%........o.................uN...'.}%..9.F
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\4UabrENHsxJlGDuGo1OIlLV154tzCwA[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 26164, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):26164
                                                                                                                Entropy (8bit):7.983292364847896
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:L9QwjnXN11zY7+dePzz5Othh7STtySTygbOg9zp:L9pjz1kCePzQthJSYgbRp
                                                                                                                MD5:CCDA7B53E281A638F36ED62514815268
                                                                                                                SHA1:CF6D39BAB2A012D008EC9EDF95F4F4BDACF93770
                                                                                                                SHA-256:673F112749C21E5BE0D1338E1709A1D981053E239E98CE09D0BB849BB34FCD98
                                                                                                                SHA-512:20645A09B2FF157E50C71D862AA4FE6729FFD8BE18FB3D390B3714DEEC4F4FFF49FAC16EC509F8D620E476DC1942C67C95A95ABF14A06585F5B504FB4BE89F58
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/googlesans/v14/4UabrENHsxJlGDuGo1OIlLV154tzCwA.woff
                                                                                                                Preview: wOFF......f4.......|........................GDEF.......q.......~GPOS.......#..+...UGSUB.......y......m.OS/2.......U...`j(..cmap...........~n...cvt ............(...fpgm...`.......uo..gasp...(............glyf...4..=...k....head..Z<...6...6.x'.hhea..Zt... ...$....hmtx..Z...........%.loca..] ...y......%.maxp.._.... ... ....name.._........Z.L3.post..`d.........i]\prep..d$........t...x.E......E.}&$a......A.. ....,....`..}....q....+o...9 ....B.J..WS..w2.{...o.D~!X.D:..Muq...[1 ..[.I...]..#-..0...x....+..E.pg....bfffffffff.0.+ef.5..N.0..K..r....Y...@..V.t.~.......[q....h+..y...1s.#.>.%....CX.,@.F..t.H..t..{.q.c.>..\?..J.".J.+.M.L...:l%..I\....<......._....M..-....7.BP.J.d2*.T..,G...*E?.Z.p..].w..=z....9.p{..<._O+*..r._...]U.]..?.r.JoQi..k..P...*.....=.X.:U.....\.....h.....r....L....J..Sn..<9..V..=.x=:x..x..yCr.#e.._..o.>...s.<!M.......!..o....!....j.#$.:A..Bn.2.$..,..E...{...G_.....L............jw..P.]!..wE.R..a..rK4...k.._.W24^...cuh..fTIH.Z.TJ....&.x
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\51cd09d6239edc9652bc05ad1d149a5c[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):13177
                                                                                                                Entropy (8bit):4.927867691017123
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+RHGRrrsHa2aDBUKdU1Q7dXphVsVjVArUaNqvqurfGFDJDfQaUZuZyWF2gSM4wEz:4G6HiNq14FvrUaNqvqiGJJjJUE8wnI
                                                                                                                MD5:51CD09D6239EDC9652BC05AD1D149A5C
                                                                                                                SHA1:6C88C92D1C01A8ADDDA86322DEB1487CDA763C8E
                                                                                                                SHA-256:96B628232FE1459C56ADFC5E7877CE0AEC28E17D3B137408B7A2EC278181BDDF
                                                                                                                SHA-512:DA5F756FBFBA4EE0540B651D2DA1A5664A2689E55EC3F7124F284C3B2EC7288E447D7CEB5A54CC372E7E782D8DA0DBCB320E68F71D1A3E675F4085BB88BFB812
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/51cd09d6239edc9652bc05ad1d149a5c.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="293.155" y1="108.155" x2="321.845" y2="79.466" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6"/>. <stop offset="1" stop-color="#bdc1c6" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="46" y1="93" x2="74" y2="93" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6" stop-opacity="0"/>. <stop offset="0.137" stop-color="#bdc1c6" stop-opacity="0.021"/>. <stop offset="0.279" stop-color="#bdc1c6" stop-opacity="0.084"/>. <stop offset="0.424" stop-color="#bdc1c6" stop-opacity="0.189"/>. <stop offset="0.57" stop-color="#bdc1c6" stop-opacity="0.336"/>. <stop offset="0.718" stop-color="#bdc1c6" stop-opacity="0.525"/>. <stop offset="0.864" stop-color="#bdc1c6" stop-opacity="0.753"/>. <sto
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\546f2b674b407304a2570e71a216e509[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):20864
                                                                                                                Entropy (8bit):4.925372381610842
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:7HksMYZuvecIQW8rzTLbzDAEIHN8Ssvopa:7HU12wvopa
                                                                                                                MD5:546F2B674B407304A2570E71A216E509
                                                                                                                SHA1:0ADEC43FBC9DFC2AB1587FD3F6A673FE227B625B
                                                                                                                SHA-256:9D42DE0208263D6D6E7F1A627677B426CCB3E492334293B794CC141F9FA0FB3B
                                                                                                                SHA-512:D8CDC2C086A94E00D2D14CED3D87CB17235AC9F541CD2C6A28F438FA8CDFD064D832B53E40D58CAD4C4D5044FDDCF777DF2BBC2C2902874C1B23EF3096FE2C05
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/546f2b674b407304a2570e71a216e509.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="13" y1="105" x2="49" y2="105" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6" stop-opacity="0"/>. <stop offset="0.137" stop-color="#bdc1c6" stop-opacity="0.021"/>. <stop offset="0.279" stop-color="#bdc1c6" stop-opacity="0.084"/>. <stop offset="0.424" stop-color="#bdc1c6" stop-opacity="0.189"/>. <stop offset="0.57" stop-color="#bdc1c6" stop-opacity="0.336"/>. <stop offset="0.718" stop-color="#bdc1c6" stop-opacity="0.525"/>. <stop offset="0.864" stop-color="#bdc1c6" stop-opacity="0.753"/>. <stop offset="1" stop-color="#bdc1c6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="39" y1="166" x2="75" y2="166" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15"
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\KFOjCnqEu92Fr1Mu51S7ACc6CsI[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 21564, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):21564
                                                                                                                Entropy (8bit):7.9688026243536
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:bc6bX9TFqgFUvxQi0W1jHYHwnSthN/yiJsMw52R5oBAvhPFx466gfwu5:bcCV4aUlxHSw8ZyixnFP3N6U5
                                                                                                                MD5:FFCC050B2D92D4B14A4FCB527EE0BCC8
                                                                                                                SHA1:DE3033F27DB6BBDA89A0E6F16EC51E8C877739AB
                                                                                                                SHA-256:C8912EBD82B4DF2EB87E37B1F66432FA2186182E08BB8A533BA4C2DF6CE67FBA
                                                                                                                SHA-512:7D517BB33DE3D088B8EE4EC9250AB1645CF76B35B25F57C004BF82B5A9A30C15252C865765EFFD4679A68ACDF6EFB89E4B0319283914880935D8D1AC823FE652
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOjCnqEu92Fr1Mu51S7ACc6CsI.woff
                                                                                                                Preview: wOFF......T<................................GDEF.......G...d....GPOS................GSUB............7b..OS/2.......Q...`t.#ycmap...4.......L....cvt .......\...\1..Mfpgm...@...2......$.gasp...t............glyf......@...p.N..Hhdmx..M(...f........head..M....6...6...vhhea..M...."...$....hmtx..M....k......3.loca..PX........G.*"maxp..R4... ... ....name..RT........!.>gpost..S0....... .a.dprep..SH.......X9..x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x...pfK.G...1.c>..`9..m<+;..m.x...bg.M.T...O............l...XU.../{.[_..W....c.._..72.. ." z.+..F.......&.&...`e..T].....K=..K2S....q..d...xf.$~i..$?.d..dU.....@R-/LMO-J6...[]..Z..O.C_."If..d....fS....$d.G>eL`....Tf1.......9.c>..`1.TR..x./d-........q.........7....{...v.....!.....1.QG=.4.D3-..F;=..1'.'q.rw...9..e!.....Q....f......qV.n.h.V.Z]..B..C.[B...V.......v...o.w.{...w..zRO.i=..._.....-.m....].=...[...(1.(.#.....O0/.0?..04rL.G.9.....i6..l..|.(o.....|$,..{|&|....YJ...x.e8B.#..t;R8.{+....\=.....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\ZdEIZNg3epQ[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):47325
                                                                                                                Entropy (8bit):5.862971574864666
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:p/R7xR6oVfOtfOEVW72XWei8i87WT2YmhVyTOlBUdvobYc3xVqaR1RJ3XyZE7Rn:swB87WT2YmhVyTOgdv8YcygXyE
                                                                                                                MD5:99186B53E961EBC3022A5320A6E56E4C
                                                                                                                SHA1:FC62E2ABC2BF14F7395749E31C69CC317D31CF14
                                                                                                                SHA-256:C48669F644A6F9D81B3A23182087CA85B22275246EE86967999E7167A4A44397
                                                                                                                SHA-512:AF5665EB229B3E0090DD8A238D28CDA2EC3DAFB8B0D727939BB305AA1A5B95F2AFFCF28F38F42F373C617C7124CDFB37FA7982D86BF45DD16B97CCB021CE48B5
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/embed/ZdEIZNg3epQ?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&cc_lang_pref=en-GB&cc_load_policy=1&enablejsapi=1
                                                                                                                Preview: <!DOCTYPE html> <html lang="en-GB" dir="ltr" data-cast-api-enabled="true">.<head><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="robots" content="noindex"><style name="www-roboto" >@font-face{font-family:'Roboto';font-style:normal;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}@font-face{font-family:'Roboto';font-style:italic;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOjCnqEu92Fr1Mu51S7ACc6CsI.woff)format('woff');}@font-face{font-family:'Roboto';font-style:italic;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOkCnqEu92Fr1Mu51xIIzQ.woff)format('woff');}</style><script name="www-roboto" >if (document.fonts && document.fonts.load) {document.fonts.load("400 10pt Roboto", "");document.fonts.load("500 10pt Roboto", "");}</script>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\a8e78fa7fa279aa946fe1a9d6a0508f2[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):20225
                                                                                                                Entropy (8bit):5.08641328988594
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:Uzm9EDtDWs9GYb2o0qRn1ZIxdf8x2I+NJCVMZSh8iV11MS9xEWEbXZQOaLvED5:c9p2o0qn1ZIxdEx2zGvm8pLvEN
                                                                                                                MD5:A8E78FA7FA279AA946FE1A9D6A0508F2
                                                                                                                SHA1:F9F8EB782246A6C7BC79B043B66C1F3B3BF4B42B
                                                                                                                SHA-256:2196B3304BAA87751FD4EF3F62B307566487CD03199284BAA1E674E27E2FFA5E
                                                                                                                SHA-512:CE6AD1FFD1E76B916259989F8757B8489A13FDFFE30D37A8C8B6F1F5581D9896EAABD842AF38C8E370D0638AD4BE2963D627D89747EA800D6C1DB1391EC016AB
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/a8e78fa7fa279aa946fe1a9d6a0508f2.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="180" y1="26" x2="180" y2="170" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#e8eaed"/>. <stop offset="0.124" stop-color="#e8eaed" stop-opacity="0.835"/>. <stop offset="0.364" stop-color="#e8eaed" stop-opacity="0.542"/>. <stop offset="0.58" stop-color="#e8eaed" stop-opacity="0.309"/>. <stop offset="0.764" stop-color="#e8eaed" stop-opacity="0.141"/>. <stop offset="0.91" stop-color="#e8eaed" stop-opacity="0.038"/>. <stop offset="1" stop-color="#e8eaed" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="32" y1="165" x2="108" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\accounts[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with CRLF, LF line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):337
                                                                                                                Entropy (8bit):5.568360656245953
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6:wRkrQWR0iYBtqWkT2apKHu5BLCRiRtcRuQPT9RhHalZDDe86kToP:ekrY1t6Ks9CRi+uQr9/IZDDesi
                                                                                                                MD5:D77C4EA9CEEC2F107CEEBEA21C901D01
                                                                                                                SHA1:26B2A852D9D605121E82514C3C46CFF0E0E115C1
                                                                                                                SHA-256:FE23DD941171AB889E4111A4BCA6E90F83076298BD24E170C3108EFA71647C9D
                                                                                                                SHA-512:8C753D019C32674E9EF166C50ECE917787940C0194A6432C9FA6BDCEAD6981E0EB62FF9A20194BAD6AB81346762BBA1BADBCD45DFB956D89F8E62586C3B9E238
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <HTML><HEAD><meta http-equiv="content-type" content="text/html;charset=utf-8">.<TITLE>302 Moved</TITLE></HEAD><BODY>.<H1>302 Moved</H1>.The document has moved.<A HREF="https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&amp;p=signin_privatebrowsing&amp;hl=en-GB&amp;rd=1">here</A>...</BODY></HTML>..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\accounts[2].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, UTF-8 Unicode text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):713903
                                                                                                                Entropy (8bit):5.632900368787509
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6144:csORDVGijc734+8CMBCAyDWj4CqtdOoNSZeQKOkjqT0OWPH1vIe+4VTp:iVg734+89CHmyDOowVKOkjqT0Oo1dV9
                                                                                                                MD5:D29E55BB9FD6BEF0041A78D580EB31E1
                                                                                                                SHA1:CAFDC4D941CFBC81CB222A64C0F36F247F6D91F1
                                                                                                                SHA-256:F61BDDA3BA7FEC8AE8E782F2DB3C458D3DC8224274D29EACFC857F333C7C7B87
                                                                                                                SHA-512:BE694E3BD6F6DA70C17C19033040A16875C6558B4DE21AF0D754C973A43EB4E1B2AC361FBC857AEA3B684F13AC76003A047D2590E4E2133525D7131A59DF1FC4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://support.google.com/accounts?hl=en-GB
                                                                                                                Preview: <!doctype html><html class="hcfe" data-page-type="HOMEPAGE" lang="en"><head><title>Google Account Help</title><meta content="email=no" name="format-detection"><meta content="nofollow,noindex" name="robots"><meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"><meta content="Official Google Account Help Center where you can find tips and tutorials on using Google Account and other answers to frequently asked questions." name="description"><link href="https://support.google.com/accounts/?hl=en" rel="canonical"><meta content="width=device-width,initial-scale=1,maximum-scale=1,user-scalable=no" name="viewport"><style>@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:500;src:url(https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-we
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[1].css
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text
                                                                                                                Category:dropped
                                                                                                                Size (bytes):613
                                                                                                                Entropy (8bit):5.157298093683682
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:UJO6940FD7O6ZRoT6pYwEmr37uqF/iO6ZRoT6pixuGEqF/iO6ZN76pixuyvJY:G9XD7OYs/UrR/iOYsNxDv/iOYN7Nxw
                                                                                                                MD5:DC8AE9686BDE8C1517953AAF4C645E68
                                                                                                                SHA1:A95E59D8DDFECBE128C05B8C30E14688F135CA03
                                                                                                                SHA-256:AC7E61AF97048090E29FE6561A86B5FCD8F7BEF016C399D0C32683B02F059AD6
                                                                                                                SHA-512:5728E987376AE9209E44E677BACFE41F03FBC97B468D5BEE6F43D0CAE95B7F6AF7666DC05094B11C77F7BA72A2C963E4C4CB8C438F0B893B2D0A9C47DCB318D6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: /*. * See: https://fonts.google.com/license/googlerestricted. */.@font-face {. font-family: 'Product Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/productsans/v12/pxiDypQkot1TnFhsFMOfGShVF9eI.woff) format('woff');.}.@font-face {. font-family: 'Roboto';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/roboto/v20/KFOmCnqEu92Fr1Mu4mxM.woff) format('woff');.}.@font-face {. font-family: 'Roboto';. font-style: normal;. font-weight: 700;. src: url(https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmWUlfBBc-.woff) format('woff');.}.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\googlelogo_color_74x24dp[1].png
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:PNG image data, 74 x 24, 8-bit/color RGBA, non-interlaced
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1622
                                                                                                                Entropy (8bit):7.861147443229629
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:1iZ3jFWCXwymKs5AbKuyp/fvBheQdm+6QmWO:1iZ3ZWKZmKsCb0/fphH6QJO
                                                                                                                MD5:DE327BF69212B7255BBB0C8F40F52A3C
                                                                                                                SHA1:8C9E7517E6456E13F3F4640E39743B74F98B8F39
                                                                                                                SHA-256:0793CEFA320C6C622E8B143B35FAFB577BD7584C26796D3B5E1321463494FE76
                                                                                                                SHA-512:FDC82955CCBA3E9310CAC694197C43EB289CE9FFCB2A0784CCBAE0F3CEB5ADCF2F72D40C411290BDB6F3311E23321D13D3C2C6D20DC63E733A291A115E254060
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.google.com/images/branding/googlelogo/1x/googlelogo_color_74x24dp.png
                                                                                                                Preview: .PNG........IHDR...J.........].k.....IDATx....t.h...Y.sww?../$p............../.'-....C...K..{?,m...73d.....|z[..U..L./.....Zp.....<...D.......TZ.....^...a`.E......}@'.i.3.s.|&.......2nty...` .r.A.._H..e.p.-..`.'%.....a..31x>>..h....z.~.............(..6........V^..P...@u.........;..y..FY....J.B>+.....p..R.r.X.......@..V...z.M....y..)..@v..Fe..O.-8.5u9..px.. \.k....@..r..[..Y.*-.}.4E...B..l@..3.G6....j..<.of...a{j..d.L.r....7..a.../.*@...Y.`.l......9A....r..u..9.J..1ryC........HOt.U....b.E..{3iC.-....&!X.,9.*......d..!k6......M4...l..#4............*.&|...c..?OS...*.\~..v.q.A......*.....Q..2...@..G..P.x..@.j....d..@....(..........'.....%....._..Y...k...n<wkE .Wk\.............P<...p......\' d.@..X@...$......z..N)?......S., Q.T:...@..BMZ..Z...Y..@.J/X'.....:.P... ...'..X....`....6L?....3..)+...c.K..~)pF..d..s....B0`)......si.#..J.-...cl...s<.....z$'.#./x......%-...0.-.d.........x...+."."....N.b .....7....@EQ..W.ds....;.8J....^..9@.t.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\m=A4UTCb,VXdfxd[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):15664
                                                                                                                Entropy (8bit):5.477376267889222
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:txOnqq8NKyLh/I6a0h637+B69s5JRNsbfbMNtg6g7ZekC5nC+XfY:+B8XVh6Ks9zgg6gdekkXA
                                                                                                                MD5:4BB83F7BDAABAAF26141D9D50693325E
                                                                                                                SHA1:A4673D1E887D176655B12AABEBF7C8F561D7723D
                                                                                                                SHA-256:F6C26CB7BB600487762EA124503021D541071C87C32E84DB9D7D468D0613A75A
                                                                                                                SHA-512:6074570DBDD3D669B34B81E4F7CCEA697467F76C2589576BCCE67811B03829A36DF496FCEB11414A574D982ADAF81001059CC798148656BA48A3C5CB91EF84CD
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{._.qT=function(a){var b=new Set;Array.from(arguments).forEach(function(c){_.Cd(c).forEach(function(d){b.add(c[d])})});return b};_.rT=function(a,b,c,d){for(a=d?a:new Set(a);0<b.length;)d=b.shift(),d instanceof Set?d instanceof Set&&(b=b.concat([].concat(_.Xb(d.values())))):a.add(d);b=c||[];for(1==b.length&&b[0]instanceof Set&&(b=[].concat(_.Xb(b[0].values())));0<b.length;)c=b.shift(),c instanceof Set?c instanceof Set&&(b=b.concat([].concat(_.Xb(c.values())))):a.delete(c);return a};_.sT=function(){};._.sT.prototype.toString=function(){};_.tT={Ry:"button",Sy:"checkbox",COLOR:"color",vI:"date",wI:"datetime",xI:"datetime-local",JI:"email",WI:"file",gJ:"hidden",jJ:"image",jz:"menu",QJ:"month",YJ:"number",dK:"password",pz:"radio",jK:"range",lK:"reset",vz:"search",xK:"select-multiple",yK:"select-one",OK:"submit",ZK:"tel",TEXT:"text",zz:"textarea",cL:"time",URL:"url",oL:"week"};_.n
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\m=byfTOb,lsjVmc,LEikZe[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):35873
                                                                                                                Entropy (8bit):5.455853620600155
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:FzGJkxfQ3OAUX/D1dEj60IFQnMKnJFn6i3t3RfEn8ZyLHapNzgQg:Fz4WLFQMmJF6SNE8ZyTJZ
                                                                                                                MD5:F097B5F67E21CD9F730146A520FE81CC
                                                                                                                SHA1:96211A7E4E2B8F6D0CB23776753882E1592C3AF4
                                                                                                                SHA-256:41BB526F4ADABF7AA468CCF3DB3B5C6897019420805108019948D088D1917244
                                                                                                                SHA-512:25D85FE7353951C830C34A81DAB1853DC7F8965692F82EA4C31D17D146DCD321265E7D2D6A684EBD8EB73A63F07796202F91947AF20E8A2447F513A2B6B2B919
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{._.n("sy4x");.._.p();.._.Zs=function(a,b){a.sort(b||_.Fa)};_.$s=function(a,b){return(b||document).getElementsByTagName(String(a))};_.n("syv");./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var gt,it,yea,jt,uea,tea,xea,vea;_.at=function(a,b){this.j=this.va=this.o="";this.S=null;this.s=this.i="";this.u=!1;var c;a instanceof _.at?(this.u=void 0!==b?b:a.u,_.bt(this,a.o),this.va=a.va,this.j=a.j,_.ct(this,a.S),this.i=a.i,_.dt(this,et(a.g)),_.ft(this,a.s)):a&&(c=String(a).match(_.ml))?(this.u=!!b,_.bt(this,c[1]||"",!0),this.va=gt(c[2]||""),this.j=gt(c[3]||"",!0),_.ct(this,c[4]),this.i=gt(c[5]||"",!0),_.dt(this,c[6]||"",!0),_.ft(this,c[7]||"",!0)):(this.u=!!b,this.g=new _.ht(null,this.u))};._.at.prototype.toString=function(){var a=[],b=this.o;b&&a.push(it(b,jt,!0),":");var c=this.j;if(c||"file"==b)a.push("//"),(b=this.va)&&a.push(it(b,jt,!0),"
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\proxy[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):872
                                                                                                                Entropy (8bit):5.370429221074991
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:hYA0HqJmqGgtS79hLFBkAAqJmPm/esHbstJ4Nbx4IQEWYA0HqJmqGY79hLFBkAAc:hYPcBGBvPz7I4NiYPcBxBvPz7D4NW
                                                                                                                MD5:C985172333B72BB8BEE6DEF70CBD0DD9
                                                                                                                SHA1:40349307749DB9EEC15C94F2448C25EDFD3F54CF
                                                                                                                SHA-256:B70076DE452FC86D52A9316D3B38BBE6E56BFCDF4DC286B31F51054926B8CF29
                                                                                                                SHA-512:4BC83D93A05508BB2EBE0BE927AE422964A377E7268D4283F2652021113989A198C8DBC0C792E40C672E1D9AE6F7B4E2FC4FA76F971F0573A52F6774E7C181C4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://realtimesupport.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__
                                                                                                                Preview: <!DOCTYPE html>.<html>.<head>.<title></title>.<meta http-equiv="X-UA-Compatible" content="IE=edge" />.<script type="text/javascript" nonce="O3KWn4PfOpUBujfD6H4hYg==">. window['startup'] = function() {. googleapis.server.init();. };.</script>.<script type="text/javascript". src="https://apis.google.com/js/googleapis.proxy.js?onload=startup" async. defer nonce="O3KWn4PfOpUBujfD6H4hYg=="></script>.</head>.<body>.</body>.</html>.<!DOCTYPE html>.<html>.<head>.<title></title>.<meta http-equiv="X-UA-Compatible" content="IE=edge" />.<script type="text/javascript" nonce="DMnYzhRB52DDJ9Rstk8HuQ==">. window['startup'] = function() {. googleapis.server.init();. };.</script>.<script type="text/javascript". src="https://apis.google.com/js/googleapis.proxy.js?onload=startup" async. defer nonce="DMnYzhRB52DDJ9Rstk8HuQ=="></script>.</head>.<body>.</body>.</html>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\pxiDypQkot1TnFhsFMOfGShVF9eI[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 40068, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):40068
                                                                                                                Entropy (8bit):7.986363416256898
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:SZjhV5AtCnIR51aT0aCfvoIypmLL5V+VQLwv0JR9D2juelmPrldaC+Qac7:S5r5KRnECf6aL5V+VQLtmk4QaC
                                                                                                                MD5:3ABA54A73723BD3E90CB74D603687CCD
                                                                                                                SHA1:2C3D597CD36CA5856587C8482557B07DD8633329
                                                                                                                SHA-256:A94234B7387BC4E9FA7B73DEDD34E5CC1189A28D526F4DADDECD1C9AB7B86840
                                                                                                                SHA-512:78F4E6514CD81CECC898D151B31B691122715D0239A47AB5D53ACA4F45FC1707DDD8464543D523E355DC1C19FF257C14DF4490D0938518D02BA35AECD72482B6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/productsans/v12/pxiDypQkot1TnFhsFMOfGShVF9eI.woff
                                                                                                                Preview: wOFF..............`.........................GPOS..........<.?..GSUB...........l..ROS/2.......V...`h...cmap...l...<....T.S$cvt .......g...l...wfpgm...........a.A..gasp...............!glyf......Wm.......Nhdmx..i...(...O.....head...p...6...6..N{hhea....... ...$...Uhmtx.......x......+.loca...@...\...\y"..maxp....... ... .J..name...........,+.I.post............]/1.prep..............oNx.d..G.Q.....5.....n. ....d..d..p..o.........Q.....o..y~.....<..0 ....h..'c..d8.;.N'.....@...._.........LC.@.v......:.<.....r~.c....i..&.C.!Gt.x.jF...r....K...R}H@G.la./i.#..C./Q....pl+..\..$..o.....Hm\.*.....Z..t.".S..-....p..W\...*9..a|IH...9..c.s,.<88dI...%&GD.4..$D$D$.w;.=..%.4N6N].R...V>..O...0q.D$.Ow.HP....7!..v..7.%#.#...;...&?a.W..\oS....P..t+T..........+.K...,.V..h.D.'t......qW......,.e1.n.......}.....G...q..b>.(........#.....#Z./?0~FZ.5...O.".d4.'..|.ki..G...G.......Sv.w.@.qs`G@K.&.G..yk.......z.2.zB3.g....Mo.......E9..2lq...~H.B\.H..8...&..../.4.k..*6..]R.;.X..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\pxiDypQkot1TnFhsFMOfGShVF9eI[2].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 38064, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):38064
                                                                                                                Entropy (8bit):7.985282250659124
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:FmLfShvXTNLstzb6V8QZ3+ibkkftFHdur7Lh9JVIzdMIWRirfqiW5Pm9WmX:FmzSdXOhOOA5uDzHIz3WUrPYtmX
                                                                                                                MD5:E7BBF7E9E89975E144CBC167F2293FDE
                                                                                                                SHA1:0CB43D4E0ECF79C8AF6629CA1C386EA23FA02C02
                                                                                                                SHA-256:A87A298223B431522629F284F2D237773F8257B2DB427904CA95EC20DFC34CDD
                                                                                                                SHA-512:75AD4EF05603116A2C0D16E9C7F793D47602044611F369A83A6AED4D14279809064C43B6EA3BEA28F889F3CE65199DA67CF0685819A8F0C01F5DFC0C97969A7F
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/productsans/v9/pxiDypQkot1TnFhsFMOfGShVF9eI.woff
                                                                                                                Preview: wOFF..............G.........................GPOS.......K..:X....GSUB............!?-.OS/2.......Y...`k..cmap...(... ....)9.8cvt ...H...g...l...wfpgm...........a.A..gasp...............!glyf......TD...$...yhdmx..c...'m..Kha`98head...h...6...6..N{hhea....... ...$...Chmtx.......^...l}.*.loca... ...8...8...Pmaxp...X... ... .8..name...x........ P<.post...L...|...{#_.sprep..............oNx.d.%@E1....w*Vpw......]z$S...HT.L&.L.g8.M.....ib....&.......]..${..i..<..A..Y............+.... .[..x...pL.=L.]`.mv...+..x.J.1..G<.$.B&..r..5.zs.q..W..... ?./.1.i.....?...?..uk.&~.I..\YF.6...|<!.:..Jxg.|...0.bb..|..=.=.=G....&!&!CB...Y"............)ij.....*r.....ku.j.9q"....hs...D"._.........X.+02.{*>...";>.....3.([a.'y.L.&."..2.O....*....`..L~.l}....h>x .J...V.8u<..."..Wh......FF"#.8...........=#Q.K..........!.S}...9........bv..V......W.."/....9U}.....5....g.{"..{.....Y.v...T..o..i.s.....|V.Hs..8d..N=..lg..g.HV...E.{;W.w6...R3&.mV..Q"%.<.3tlE.i.3yB62.....>K...l....s.(.....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\related_item_external_avatar[1].png
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:PNG image data, 80 x 80, 8-bit colormap, non-interlaced
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):2577
                                                                                                                Entropy (8bit):7.781446647389294
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:hIClmS5juJIIPoy8mJgii5Je64GRWEcaGuFAHvUu3olwHCMtToF3PNxXPqoE:hIQj5jLIwXmJIasRXGhPywHo19P5E
                                                                                                                MD5:DBB859BB594B6AB827C4A148D9343720
                                                                                                                SHA1:BD7E94CCCAEB4B244E0D6A333450013F35FCC817
                                                                                                                SHA-256:679EC39C5CCB27D18357D6E23DE0DFA22D07ED435B09E85F7003FFC3870150D4
                                                                                                                SHA-512:9EA39C37EA3A6395B7E9CD63DA3BAAD1F2585B9BAB598D73B5FEBC7399B8532AC8FE57ED2E77537F9D7E689CE8CC289E20D29060023CD2AAD7ADFF4E03944C71
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/content/images/static/related_item_external_avatar.png
                                                                                                                Preview: .PNG........IHDR...P...P.............PLTE................F........?.......@..-..2..:..'.............4..............1..5..A.....*...........k..i..[.....I.......*..(..................T..3..9....!.....}.......*...............%........t.......8..v..'..+.........................k.....x........S........S.........E...................................>..5............A..........G..Y.......&...............".....................@..%....................................................>.....(..`..:............C..O..1..9..........s..M........m...........?..V..2..a..e..j..&..$..:.......R..&....................4........(..... ..............B..9.....-.."..-../.....E..\..2..*..7.....0........<..I..<..!........$..*...........D..5........B...................................;.f.....tRNS.@..f....IDATx..eTTi......a...k.....6....( ..H.2 .5...42.H.!.....H.....;.;qa..........y.J<..=..+....)cL@..a-..N..u.w....2..H}..q......WD...<i.W.W_.}&5=...p..Q.....1.....|..T....4.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\rs=AA2YrTsjK3XvJqwVOqhNUyIluXG8dqpEqw[1].css
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):950
                                                                                                                Entropy (8bit):5.295864452549682
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:efqcbAOWx3VY/s5Fff0gqRHl4kCHODYgqhvYHCu:eiVos5Fff0gyl4kCuDYgHf
                                                                                                                MD5:4EDE3133598C5CE04D5789F09A3A13D2
                                                                                                                SHA1:8DC6DD2C4F71B1346BA8964DE894ECD1F883C28F
                                                                                                                SHA-256:C5B984571B4FCA2BB8A351BCE70DAEE5496ED72E21247F6279593DD7D3A68C7F
                                                                                                                SHA-512:AEC371A1060BE5B3274FEAEF5506153FA5E510D44557F0324B1E80B70CE29BE60D8245E5CEB54A92108A7623FC7623B0D8AB5FDF6D1CA06152F6F6EC422D0E45
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: .gb_Se{background:rgba(60,64,67,0.90);border-radius:4px;color:#ffffff;font:500 12px 'Roboto',arial,sans-serif;letter-spacing:.8px;line-height:16px;margin-top:4px;min-height:14px;padding:4px 8px;position:absolute;z-index:1000}.gb_Jc .gb_Ec{overflow:hidden}.gb_Jc .gb_Ec:hover{overflow-y:auto}.gb_Ve.gb_We{background:rgba(255,255,255,1);border:1px solid transparent;box-shadow:0 1px 1px 0 rgba(65,69,73,0.3),0 1px 3px 1px rgba(65,69,73,0.15)}.gb_Ve.gb_We .gb_gf{color:black;opacity:1}.gb_Ve.gb_We button svg{color:#5f6368;opacity:1}.gb_hf{background:#fff;border:1px solid transparent;border-radius:0 0 8px 8px;border-top:0;font:normal 16px Google Sans,Roboto,RobotoDraft,Helvetica,Arial,sans-serif;position:absolute;z-index:986;box-shadow:0 1px 1px 0 rgba(65,69,73,0.3),0 1px 3px 1px rgba(65,69,73,0.15)}.gb_if{cursor:pointer;line-height:24px;padding:8px;padding-left:64px}.gb_jf{color:#999;font-weight:normal}.gb_kf{background-color:#f5f5f5}sentinel{}
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):118902
                                                                                                                Entropy (8bit):5.534836310611622
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:6fCy7gyA0X/Kwv4sHb+Quyif5wExlHKKDa67O9J6uDrsxdP40n:ikP0XNHx05lHb7UrsxV
                                                                                                                MD5:5E72F11D6C886808BAC24D753C8FE173
                                                                                                                SHA1:0597BD49AADD4294CB5E6E3DC6E401FE19993E08
                                                                                                                SHA-256:F00F1D864320FBA13EC78679A8443BE4038FD59F02B99F48278A5F8D35B9EDA3
                                                                                                                SHA-512:706D9B62935B5339847D4CB77690CC1855C00E1EC79023EDB7A06B63D81B087CAF6A38A17A8794FC093A3BBCBBA1E44691B9B338E1D2102C6623BF6D711B059D
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this.gbar_=this.gbar_||{};(function(_){var window=this;.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Oj=function(a){switch(a){case 200:case 201:case 202:case 204:case 206:case 304:case 1223:return!0;default:return!1}};._.Pj=function(){};_.Pj.prototype.o=null;.var Rj;Rj=function(){};_.x(Rj,_.Pj);Rj.prototype.j=function(){var a=Sj(this);return a?new ActiveXObject(a):new XMLHttpRequest};Rj.prototype.B=function(){var a={};Sj(this)&&(a[0]=!0,a[1]=!0);return a};var Sj=function(a){if(!a.A&&"undefined"==typeof XMLHttpRequest&&"undefined"!=typeof ActiveXObject){for(var b=["MSXML2.XMLHTTP.6.0","MSXML2.XMLHTTP.3.0","MSXML2.XMLHTTP","Microsoft.XMLHTTP"],c=0;c<b.length;c++){var d=b[c];try{return new ActiveXObject(d),a.A=d}catch(e){}}throw Error("U");}return a.A};._.Qj=new Rj;..}catch(e){_._DumpException(e)}.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Tj=function(a,b,c){a.j||(a.j={});if(!a.j[c]){for(var d=_.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\view[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT)
                                                                                                                Category:dropped
                                                                                                                Size (bytes):289
                                                                                                                Entropy (8bit):7.243880981828332
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6:Xtr6RWxy4LxbK6QQMo8EPfGDsG0Kzzjp2fL0X1bN1ukOC9mRE:XR894tKxQ2UuFzzjp2fL2bHB3oRE
                                                                                                                MD5:3BD52DD08B31C8B1A3D89C9FE1210316
                                                                                                                SHA1:C2525A380AB162069F5A1D5D4D07AEA2CA857C30
                                                                                                                SHA-256:073F9C7C06D5F54608629C0E7D5400D25E0EC14EC44B0B7E102DBBA1779D4A39
                                                                                                                SHA-512:5A93AA8464364297AF2F1E3220DBF292647C909245CF8D31333F2EFAB62CD2B5F4C25F589460F307880B21BC3B4F3641C46961D1D31E874B58B4A2C16C1BEBA7
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ............OO.@...|..F.,..X..*THh0u.xjp.`.]Y..n5...Lf....yND...9Q..K#1IBo.g(..N.!.X{v...9.[.M.w.}yN....7;U:"aF..T._.._.e...P...A?.:..S:.G.!.z=.B>b.S.~.F.y.Ay..`....W...........O"....Z...7M....Y?...-.E.Y..p..~.u...&~m...x0.xu...D......]..".FY..m.i..c.{5..`.3....Wi....G.......
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\www-embed-player[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):160750
                                                                                                                Entropy (8bit):5.575543050017186
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3072:7F+DfWaQaZAtk9VLp8ENIvhd4uX2JtR5yM:qf9Zj9VLp8ENN42Jt2M
                                                                                                                MD5:BD5A0FDF35F8E94A956F59368C125564
                                                                                                                SHA1:0EC491DF0EC8778E89A54FD236E254AA2E9E3CA3
                                                                                                                SHA-256:5ACDD95ED467523099E368A842944B8B5998E5680BA88419F6ABD2A43588A15C
                                                                                                                SHA-512:8739B53930CA459B00FED77BFCEFE41A06E3A282594A49A65C7C1A239F8B149CB744CB68F1EB167000C28BE79D4AF11625B49FE321EDE9B2F25819F42C8954FB
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/www-embed-player.vflset/www-embed-player.js
                                                                                                                Preview: (function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var m;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var ea=ca(this);function t(a,b){if(b)a:{for(var c=ea,d=a.split("."),e=0;e<d.length-1;e++){var f=d[e];if(!(f in c))break a;c=c[f]}d=d[d.length-1];e=c[d];f=b(e);f!=e&&null!=f&&ba(c,d,{configurable:!0,writable:!0,value:f})}}.t("Symbol",function(a){function b(e){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c("jscomp_symbol_"+(e||"")+"_"+d++,
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\www-player[1].css
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):347347
                                                                                                                Entropy (8bit):5.242800843137371
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:gzu9IdYR9WDQI0irpHrp3/fn8MZv8M5q4ay95G0VXkMAXOP5kRrDJciM/By2N+CQ:gzu99F3zTg2yV1uD
                                                                                                                MD5:9CBA01AF120AA5B7997C053E42C6B53B
                                                                                                                SHA1:95688132A444ADA064A1544649A98AB69DE44ACF
                                                                                                                SHA-256:23D321BC61FB66783A98FA49AC1D6E18CA4E1CCBF4177D7983DB1DAFBC57BE22
                                                                                                                SHA-512:FD3CF5B2CD7CF3A37118087504DDF12C9AAF6611AD8742C3AD987E537C1F3BD8C9FCA4690570EF0DBBB0F5530C3EE00AD78F40517F3411D18A0FB1991D67E374
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/www-player.css
                                                                                                                Preview: .html5-video-player{position:relative;width:100%;height:100%;overflow:hidden;z-index:0;outline:0;font-family:"YouTube Noto",Roboto,Arial,Helvetica,sans-serif;color:#eee;text-align:left;direction:ltr;font-size:11px;line-height:1.3;-webkit-font-smoothing:antialiased;-webkit-tap-highlight-color:rgba(0,0,0,0);touch-action:manipulation;-ms-high-contrast-adjust:none}.html5-video-player:not(.ytp-transparent),.html5-video-player.unstarted-mode,.html5-video-player.ad-showing,.html5-video-player.ended-mode,.html5-video-player.ytp-fullscreen{background-color:#000}.ytp-big-mode{font-size:17px}.ytp-autohide{cursor:none}.html5-video-player a{color:inherit;text-decoration:none;-moz-transition:color .1s cubic-bezier(0.0,0.0,0.2,1);-webkit-transition:color .1s cubic-bezier(0.0,0.0,0.2,1);transition:color .1s cubic-bezier(0.0,0.0,0.2,1);outline:0}.html5-video-player a:hover{color:#fff;-moz-transition:color .1s cubic-bezier(0.4,0.0,1,1);-webkit-transition:color .1s cubic-bezier(0.4,0.0,1,1);transition:co
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\www-widgetapi[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):106442
                                                                                                                Entropy (8bit):5.519320333702417
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:eYJJ2YtaYzld/2iUskORHGMAkILalOMDna0H44lCOPPW4Ilk4ayLZnbVu9vm6hi3:OY5fxm7Mjo4c9L2M
                                                                                                                MD5:592240FC6EE4F9A5849BB90A9844E503
                                                                                                                SHA1:816B6FE1A8E2B42EE0D6E818AA0E66E7687B0C55
                                                                                                                SHA-256:A151280598616DE3993BD30AA29976766A324A39C9141D43B73C3ED8A84224BA
                                                                                                                SHA-512:B6AD053BB27038FE47E96F1E8B98348B76BC31452A36326C57FF245E7D859CF584B345C88FA017A4E9A5E2526D670EE1AA28EA5EFA1B42BE1A96492800C17EB5
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube.com/s/player/f6ef8aad/www-widgetapi.vflset/www-widgetapi.js
                                                                                                                Preview: (function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var r;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var da=ca(this);function t(a,b){if(b)a:{for(var c=da,d=a.split("."),e=0;e<d.length-1;e++){var f=d[e];if(!(f in c))break a;c=c[f]}d=d[d.length-1];e=c[d];f=b(e);f!=e&&null!=f&&ba(c,d,{configurable:!0,writable:!0,value:f})}}.t("Symbol",function(a){function b(e){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c("jscomp_symbol_"+(e||"")+"_"+d++,
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\z27rnRBxPmRwB9JFpYWSMNoZkopqUuTJeYbDpe6urj8[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):37045
                                                                                                                Entropy (8bit):5.662067986566397
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:JefjFlP8G5EKzFbnhS3/Wof9o0n44s2kdSCRtjqbWb:Q8+EKzF+/W0oHrjqbO
                                                                                                                MD5:6C3ABDB436A8C5C9AB9FBAAFBE2CF695
                                                                                                                SHA1:7D45877C3177353E51C66FEA8B4B7949EAE4C492
                                                                                                                SHA-256:CF6EEB9D10713E647007D245A5859230DA19928A6A52E4C97986C3A5EEAEAE3F
                                                                                                                SHA-512:3174C8E3AD7EFD8C5277672E85E8A81403075FA33138EB826E8C0BB060CD54523F7C24347A633B4659A225644BE515ED1F4E264EE1AE91B69C8BBCB267C4D871
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.google.com/js/th/z27rnRBxPmRwB9JFpYWSMNoZkopqUuTJeYbDpe6urj8.js
                                                                                                                Preview: (function(){var D=this||self,F=function(I,U,A,E,O){if(!(O=(E=U,D.trustedTypes),O)||!O.createPolicy)return E;try{E=O.createPolicy(I,{createHTML:c,createScript:c,createScriptURL:c})}catch(g){if(D.console)D.console[A](g.message)}return E},c=function(I){return I};(0,eval)(function(I,U){return(U=F("ad",null,"error"))&&1===I.eval(U.createScript("1"))?function(A){return U.createScript(A)}:function(A){return""+A}}(D)(Array(7824*Math.random()|0).join("\n")+'(function(){var B=function(I,U,E,A,D,g,O,c,F,n,H,t,e,N,C,M){if(((I^683)%40||E.Sy&&Z(0,U,E.Sy,A,void 0),I^825)%58||(A.O=(D=If(-1,A,2,k(A,211))<<E|If(-1,A,2,k(A,211))<<U|If(-1,A,2,k(A,211))<<8,g=If(-1,A,2,k(A,211)),(g|0)+~g+-1*~(D|g)),A.i=void 0),!((I-3)%99)){for(F=(O=[],D=0);F<U.length;F++)for(D+=E,c=(g=c<<E,A=U[F],(A|0)+-1*(g&A)+-1+-1*~g);7<D;)D-=8,O.push(c>>D&255);M=O}if(2==(I-(21==((I^((I+1)%(I>>1&59||(M=(g=A[D]<<E|A[(D|0)+1]<<U|A[2*(D&2)+-1+-1*(~D^2)]<<8,O=A[-2*~(D&3)+4*(D&-4)+-1*(D|-4)+3*(~D|3)],(g|0)+-1+-1*(g|~O))),65)||(A.S=((A.S?A.S+"
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\02698a3383765bd3c250471c53a86c5a[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):6789
                                                                                                                Entropy (8bit):4.942475749260986
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:hHSTqdQTHkjKYk7MPEQDgJUf7qC7n+olFhT7n+olVJUf7NTehsY5:9cYk1NIRBHaTs
                                                                                                                MD5:02698A3383765BD3C250471C53A86C5A
                                                                                                                SHA1:CF1BB1E4F5DAE0C3BB0605B77565BDA2C12D75E5
                                                                                                                SHA-256:A1F675A555609FC86E744FA9D86B35F0924803C10D8D3DA2CA01D4171188552E
                                                                                                                SHA-512:BFF93C586263EEB0E70CF8FEE862DA65D5B28B5590685FAE05197F8F13C1567C3D8533C4C7E6C15620F8461B432E9A5EC223D98FE598A52030079375613484B6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/02698a3383765bd3c250471c53a86c5a.svg
                                                                                                                Preview: <svg id="Content" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <clipPath id="clip-path">. <path d="M48,7A41,41,0,1,0,89,48,40.989,40.989,0,0,0,48,7Z" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient" x1="54.72" y1="89.276" x2="92.089" y2="51.907" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#dfe1e5"/>. <stop offset="0.077" stop-color="#e9eaed"/>. <stop offset="0.227" stop-color="#f6f6f7"/>. <stop offset="0.426" stop-color="#fdfdfd"/>. <stop offset="0.875" stop-color="#fff"/>. </linearGradient>. <clipPath id="clip-path-2">. <rect x="53.811" y="50.998" width="39.187" height="39.187" rx="3.104" ry="3.104" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient-2" x1="29.406" y1="65.093" x2="66.594" y2="27.905" xlink:href="#linear-gradient"/>. <clipPath id="clip-path-3">. <rect x="28.501" y="27" width=
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\4UaGrENHsxJlGDuGo1OIlL3Owpg[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 26228, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):26228
                                                                                                                Entropy (8bit):7.98323449413518
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:DBOEuz6T0146JY/J6unqhOYK0GJenzOoyo6:DBHuea4j/vnqo304enzUo6
                                                                                                                MD5:6DD4AD69D53830BDF5232A13482BD50D
                                                                                                                SHA1:6FFF1079D7E5D02A2259CB5D7833E790239E01CF
                                                                                                                SHA-256:5CE48D9E9D748AD4686094D3CC33F5AE1E272A5B618F5C6D146C4D12EF02E4A6
                                                                                                                SHA-512:FC91E8C4EAE384D38667E330C5A5E4BF82EBAC9A23AB88439D7C22CCDD125DE7F1371DD953F18DEE60EF68B680DF49A32F684157D90F20E1DAC3BFFC9DF84118
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/googlesans/v16/4UaGrENHsxJlGDuGo1OIlL3Owpg.woff
                                                                                                                Preview: wOFF......ft.......`........................GDEF.......\.......RGPOS.......#..+..P.LGSUB................OS/2.......U...`h...cmap...........~n..cvt .......y........fpgm...$.......uo..gasp................glyf......=...m..N..head..Z....6...6..'.hhea..[.... ...$.0.6hmtx..[<.........})9loca..]....z.....&..maxp..`p... ... .>..name..`........r.i6Ppost..a<........O...prep..e....p..... ..x.U....Q.F..=#.`ZD.@@<..... "...Zp....+.c.f...).>Z.bm.Om..?...\\.zi.f.^b...[y/.........x..Z.......%......033333333...e....r......U..u.r.....sV..Z..^..c..>v..p7.x...w.i...Y.....X...N<.k...0...kc];.u......4.j...@....y."......,....#.;..........9...1....q..b..c...{....i2.H..g..:.....du.FX.].w3...{y...G....E.....~..RdX.|.\..U.^.x!....e.|.:.RX.Wxg.*...&.5....2n.Q...5.{..2....Ia.Vb%....:.Yn..QI.Z...x..Z.6..?........G..W.*^#.e..#|l2p.S+.?'.<E..<....M.H..".>..d....>n%.(..."....<"........U/z.%..=...Le.cL3.4..4..znxgX!JD%.....s....&.a..z1._....O+..g.dm.?.9Vj.1...B...8..S........ ._.E.... .[#_..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\4UabrENHsxJlGDuGo1OIlLU94YtzCwA[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 26464, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):26464
                                                                                                                Entropy (8bit):7.981932066790926
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:OIYb4Auz6mM1gBEL1WuL1BU91c6HJ8Y4mAS:OI84AueNmwHpBU91qY4m7
                                                                                                                MD5:08F80DE0ACF68D82AABAB974A47D9E5F
                                                                                                                SHA1:E6F1C0F5395A9C297AA162468961C1FAF0EC1ED9
                                                                                                                SHA-256:4070911A1BB9CC52C4E4CD5E85CA186DCDE89308A0517A8FAA4715C2E0A9D45E
                                                                                                                SHA-512:720DE47FDDA648AF7CE5F3F574EFA3322191C4D0001E31181739D65FFE0CCECED56635AF58E5E828072A17EEE1ED1E318AF467B8ED7F4185EE0F5155501CD8D0
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/googlesans/v16/4UabrENHsxJlGDuGo1OIlLU94YtzCwA.woff
                                                                                                                Preview: wOFF......g`.......d........................GDEF.......q........GPOS.......$..+..K.MGSUB................OS/2.......U...`i`..cmap...........~n..cvt ................fpgm...T.......uo..gasp................glyf...(..>W..mNU!.)head..[....6...6..'.hhea..[.... ...$...4hmtx..[..........1'jloca..^....~......t.maxp..a.... ... ....name..a4.......V..4.post..a.........O...prep..e........^....x.D...Q...3..I.=D.@@....@....."...}......`.%.....x.........umW...g.WwO.....J..^?.Jci^N{.Nr..Jw@.n(.....t4....i...x..Z...6.=r...............q`.>....m.....fy.g..y4N...tAg.."KWWW.j.....8...n.3..:..1....9.+.}...b]....0..6V..).G.r........N...,R(.o.t.LU....;.{.l.y....i..w.{F..;p'.....,.........:3...|..,.`pGPAV.?....q!......=.(cn.'<......sK_...]..U.W.......b....E|.o..Jp.n.uX....*J.q'SFy...l..Cd..XZ..RP...#.w...C)..s../..D..1.G...Sx...e.....x.o.mJ...~./L..r...Y..sD./.......>$R`..&.v......D..w.). .f.Y."<..V/.zQ{.8./...X*................B..Jp#%.7.e>+L.Q.1..hd..k._...f..u....+....Q...N..|....$Lv.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\4f19891c43001db11efc8048f9bc7cdb[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):2184
                                                                                                                Entropy (8bit):5.006709078848764
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:t4Lu3K0HxEGSGjGeGxGE+ePCgXP/jN4J9ZQu5x/MTFJv3/ufn7d79C7RudPfdjrf:+GnHx16ZAE+eV/iUZt/iPFGsXJ2kx
                                                                                                                MD5:4F19891C43001DB11EFC8048F9BC7CDB
                                                                                                                SHA1:FB001AFC35E6B79D7771DD3893102C14718A58CD
                                                                                                                SHA-256:4F0D0BECD3F8A0496FA98581492B85F53AAFDF0CD51E5626B5FD0B6AB2DB9379
                                                                                                                SHA-512:A59528BAB7A538E4F221BCA27440EB88C873950D1595AA7718FF9613D7CE14CE40CBD29D209B0BCC3C8029360E2BC3740AB723802492E75D13C91A153D7DF457
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/4f19891c43001db11efc8048f9bc7cdb.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="48" y1="71" x2="48" y2="33" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#5f6368"/>. <stop offset="0.232" stop-color="#5f6368" stop-opacity="0.699"/>. <stop offset="0.568" stop-color="#5f6368" stop-opacity="0.32"/>. <stop offset="0.836" stop-color="#5f6368" stop-opacity="0.086"/>. <stop offset="1" stop-color="#5f6368" stop-opacity="0"/>. </linearGradient>. </defs>. <title>site_sec_C_08</title>. <g style="isolation: isolate">. <g id="Content">. <g>. <path d="M48,7A41,41,0,1,0,89,48,40.989,40.989,0,0,0,48,7Z" fill="#e8eaed"/>. <g>. <path d="M16,33H80a0,0,0,0,1,0,0V68a3,3,0,0,1-3,3H19a3,3,0,0,1-3-3V33A0,0,0,0,1,16,33Z" fill="#fff"/>. <path d="M77,71H19a3,3,0,0,1-3-3V33H80V68A3,3,0,0,1,77,71Z" opacity="0.3" fill="url(#linear-
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\5959e84c2197c8a27da0a717f1cd47d5[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1812
                                                                                                                Entropy (8bit):5.137605121069892
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:tDLu3OP/je+R5kHxEG5GCGoGBG8+eiCfP/jNQJQce+vlUDlnlUD5/z6jERC6TlYd:hGO/pWHxYFbw8+er/BIRz6w7rT+
                                                                                                                MD5:5959E84C2197C8A27DA0A717F1CD47D5
                                                                                                                SHA1:717BD4592135C09EF42DE6767EA4C2D7FE844C1D
                                                                                                                SHA-256:EC86659A0D1607B58CF5E3ED06414FA776ED65BC97F9F6B7BDF184EF2D607973
                                                                                                                SHA-512:F1D0CB152D197415D55DB3D274941E100257A40453379BF4502CB6AA6C0218D5D5BA29C417B6D3AD925B331248A16AA5B141B0E2541AD4876088FEADDE49DE1D
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/5959e84c2197c8a27da0a717f1cd47d5.svg
                                                                                                                Preview: <svg id="Content" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <clipPath id="clip-path">. <path d="M48,7A41,41,0,1,0,89,48,40.989,40.989,0,0,0,48,7Z" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient" x1="29.091" y1="71.218" x2="66.018" y2="34.291" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#2c66bf"/>. <stop offset="0.201" stop-color="#3572d4"/>. <stop offset="0.446" stop-color="#3c7de6"/>. <stop offset="0.704" stop-color="#4183f1"/>. <stop offset="1" stop-color="#4285f4"/>. </linearGradient>. </defs>. <title>site_sec_C_09</title>. <g>. <g>. <path d="M48,7A41,41,0,1,0,89,48,40.989,40.989,0,0,0,48,7Z" fill="#e8eaed"/>. <g clip-path="url(#clip-path)">. <path d="M35.543,42.584a10.048,10.048,0,1,0-2.421-19.789,12.572,12.572,0,0,0-22.647,4.788,7.546,7.546,0,0,0,.992,15Z" fill="#fff"/>. </g>. <g>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\5e7cd445f8861a262a3da876f855a4cc[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1068
                                                                                                                Entropy (8bit):5.114357448467999
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:tDLu30ureO+exC/urN9uraurz9dde61Lj1uj+FhlHcsuUCZXHcmD0HWi4I:hG0uN+eOuvuGu4mDjuf3fi
                                                                                                                MD5:5E7CD445F8861A262A3DA876F855A4CC
                                                                                                                SHA1:B0CBB7191D67F8553B3292D5B721710F1C3994E5
                                                                                                                SHA-256:3F4E4B6EDE035C2ACD2917EEE9DB73B3FB4774179D03762E25C945F48C197979
                                                                                                                SHA-512:742E9F9D2AE39DAEFECE21516E1EEDAA4B7F531EB86801D8FE44904B49156ADC3B2B5854C519AD6AD92F9DB2FBA3431ECE3B03B8986C2A725573565D291C6954
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/5e7cd445f8861a262a3da876f855a4cc.svg
                                                                                                                Preview: <svg id="Content" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <clipPath id="clip-path">. <circle cx="48" cy="48" r="41" fill="none"/>. </clipPath>. </defs>. <title>site_sec_C_06</title>. <g>. <g>. <circle cx="48" cy="48" r="41" fill="#e8eaed"/>. <circle cx="48" cy="48" r="41" fill="none"/>. <circle cx="48" cy="48" r="41" fill="none"/>. <g clip-path="url(#clip-path)">. <path d="M89.981,22.441,67.05,68.843c-1.63,3.328-5.58,3.008-7.182-.581L51.8,50.168c-1.613-3.616-5.6-3.907-7.208-.526l-6.8,14.3C36.141,67.408,32.029,67,30.5,63.224L25.637,50.7a4.25,4.25,0,0,0-7.675-.708l-9.3,15.345" fill="none" stroke="#fbbc04" stroke-linecap="round" stroke-miterlimit="10" stroke-width="6"/>. </g>. <circle cx="48" cy="47.981" r="11.526" fill="#fff" stroke="#34a853" stroke-miterlimit="10" stroke-width="6"/>. <circle cx="87.5" cy="27.5" r="8.5" fill="#fbbc04"/>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\KFOlCnqEu92Fr1MmSU5fBBc-[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 19916, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):19916
                                                                                                                Entropy (8bit):7.96782347282656
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:JiNCb8EbT1rG/3rjJmQ8uLc5ZiRE5HWSiPTI45tKVr6+F7gLLdz:k4zbM3rjEQ8uQPiRERWSGIWtKVrWJ
                                                                                                                MD5:A1471D1D6431C893582A5F6A250DB3F9
                                                                                                                SHA1:FF5673D89E6C2893D24C87BC9786C632290E150E
                                                                                                                SHA-256:3AB30E780C8B0BCC4998B838A5B30C3BFE28EDEAD312906DC3C12271FAE0699A
                                                                                                                SHA-512:37B9B97549FE24A9390BA540BE065D7E5985E0FBFBE1636E894B224880E64203CB0DDE1213AC72D44EBC65CDC4F78B80BD7B952FF9951A349F7704631B903C63
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmSU5fBBc-.woff
                                                                                                                Preview: wOFF......M.................................GDEF.......G...d....GPOS...............hGSUB............7b..OS/2.......R...`t.#.cmap...........L....cvt .......X...X/...fpgm.......4......".gasp...@............glyf...L..:...j...w.hdmx..F....d........head..GD...6...6.Y.ihhea..G|.......$...vhmtx..G....k.....\].loca..J.........g.L.maxp..K.... ... ...\name..L........|..9.post..L........ .m.dprep..L........:z/.Wx...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x.....[....#N..m.m.m.mfm....SP..NuM..9]..=.U..!...[........w...|......^p....H......;...)..........;..EoDo....E.E.D...`.0.GG.aA.H.V.Mx\xA....../..d3.Eb_.J...R.^v........\^ob.}.z..k.x).v$f$..O)+.2..*....y}6`C6b.6cs...l...........!.........<..|.|..|..|..|.|....o....I%.4.L.SI.&C.6..!`...{...c..\.J.(.2.C....V.A..?.M<nG......v..m.;..R.C..aj.H...=..{.>.:.....}i_Y......:....o.&k..KY.2..6k....i]..{,.p}../.....VO3.o].fJ....R-TZ..;...RN..&V...C...3.?.......&..z.s&.D....r,.I...t.R..a$k..Mm..Y.U...+b.%kQ..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\QdmJfDs2FmYSVyZQG-Dd0jz29_CzvdDBcmTccG69CNs[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):22450
                                                                                                                Entropy (8bit):5.61310999308806
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:cHxpMSRUHdvGpbk7CjZ7CBln6efT/HSu040U+TTTrQQbi:cHxpedG4uV7qlj/rEU+TT/o
                                                                                                                MD5:863B55A3FEF6E10AC0C744053DC4C4F2
                                                                                                                SHA1:C7F9FC0A837B2444DE3F16C5016700FB4EF85BA7
                                                                                                                SHA-256:41D9897C3B361666125726501BE0DDD23CF6F7F0B3BDD0C17264DC706EBD08DB
                                                                                                                SHA-512:08DDA9ADC65744413CBD36F57E973C59A3648F157C40C59401A1CA2605AA9F42AB6973E9E33BDBE5508BB157A6112508EB718BD91056CA4BA7489F78842A5D2C
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.google.com/js/bg/QdmJfDs2FmYSVyZQG-Dd0jz29_CzvdDBcmTccG69CNs.js
                                                                                                                Preview: (function(){var A=function(Q,J){if(!(J=(Q=null,y).trustedTypes,J)||!J.createPolicy)return Q;try{Q=J.createPolicy("bg",{createHTML:I,createScript:I,createScriptURL:I})}catch(R){y.console&&y.console.error(R.message)}return Q},I=function(Q){return Q},y=this||self;(0,eval)(function(Q,J){return(J=A())&&1===Q.eval(J.createScript("1"))?function(R){return J.createScript(R)}:function(R){return""+R}}(y)(Array(7824*Math.random()|0).join("\n")+'(function(){var b={},k=this||self,QV,JT=function(Q){return Q},Rn=function(Q,J){function R(){}Q.d1=((Q.prototype=(Q.PS=(R.prototype=J.prototype,J.prototype),new R),Q.prototype).constructor=Q,function(I,B,y){for(var A=Array(arguments.length-2),Y=2;Y<arguments.length;Y++)A[Y-2]=arguments[Y];return J.prototype[B].apply(I,A)})},w,yV=function(Q,J){if(!(Q=k.trustedTypes,J=null,Q)||!Q.createPolicy)return J;try{J=Q.createPolicy("bg",{createHTML:JT,createScript:JT,createScriptURL:JT})}catch(R){k.console&&k.console.error(R.message)}return J},In=function(){},N,AT=funct
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\bscframe[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):15
                                                                                                                Entropy (8bit):3.906890595608518
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3:PouVn:hV
                                                                                                                MD5:FE364450E1391215F596D043488F989F
                                                                                                                SHA1:D1848AA7B5CFD853609DB178070771AD67D351E9
                                                                                                                SHA-256:C77E5168DFFDA66B8DC13F1425B4D3630A6656A3E5ACF707F4393277BA3C8B5E
                                                                                                                SHA-512:2B11CD287B8FAE7A046F160BEE092E22C6DB19D38B17888AED6F98F5C3E936A46766FB1E947ECC0CC5964548474B7866EB60A71587A04F1AF8F816DF8AFA221E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!DOCTYPE html>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\cb=gapi[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):100884
                                                                                                                Entropy (8bit):5.524623565937768
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:pYB9v4ye0RGPEiI199MSjQT7Rx0WCjfyQUEZPpIJYoDpA1/HNpHWNXRRF1OVxK4c:pK4ye0RkCjiE3IJTpoHNpHkR+4roC
                                                                                                                MD5:9534D32DE45A6E13B5E87DC9FCBF2B14
                                                                                                                SHA1:D299559588546F555EFE81E77BE17A7C10F82CD1
                                                                                                                SHA-256:79F21D811C42ACBDED1B2A1B86D7E9BB45D58A1F477E6ACF86B5CEC33EFE46C6
                                                                                                                SHA-512:EA05BD5432EFDA0655A27AB00649E5B6902215AC042BF3CEF2E8D0107A4DA64803EEF58684B0558B5CC8509F3347BFE7757567A05AC6EDF0036AFBAF9988899A
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: /* JS */ gapi.loaded_0(function(_){var window=this;./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var ka,na,sa,ya,Aa,Ba,Ga;_.ha=function(a){return function(){return _.ba[a].apply(this,arguments)}};_.ba=[];ka=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}};na="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.sa=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("a");};ya=sa(this);Aa=function(a,b){if(b)a:{var c=ya;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&na(c,a,{configurable:!0,writable:!0,value:b})}};.Aa("Symbol",function(a){if(a)return a;va
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\d1b68e2cd423aba52d74f02573df2d2d[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):9849
                                                                                                                Entropy (8bit):4.969315565687199
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+d0yV2aITB9sHTzAIyIdeoaqRF+6/wWN7c2RGd8V:CAWyoaqRF+6I8H
                                                                                                                MD5:D1B68E2CD423ABA52D74F02573DF2D2D
                                                                                                                SHA1:9FAA2F472EEAA4B61BE00B1A0AE2E1DE3082E407
                                                                                                                SHA-256:2041BF4F141AC095ABE365C86BB814509EF11DC741BA3B7E70FE60766432110E
                                                                                                                SHA-512:B1B798397D00943958E8E00CB73243CF40129921EFFF9DB852891B47711F0B32CB616EC1D24A8CCAFF939CED0F24399649FCF9C7614D8F880899C7152D9D525E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/d1b68e2cd423aba52d74f02573df2d2d.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="338" y1="92" x2="354" y2="92" gradientTransform="translate(-238)" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#1967d2"/>. <stop offset="1" stop-color="#1967d2" stop-opacity="0"/>. </linearGradient>. <clipPath id="clip-path">. <rect x="97" y="107" width="50" height="51" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient-2" x1="126" y1="147.5" x2="156" y2="147.5" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#188038"/>. <stop offset="1" stop-color="#188038" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-3" x1="254" y1="165" x2="270" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opac
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\e28714c71f217892f72b2698ea5cefef[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):4134
                                                                                                                Entropy (8bit):5.054285765130248
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+GOHx16ZAvHxDg+eJ/eux4tBeLDNdBeLSlBeLLpZdrzTPr+UkVr3H2c:+r1XSDQBe7BeeBeBeUkl2c
                                                                                                                MD5:E28714C71F217892F72B2698EA5CEFEF
                                                                                                                SHA1:E4257063DB9DF43DCDE90920CC3F34978BAEA51D
                                                                                                                SHA-256:65845E7CECBF4E88691BFF290F72B427B70887E23879F523BBC5B2B032C7609F
                                                                                                                SHA-512:C693B70D3EDCB32DAEA8BEC867BDF34AC2ED491F9CBC4A57A5433F462DC6EF2D0F01A0C17D7DFD457064D13D45207659ABF116B09191DFDDF38E706FC72A59BD
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/e28714c71f217892f72b2698ea5cefef.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="48" y1="71" x2="48" y2="25" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#5f6368"/>. <stop offset="0.232" stop-color="#5f6368" stop-opacity="0.699"/>. <stop offset="0.568" stop-color="#5f6368" stop-opacity="0.32"/>. <stop offset="0.836" stop-color="#5f6368" stop-opacity="0.086"/>. <stop offset="1" stop-color="#5f6368" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="76" y1="48" x2="86" y2="48" gradientTransform="translate(129 -33) rotate(90)" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#f29900"/>. <stop offset="1" stop-color="#f29900" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-3" x1="76" y1="15" x2="86" y2="15" gradientTransform="matrix(1, 0, 0, 1, 0, 0)" xlink:hr
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\e79ea0ed464fc8952d5b5582f9f9ae53[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):13232
                                                                                                                Entropy (8bit):5.004489515608496
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+9luEGZ2aRcZGDTBmQLBnEGRDzQeqzNOo4HFvdRX1ju6RGumD6k9i4AIkwNgFFro:HBBJQeq07fXDIumDf9lAuNgFFrpi
                                                                                                                MD5:E79EA0ED464FC8952D5B5582F9F9AE53
                                                                                                                SHA1:7C64CD9D283C3E87EC34160A70688A52D6144766
                                                                                                                SHA-256:FC432273DBD2B5233238B2BCA3E167CE7DD6BCB5318B3D06DC664ED15F309637
                                                                                                                SHA-512:3A5DE44AF0E40C6E226E4AACCE0BB7C9F78FE4DFB301B0FAB28586D7112456CC812F399DE163285CB6B79E1316DC87BF04ADA33A20AF9825417E33C122063A0A
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/e79ea0ed464fc8952d5b5582f9f9ae53.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="-56.701" y1="323.063" x2="3.299" y2="323.063" gradientTransform="matrix(0, 1, -1, 0, 614.584, 137.96)" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#202124" stop-opacity="0"/>. <stop offset="0.023" stop-color="#202124" stop-opacity="0.079"/>. <stop offset="0.257" stop-color="#202124" stop-opacity="0.751"/>. <stop offset="0.4" stop-color="#202124"/>. <stop offset="0.615" stop-color="#202124" stop-opacity="0.751"/>. <stop offset="0.965" stop-color="#202124" stop-opacity="0.079"/>. <stop offset="1" stop-color="#202124" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="273.911" y1="117.637" x2="297.393" y2="102.387" gradientTransform="translate(333.87 -192.271) rotate(78)" gradientUnits="userSpaceOnUse">. <stop off
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\fetch-polyfill[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Pascal source, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):8543
                                                                                                                Entropy (8bit):5.238064281324506
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:oQHdiEslZc0rsNYNU5mSJHqI03aej6tZoaMLQO/x5/P80+HcW:ocHslLsP5muHqI0Jj6tZcUO/x5+V
                                                                                                                MD5:04E3CC8A9641B3F9F9C9370F4E9B5BDD
                                                                                                                SHA1:9602A891F583094BB04FD407B253ABCAFFB8C8D0
                                                                                                                SHA-256:DE6C4FFA2BD9FD283610E28D0DB2EC48607AAB39D213A51AEF248673A0A7E980
                                                                                                                SHA-512:58942BCC0F39D620A475B65C1AEB4F18872F68F22C89DEC076906A0DB8BC2B7CCA9357710A7824A0FA7404FF73F41013AECA34609CAACD2187414F7BD0D490D6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://s.ytimg.com/yts/jsbin/fetch-polyfill-vfl6MZH8P/fetch-polyfill.js
                                                                                                                Preview: /*.. Copyright (c) 2014-2016 GitHub, Inc... Permission is hereby granted, free of charge, to any person obtaining. a copy of this software and associated documentation files (the. "Software"), to deal in the Software without restriction, including. without limitation the rights to use, copy, modify, merge, publish,. distribute, sublicense, and/or sell copies of the Software, and to. permit persons to whom the Software is furnished to do so, subject to. the following conditions:.. The above copyright notice and this permission notice shall be. included in all copies or substantial portions of the Software... THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,. EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF. MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND. NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE. LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION. OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\googleapis.proxy[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):12544
                                                                                                                Entropy (8bit):5.463909257947373
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:8iApwYKUa9uzv1cJJBA1pwgZCwm5Mi0+Sczlq:83pw9duQJO1pkwmR0+Scxq
                                                                                                                MD5:5B1BAFEA0F9841798E6CDD40737E5519
                                                                                                                SHA1:A4AD25A5DF5C93EDFE65C72819AD2A522A6F865E
                                                                                                                SHA-256:5343859EDF3D5ED87A8806CA4AB30B84E91783B5875C58BD56B66601780DFE4A
                                                                                                                SHA-512:4324D1118EF73DDFF224C2707B0924D3C00D0D30495E817B34BB6D15F911C0C1BB6D44D45F10FD83B11480FF97C019FE367363F12E65D50DCDBB90127652217E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://apis.google.com/js/googleapis.proxy.js?onload=startup
                                                                                                                Preview: var gapi=window.gapi=window.gapi||{};gapi._bs=new Date().getTime();(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var g=this||self,h=function(a){return a};/*. gapi.loader.OBJECT_CREATE_TEST_OVERRIDE &&*/.var m=window,n=document,aa=m.location,ba=function(){},ca=/\[native code\]/,q=function(a,b,c){return a[b]=a[b]||c},da=function(a){a=a.sort();for(var b=[],c=void 0,d=0;d<a.length;d++){var e=a[d];e!=c&&b.push(e);c=e}return b},v=function(){var a;if((a=Object.create)&&ca.test(a))a=a(null);else{a={};for(var b in a)a[b]=void 0}return a},x=q(m,"gapi",{});var C;C=q(m,"___jsl",v());q(C,"I",0);q(C,"hel",10);var D=function(){var a=aa.href;if(C.dpo)var b=C.h;else{b=C.h;var c=/([#].*&|[#])jsh=([^&#]*)/g,d=/([?#].*&|[?#])jsh=([^&#]*)/g;if(a=a&&(c.exec(a)||d.exec(a)))try{b=decodeURIComponent(a[2])}catch(e){}}return b},fa=function(a){var b=q(C,"PQ",[]);C.PQ=[];var c=b.length;if(0===c)a();else for(var d=0,e=function(){++d===c&&a()},f=0;f<c;f++)b[f](e)},E=
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\homepage_header_background_v2[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):60408
                                                                                                                Entropy (8bit):4.746090328799968
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:fctDxhgZqb0HZb0HEuZ5V2KKCICtvlc54WA+Vw4G4Fw0RToTQTQDbx4r/MT4gohL:fesZvo2KKVmp29bFhTOG2T4go+9nK8Hm
                                                                                                                MD5:A371D1ADD8D95D9A5AC0222DBFC707DA
                                                                                                                SHA1:B273236FC088B58AEC5BE2E7CD642E290C31CBF3
                                                                                                                SHA-256:0A11003900B5593A71CFAB463C2A5E7D2588B251F697EAE8B64946F4D178FE54
                                                                                                                SHA-512:1C4FC0A64E927A073713435830F9D3044894FFDAF30E6966B28D1F3757D564D6E9124F632EB0B61EA41947973FCB28C82F98696E021A8A827FB96E2FF0D27ACD
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/content/images/static/homepage_header_background_v2.svg
                                                                                                                Preview: <svg width="1280" height="307" viewBox="0 0 1280 307" fill="none" xmlns="http://www.w3.org/2000/svg">.<circle cx="1121.01" cy="217.239" r="27.6618" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1120.58 204.281V292.049" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1120.58 223.588L1130.88 213.286" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1120.39 233.491L1113.06 226.163" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1120.39 217.429L1113.06 210.102" stroke="#D4E1F3" stroke-linecap="round"/>.<circle cx="1132.29" cy="223.588" r="1.69704" stroke="#D4E1F3" stroke-linecap="round"/>.<circle cx="1104.71" cy="210.101" r="1.69704" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1101.26 297.3C1104.15 291.738 1110.46 288.868 1116.55 290.35C1122.63 291.832 1126.92 297.283 1126.93 303.549" stroke="#D4E1F3" stroke-linecap="round"/>.<path d="M1087.8 303.549C1087.7 300.666 1089.18 297.957 1091.66 296.486C1094.14 295.014 1097.23 295.014 1099.71 296.486C1102.19 297.957 1103
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\iframe_api[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1007
                                                                                                                Entropy (8bit):5.287854169255104
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:E1geJspSQDYtpqAK/HJ2TAXC5vuHM8aJLtdRWZ4FhQ:E1jspFcPcSAXC5kaJLzwYhQ
                                                                                                                MD5:F6DD993FB55DF5A3FD8A0B83F5381350
                                                                                                                SHA1:114F7B7A9E6A12DEBA5CB8E6063518DCB6A4C27F
                                                                                                                SHA-256:64678021DBFE28D4891502D5C78DE8FE44A19C8416097F31C2A9244714027435
                                                                                                                SHA-512:94A2279C0E2AB098EBD5B8D1EE45CCD56AB5C47A3497179ECBBAC9E74B1AB504652ED494A5BC16772D0F504F0E4E1C8375E23541DF0A081779CE5ED435DC3786
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube.com/iframe_api?trustedtypes=1
                                                                                                                Preview: var scriptUrl = 'https:\/\/www.youtube.com\/s\/player\/f6ef8aad\/www-widgetapi.vflset\/www-widgetapi.js';.try {. var ttPolicy = window.trustedTypes.createPolicy('youtube-widget-api', {createScriptURL: function(x) { return x; }});. scriptUrl = ttPolicy.createScriptURL(scriptUrl);.} catch (e) { }. if(!window["YT"])var YT={loading:0,loaded:0};if(!window["YTConfig"])var YTConfig={"host":"https://www.youtube.com"};.if(!YT.loading){YT.loading=1;(function(){var l=[];YT.ready=function(f){if(YT.loaded)f();else l.push(f)};window.onYTReady=function(){YT.loaded=1;for(var i=0;i<l.length;i++)try{l[i]()}catch(e){}};YT.setConfig=function(c){for(var k in c)if(c.hasOwnProperty(k))YTConfig[k]=c[k]};var a=document.createElement("script");a.type="text/javascript";a.id="www-widgetapi-script";a.src=scriptUrl;a.async=true;var c=document.currentScript;if(c){var n=c.nonce||c.getAttribute("nonce");if(n)a.setAttribute("nonce",n)}var b=.document.getElementsByTagName("script")[0];b.parentNode.insertBefore(a,b)
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\keyboard_arrow_up_24px[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):147
                                                                                                                Entropy (8bit):4.9621270003690565
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3:tIsqDmJS4RKb5zMcBH8+hHiATcvXjXRHoNcHgDXFUVLUJRVFiAdFUvuIIb:tI9mc4slzXdhC/O4gSVLU9FRF0ulb
                                                                                                                MD5:1F5DC0C5F607EC3BF9E3089FEBD9C373
                                                                                                                SHA1:1D8D1276A56A42B3EA7393767A8674CD45C43439
                                                                                                                SHA-256:00D8F7123BB5EF3F7FAD786905F5407CC5FB8B4C55E1B0511803F6C8C01E3903
                                                                                                                SHA-512:98C5C969A12B196176ADDD9C7DD8234C9D81EC513DE453F116E766DFA32E5B99AD2AEB68609353B349A65F7B26E68166C42337668B2BF1C8513FF4C77200271D
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/images/icons/material/system/svg/keyboard_arrow_up_24px.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" width="24" height="24" viewBox="0 0 24 24"><path d="M7.41 15.41L12 10.83l4.59 4.58L18 14l-6-6-6 6z"/></svg>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\m=NpD4ec,SF3gsd,YLQSd,lCVo3d,o02Jie,rHjpXd,pB6Zqd,QLpTOd,oWOlDb,n73qwf,MpJwZc,bIf8i,omf1Od,zbML3c,zy0vNb,K0PMbc,otPmVb,rlNAl[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):2776
                                                                                                                Entropy (8bit):5.302511876489502
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:x76E0EYElEtEEEfEWEzEeE9EDoEuE7LEfErEScRyS0UOtg72ZmbgieJJGoKkumkc:xowfPWmbgiOIrkFkc
                                                                                                                MD5:5831F6CE5112D842A8F1C15133A46117
                                                                                                                SHA1:7864BDC84CFBE58844E11D9A5C96A9B52876C9FA
                                                                                                                SHA-256:F34AD289D9AA89C22553406BCA92C341B8CB5A995C0EDF829E03A2A9877D4A29
                                                                                                                SHA-512:3EA4A37390A641ECA5E12501DB0B759C979877A6D75F5BADD2ECF313FBFE29F2F558C3843EDF6EEC467E05E3ED02AC9D5E8C8DD9251D7A7288F81C86B807BA6F
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this._G=this._G||{};(function(_){var window=this;.try{._.k("NpD4ec");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("SF3gsd");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("YLQSd");._.Iu(_.Jpa);.._.l();..}catch(e){_._DumpException(e)}.try{._.k("lCVo3d");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("o02Jie");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("rHjpXd");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("pB6Zqd");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("QLpTOd");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("oWOlDb");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("n73qwf");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("MpJwZc");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("bIf8i");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("omf1Od");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("zbML3c");............_.l();..}catch(e){_._DumpException(e)}.try{._.k("zy0vNb");.._.l();..}catch(e){_._DumpException(e)}.try{._.k("K0PMbc");.._.l();..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\m=_b,_tp[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):149928
                                                                                                                Entropy (8bit):5.475981703197614
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3072:mWYsCDKo6RXYHjjVU60pEjNwZtYgF5D4Hkux:TYQoTf0pEkttk
                                                                                                                MD5:18E9D3CF5D251F521EDDCA9D5E657F2F
                                                                                                                SHA1:FF58E1AE3B0D61BA6E12CEA33563AD520DC76401
                                                                                                                SHA-256:2B285D2C5D765C1508573C45812A83CAE56789D07E6DACFF89303E8351AA24CA
                                                                                                                SHA-512:75F31B325169CC3BC0CFBC4234598E283EC482E0790259332E03B7BC4E39754FDA4C26886A99E87B071D4469C1986B64F2D6949F3ECD967F23140D0213505C62
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{.var ha,Da,Qa,Ta,Ua,Xa,aaa,Ya,caa,daa,eaa,faa,gaa,rb,maa,kaa,naa,aa,Rb,Sb,oaa,Ub,Vb,paa,Zb;_.ba=function(a){return function(){return aa[a].apply(this,arguments)}};_.ca=function(a,b){return aa[a]=b};_.da=function(a){_.m.setTimeout(function(){throw a;},0)};_.ea=function(a){a&&"function"==typeof a.Qc&&a.Qc()};ha=function(a){for(var b=0,c=arguments.length;b<c;++b){var d=arguments[b];_.fa(d)?ha.apply(null,d):_.ea(d)}};._.ia=function(a){if(Error.captureStackTrace)Error.captureStackTrace(this,_.ia);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a));this.g=!0};_.la=function(a){return a[a.length-1]};_.ma=function(a,b,c){for(var d="string"===typeof a?a.split(""):a,e=a.length-1;0<=e;--e)e in d&&b.call(c,d[e],e,a)};_.oa=function(a,b,c){b=_.na(a,b,c);return 0>b?null:"string"===typeof a?a.charAt(b):a[b]};._.na=function(a,b,c){for(var d=a.length,e="string"===typeof a?
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\m=sy19,sy1a,sy1b,sy1d,sy1e,sy30,pwd_view[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):15251
                                                                                                                Entropy (8bit):5.595038460645723
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:DlAsEdGldVtkM6UG32SSigjbdf7yIuuZqQXa+Ad:Dlided7kM6UGmStSNpuuo4Ud
                                                                                                                MD5:E3E18BAD0C96A7CCB707A823C1D38375
                                                                                                                SHA1:64AF024336BE0BA728C8941CCBD4198714121647
                                                                                                                SHA-256:9E648491DCD326DE8361C5237460AE6640BEAC18451F6FC77A3ED52BB9604FE1
                                                                                                                SHA-512:1468A1C6AEABBA20E6DF81B95B238763B971E18A69F7B0C79871B1C6531ABC53F5CEC9492E32F34E357080942061B0B43006A6D2B0E77435F79C13DF6252A8B8
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this._G=this._G||{};(function(_){var window=this;.try{._.k("sy19");._.cS=function(){return"Try another way"};_.dS=function(){return"Enter code"};.._.l();..}catch(e){_._DumpException(e)}.try{._.k("sy1a");._.eS=function(){return(0,_.F)("Account recovery")};_.fS=function(){return"Verify that it\u2019s you"};.._.l();..}catch(e){_._DumpException(e)}.try{._.k("sy1b");._.I6a=function(a){a=a||{};return _.H6a(a)};_.H6a=function(a){a=a||{};return _.Et(a.Jn,1)?"Enter your password":"Enter a password"};_.I("Ib","",0,function(){return"Wrong password. Try again or click \u2018Forgot password\u2019 to reset it."});_.I("Jb","",0,function(){return"Forgot password?"});.._.l();..}catch(e){_._DumpException(e)}.try{._.k("sy1d");._.gS=function(a,b){a=a.ra&&(a.ra.ha||a.ra);var c=b.locale;b="";var d=c=_.Ft(_.Dt("en,en-US,"),c+",");d&&(d=a.ub(),d=_.H(null==d?null:d.getGivenName()));!d&&(d=!c)&&(d=a.ub(),d=_.H(null==d?null:d.Nc()));return b=d?b+(c?"Hi "+a.ub().getGivenName():""+a.ub().Nc()):b+"Welcome"};.._.l()
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\m=wmlPKb[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):757
                                                                                                                Entropy (8bit):5.248869174159452
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:kgEAgSyFOkBS8VE7t/iWV/s8me2GLv56r2vcTcGCWdx34Zt8fAnIMfhkbRNeQ0:kAyEkBS8upiWtDmehF/qZ54Xn8rG
                                                                                                                MD5:ADB7C029DCB1CFA3A5F14C32CFE33DBF
                                                                                                                SHA1:45C588E69F73E3BC4F3EE8175DA163A5D501AA93
                                                                                                                SHA-256:4317D4A31F27E46BA395A5C8D3BB2F29E2F6637DFAE1159C09D22D67531C23C3
                                                                                                                SHA-512:C49C95034B093E6B6CDE3ED8154954BA931A7C32210DDB1CE5D16FE871ADFC8B63CCF621D7EB4D649B795EF4E340D067AA31270DEB5751E7BE7EE9D9C30C2F7E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{._.n("wmlPKb");.var c2=function(a){_.T.call(this,a.ma);this.i=a.W.dk;this.o=a.W.view;this.j=this.getData("trackerId").Oa(void 0)};_.w(c2,_.T);c2.T=function(){return{W:{dk:_.$1,view:_.VH}}};c2.prototype.bG=function(){var a=this.i,b=this.o.getCurrentView().g.j,c=this.j,d=void 0,e=void 0;d=void 0===d?a.i.location.href:d;b=void 0===b?a.g.title:b;e=void 0===e?a.g.referrer:e;_.b2(a,"location",d,c);_.b2(a,"title",b,c);_.b2(a,"referrer",e,c);_.a2(a,"send",["pageview"],c)};_.V(c2.prototype,"wKZqRb",function(){return this.bG});._.fI(_.Lda,c2);.._.p();..}catch(e){_._DumpException(e)}.}).call(this,this.default_IdentityPoliciesUi);.// Google Inc..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\mspin_googcolor_medium[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):8707
                                                                                                                Entropy (8bit):4.910329849919684
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+fKyolAykoM1ghYipLJqJusZPttpZmD3Xnp9/qgod:+CSomZVfZQ8
                                                                                                                MD5:E9D99136E07244D9B5B24D45FB710BC4
                                                                                                                SHA1:B2405E47C4D87E232D896165314A5BB8314C22FE
                                                                                                                SHA-256:E46138FD8C6D5C3982CDD838F7455EA9B69F1280B684685A74C93966BC1C0090
                                                                                                                SHA-512:15DA65844A8D7539E26FF3632677051AE66702B4F9B2D1E0EAC0CF4A424099ACD8FB37447C16D52A9A38F3B347F5CDB77C50494E4BF2F12D1D458693510FEA29
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/content/images/static/mspin_googcolor_medium.svg
                                                                                                                Preview: <svg version="1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="11664" height="36" viewBox="0 0 11664 36"><defs><path id="a" fill="none" stroke-dasharray="58.9" d="M18 5.5A12.5 12.5 0 1 1 5.5 18" stroke-width="3" stroke-linecap="square"/><g id="b"><use xlink:href="#a" stroke-dashoffset="176.66"/><use xlink:href="#a" stroke-dashoffset="176.58" transform="translate(36)"/><use xlink:href="#a" stroke-dashoffset="176.32" transform="translate(72)"/><use xlink:href="#a" stroke-dashoffset="175.85" transform="translate(108)"/><use xlink:href="#a" stroke-dashoffset="175.14" transform="translate(144)"/><use xlink:href="#a" stroke-dashoffset="174.13" transform="translate(180)"/><use xlink:href="#a" stroke-dashoffset="172.78" transform="translate(216)"/><use xlink:href="#a" stroke-dashoffset="171.01" transform="translate(252)"/><use xlink:href="#a" stroke-dashoffset="168.78" transform="translate(288)"/><use xlink:href="#a" stroke-dashoffset="166.02" transform="
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\operatorParams[1].json
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1317
                                                                                                                Entropy (8bit):4.850333676541267
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:D76bBSuFvVdG4xp9kr/rgk4oV4SRv/4QBEwrlcKmlQFHMhfY0ypgkvVlXdR/rBE+:H8dNA4xpKT8Pe4A34EE6cfAsG42hf1E+
                                                                                                                MD5:E24F9F4CA4AA1626E02CCEE201168316
                                                                                                                SHA1:80DB6DF77C9B2D0C7E7E22A9DF642990ED67564E
                                                                                                                SHA-256:9F86A31D9FF7C8F3C52DC2B003544793875E93FD878A16A31AF4B47564E98DDE
                                                                                                                SHA-512:6F81BD6DD548676A08C83FF871E2002D8430638F0482D683B1F24F198C541300887749CCF2F956689E200666E457B3EF6B2D899C363FB6F56F3E5449098D7D66
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/realtime/operatorParams
                                                                                                                Preview: {. "operatorDeferredUrl": "https://ssl.gstatic.com/support/realtime/operator/1612226769515/operatordeferred_bin_base.js",. "eagerLoadHostnamePattern": "((https://www\\.google\\.com/express)|((adwords|campaignmanager|support|support-content-staging.sandbox|business|fi|.+\\.corp)\\.google\\.))",. "eagerLoadHostnameFlags": "i",. "cbfVersion": 1612226769515,. "experiments": {. "attachment_upload_url": "https://support.google.com/chat-upload/support-cases/resumable",. "enable_chat_attachment": true,. "enable_desktop_screenshare_email_fallback": false,. "enable_emojis": true,. "enable_youtube_specific_endpoints": true,. "mole_show_survey_url_percentage": 100,. "mole_skin_version": 2,. "operatordeferred_report_rpc_events_percentage": 10,. "screenshare_skin_version": 3. },. "settings": {. "attachment_upload_url": "https://support.google.com/chat-upload/support-cases/resumable",. "enable_chat_attachment": true,. "enable_customer_can_end_chat": tr
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\privacy[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, UTF-8 Unicode text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):278155
                                                                                                                Entropy (8bit):5.594577472837199
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:OX8+ldnom8fD+uIWKZTWxtgZ/nWe9MNX8YHX4B0EZFqADIXOLak3WKR7gdf639cT:MygSE7mX4BvZrdZ6xJcViS2gyTIqI4
                                                                                                                MD5:0227E57B2C9250B33F88CAF4E9349046
                                                                                                                SHA1:2F4A5E1881A5304C9FCC6FD010B362CF3CB5BD9E
                                                                                                                SHA-256:554A1DFD9121094C0B842E64B594AF1F057065A5C024DFA4C54B4377B8A277CF
                                                                                                                SHA-512:CA05994E9D5612F27F2AF11FA05AC34F0C5A9102BBD6463AFE64B3AC41349C1693FB46A630F2569F350A1AD9570B204898209445A231DAD949FE9C3A014C4722
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!doctype html><html lang="en" dir="ltr"><head><base href="https://policies.google.com/"><meta name="referrer" content="origin"><meta name="viewport" content="initial-scale=1, maximum-scale=5, width=device-width"><meta name="mobile-web-app-capable" content="yes"><meta name="apple-mobile-web-app-capable" content="yes"><meta name="application-name" content="Privacy &amp; Terms . Google"><meta name="apple-mobile-web-app-title" content="Privacy &amp; Terms . Google"><meta name="apple-mobile-web-app-status-bar-style" content="black"><meta name="msapplication-tap-highlight" content="no"><link rel="manifest" crossorigin="use-credentials" href="_/IdentityPoliciesUi/manifest.json"><link rel="home" href="/?lfhs=2"><link rel="msapplication-starturl" href="/?lfhs=2"><link rel="icon" href="//ssl.gstatic.com/policies/favicon.ico" sizes="32x32"><link rel="apple-touch-icon-precomposed" href="//ssl.gstatic.com/policies/favicon.ico" sizes="32x32"><link rel="msapplication-square32x32logo" href="//ssl
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\privacy_checkup_icon[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):2183
                                                                                                                Entropy (8bit):4.54347991131289
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:q8STtLI+xuWwnZ8ct9jmN1dxo9/nFKz2fWTKrfp+t2:qL1U8cf41Ho9/F/02
                                                                                                                MD5:C75528C0EE848EDF85766240B68B2E24
                                                                                                                SHA1:77494574B9FF9AA00FF43F8114B694F7F78447BC
                                                                                                                SHA-256:0AB2FFD0160D09C189AF9772353C7853E833759E369B65874A00BED2F76830AD
                                                                                                                SHA-512:16ED48AADDE68DB93887A515BAD101958B247E5B93AD37D1A90B63F3FA6BDDB3E233333AD443B5AC0256225D085FC217CEC6D5C3FE39858C36B06E5675E5D90E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/identity/boq/policies/privacy/privacy_checkup_icon.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" width="53" height="62" viewBox="0 0 70 82" fill="none">. <path d="M 26.8292,75.5938 C 44.7667,67.0521 51.173,51.5917 52.7959,40.4021 53.1376,37.925 53.3084,35.3625 53.3938,32.8 V 14.0084 L 26.9147,5.8938 0.4355,14.0084 V 32.8 c 0.0854,2.5625 0.2562,5.0396 0.5979,7.6021 1.5375,11.1896 7.9438,26.65 25.7958,35.1917 z" fill="#4285f4"/>. <path d="m 12.9917,49.3708 c 0,-3.7583 6.6625,-6.8333 14.0083,-7.0042 7.4313,0.1709 14.0084,3.2459 14.0084,7.0042 v 0.3417 c 5.8083,-7.4313 5.0396,-18.023 -1.8792,-24.5146 -6.8333,-6.4063 -17.5104,-6.4063 -24.3437,0 -6.8334,6.4916 -7.6875,17.0833 -1.7938,24.5146 z" fill="#3362b5"/>. <path d="m 41.0084,49.3709 c 0,-3.7584 -6.6625,-6.8334 -14.0084,-7.0042 -7.3458,0.1708 -14.0083,3.2458 -14.0083,7.0042 v 0.3416 c 6.0646,7.7729 17.2542,9.1396 25.0271,2.9896 1.1104,-0.8542 2.1354,-1.8792 2.9896,-2.9896 z" fill="#ffffff"/>. <path d="m 27,39.2917 c 3.8683,0 7.0042,-3.1741 7.0042,-7.0896 0,-3.9154 -3.1359,-7.0896 -7.0042,
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\privacy_illustration[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):17329
                                                                                                                Entropy (8bit):5.1099250055903545
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:xjy/JFxKSYW7g41eXA8rb4Ki/tGHtgpA3TubXWTvUWSuWqiPEMwIj0m0N2jiSixG:ZItY7/rBi1GHtP/OjUIjiO
                                                                                                                MD5:38B85604709A03A6EDED024ACE0658A5
                                                                                                                SHA1:DD43720C61B45BC4FEC2E253045C5FAAF69082D0
                                                                                                                SHA-256:26A9A11E723631253C50ED9FCB595861246146C849CA1FBA16E23636A380B7CD
                                                                                                                SHA-512:8A627E64CDC780C5B37A741903E4592DB97212DEDE1E32B4C9DB1ABEB3071EE92F359B0355219F395933D172F1362412457F50CE094266B5E1984CCD292C16FA
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/identity/boq/policies/privacy/privacy_illustration.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204"><defs><linearGradient id="linear-gradient" x1="25" y1="165" x2="50" y2="165" gradientUnits="userSpaceOnUse"><stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/><stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/><stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/><stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/><stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/><stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/><stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/><stop offset="1" stop-color="#9aa0a6"/></linearGradient><linearGradient id="linear-gradient-2" x1="64" y1="139" x2="64" y2="146" gradientUnits="userSpaceOnUse"><stop offset="0" stop-color="#5f6368"/><stop offset="1" stop-color="#5f6368" stop-opacity="0"/></linearGradient><clipPath id="clip-path"><circle cx="64" cy="112" r="28
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):114919
                                                                                                                Entropy (8bit):5.539511771296982
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:6fCy7gyA0X/Kwv4sHb+Quyif5E9pExlHKKDa6T6uDrsxdP40n:ikP0XNHx0HlHbZrsxV
                                                                                                                MD5:0A2AEEAFBF900C1DED6BD2E6A2725A72
                                                                                                                SHA1:8FC31AA7C342FFCD25673FADD837D5242DA6F2C8
                                                                                                                SHA-256:84D989C9EFDB9BB62DD737DE529BD8191488B560805665BCDAACF74423E59F55
                                                                                                                SHA-512:2BDFEE69C17DA08001D62E9979251B330F8AC31D814CF67AFD1D09080DCFA3433AB2228415117B99EB43E8AD6F6412E9C5D4EB57A2AA941B91472F61827DD493
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this.gbar_=this.gbar_||{};(function(_){var window=this;.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Oj=function(a){switch(a){case 200:case 201:case 202:case 204:case 206:case 304:case 1223:return!0;default:return!1}};._.Pj=function(){};_.Pj.prototype.o=null;.var Rj;Rj=function(){};_.x(Rj,_.Pj);Rj.prototype.j=function(){var a=Sj(this);return a?new ActiveXObject(a):new XMLHttpRequest};Rj.prototype.B=function(){var a={};Sj(this)&&(a[0]=!0,a[1]=!0);return a};var Sj=function(a){if(!a.A&&"undefined"==typeof XMLHttpRequest&&"undefined"!=typeof ActiveXObject){for(var b=["MSXML2.XMLHTTP.6.0","MSXML2.XMLHTTP.3.0","MSXML2.XMLHTTP","Microsoft.XMLHTTP"],c=0;c<b.length;c++){var d=b[c];try{return new ActiveXObject(d),a.A=d}catch(e){}}throw Error("U");}return a.A};._.Qj=new Rj;..}catch(e){_._DumpException(e)}.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Tj=function(a,b,c){a.j||(a.j={});if(!a.j[c]){for(var d=_.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\so[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):47262
                                                                                                                Entropy (8bit):5.730755623581416
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:Z7cy/d9SvRuLp+M0+dHknoVpZlarLQPFJ/N4BDlQtXvWkg:ZAM+no/ZQr+1j/Wkg
                                                                                                                MD5:F7CB3E66A0B9A662F8E6F5537DDA4530
                                                                                                                SHA1:CFF489570C14BA9A15ECF089CFBBB5F93EF38CDD
                                                                                                                SHA-256:F1D1DD0DBE1ABDA96BD19F66E185D3E7E63A201B83A1E7637204B308ACEE39A9
                                                                                                                SHA-512:9C74511612CAE3BD2FC804584AEDFE3D013934089EE4F95E73AEE27C26C0D259C826DE4FB8C6DAD0F41F76DF18DC7E8A328D91360A2B0775846653BD53474A44
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ogs.google.com/widget/app/so?origin=https%3A%2F%2Fsupport.google.com&cn=app&pid=117&spid=117&hl=en-GB
                                                                                                                Preview: <!doctype html><html lang="en" dir="ltr"><head><base href="https://ogs.google.com/"><meta name="referrer" content="origin"><link rel="canonical" href="https://ogs.google.com/widget/app/so"><link rel="preconnect" href="https://www.gstatic.com"><link rel="preconnect" href="https://ssl.gstatic.com"><link rel="preconnect" href="https://apis.google.com"><link rel="prefetch" href="https://apis.google.com/js/api.js"><script data-id="_gd" nonce="/RkgYKK3sNqged8kw7w31A">window.WIZ_global_data = {"DpimGf":false,"EP1ykd":["/_/*"],"FdrFJe":"6650161897373305704","Im6cmf":"/_/OneGoogleWidgetUi","LVIXXb":1,"LoQv7e":true,"MT7f9b":[],"NrSucd":false,"OwAJ6e":false,"QrtxK":"","S06Grb":"","S1NZmd":false,"Yllh3e":"%.@.1612302624353839,178768782,3523397845]\n","ZwjLXe":117,"cfb2h":"boq_onegooglehttpserver_20210131.08_p0","eptZe":"/_/OneGoogleWidgetUi/","fPDxwd":[1763433,1772879,1782333],"gGcLoe":false,"ikfjnc":["https://support.google.com"],"nQyAE":{"wcLcde":"false","tBSlob":"false"},"qwAQke":"OneGoogleWidg
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\0d6da8d8c44e7e3ee95c4d56c19f04e1[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):2705
                                                                                                                Entropy (8bit):5.15375624281808
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+GzHx4GLZ/W1wHxJCXvGUQj+ek/Ij0jiO0ijy1uo:+G2UEJIj0jH0PH
                                                                                                                MD5:0D6DA8D8C44E7E3EE95C4D56C19F04E1
                                                                                                                SHA1:9DE1568D596F174CD4646DB5745B58695677B069
                                                                                                                SHA-256:FAA35DC181EB792DB0A4BE4E7031EEC86C044E52773CB082652B788D3B838E72
                                                                                                                SHA-512:D47689B9681F4D5DFF7FD18B4F76F9FBB372B4EB9ADC3FE7C177ED79D19CF2D912831729C73589C4DA833D3D83746DAD3C593A92A5A81440AAE17874F8DDC70C
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/0d6da8d8c44e7e3ee95c4d56c19f04e1.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="24" y1="77" x2="48" y2="77" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.116" stop-color="#9aa0a6" stop-opacity="0.054"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.201"/>. <stop offset="0.546" stop-color="#9aa0a6" stop-opacity="0.44"/>. <stop offset="0.823" stop-color="#9aa0a6" stop-opacity="0.768"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="48" y1="80" x2="48" y2="16" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#1967d2"/>. <stop offset="0.043" stop-color="#1967d2" stop-opacity="0.942"/>. <stop offset="0.305" stop-color="#1967d2" stop-opacity="0.611"/>. <stop offset="0.54" stop-color="#1967d2" sto
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\13062c65605335a46d14656c46af3868[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):12178
                                                                                                                Entropy (8bit):5.047868477962458
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:hC5CW/p5sraARO646QfW62lBHTKqB7BIh6k4o:cx/ptB9WLlBHVB7Btg
                                                                                                                MD5:13062C65605335A46D14656C46AF3868
                                                                                                                SHA1:E9F0C2B7DDA37E448C75EDA6B6A57188ECC59F55
                                                                                                                SHA-256:70472A3B23DDA5B98B7A887D12AE8D7979EA8A53EC1955C237F62D6A86A14780
                                                                                                                SHA-512:B3340EE18D7C067D11B9806605CE214E1907CFDEFD3D2B5A3B6829A83D2859CAF35FDB884E033DA423C30A1FB4F7733464D9847E025F5929A67FF92A68109823
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/13062c65605335a46d14656c46af3868.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="30" y1="165" x2="56" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="815.315" y1="-230.563" x2="857.315" y2="-230.563" gradientTransform="translate(-664.532 550.377) rotate(-15)" gradientUnits="userSpaceOnUse">. <stop
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\1fa3e4ce8ac456f39ed02a6f9eb49b14[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):6422
                                                                                                                Entropy (8bit):5.145755305279271
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:h2Cy4en2j0yQldta1TvQT6oj0cDGXTmg1t0UUIPLynG6+bRP14N/3UmXjMUz:y5cK9DiTFT0UUyynGAbjz
                                                                                                                MD5:1FA3E4CE8AC456F39ED02A6F9EB49B14
                                                                                                                SHA1:11E1FEC7C61FC6E168E47FA9C2316BA83B2A883F
                                                                                                                SHA-256:404919D82E7FCAF8F8B31573F9483B45482988CFD984F0463C9CFD322E58F08A
                                                                                                                SHA-512:3DD1B9136CFEB7C1FFF636C7B735CF18F1BFF2C80FC7426113BE2219C2BBCFEF3F37036DF8D8D2BDBE0EA7EE822FA0E9C7EFD45BFD328C7C8FD264ECC0C00945
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/1fa3e4ce8ac456f39ed02a6f9eb49b14.svg
                                                                                                                Preview: <svg id="Content" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="35.79" y1="10.115" x2="49.214" y2="10.115" gradientUnits="userSpaceOnUse">. <stop offset="0.001" stop-color="#23893c"/>. <stop offset="1" stop-color="#34a853"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="50.448" y1="27.536" x2="63.288" y2="19.416" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#e09108"/>. <stop offset="0.021" stop-color="#e19308"/>. <stop offset="0.37" stop-color="#efa906"/>. <stop offset="0.703" stop-color="#f7b605"/>. <stop offset="1" stop-color="#fabb05"/>. </linearGradient>. <linearGradient id="linear-gradient-3" x1="37.583" y1="34.548" x2="53.68" y2="24.367" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#b7251d"/>. <stop offset="0.126" stop-color="#c32b21"/>. <st
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\39b031d352a2e1586cf50ac7f2bbc18b[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):12378
                                                                                                                Entropy (8bit):5.041888208682257
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+RoMM2anrsHcxjBBN49qDLj5QeUFUDzi3pnDseedgejR7cestQoumbNvR4VBdwH6:PAHZ9q/j2eUqvi+/QNvOVBMwsV8
                                                                                                                MD5:39B031D352A2E1586CF50AC7F2BBC18B
                                                                                                                SHA1:5F714582443C158EAC42F4A2368E29488A01E365
                                                                                                                SHA-256:9EE03AE2943928AEA61E62DA6BD2338CA4B244C756D78B8888C1693731401A21
                                                                                                                SHA-512:44C3255DAC07BA0D8A5CA849649515A095AA40BAE13BF1710E009F8E9FFE96BF4EE573B073DC4340DE738CA110653FB48A83C5BE1008C61F3EB41A76FD741789
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/39b031d352a2e1586cf50ac7f2bbc18b.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="52" y1="49" x2="52" y2="71" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#202124"/>. <stop offset="1" stop-color="#202124" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="52" y1="85" x2="52" y2="157" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#188038"/>. <stop offset="1" stop-color="#188038" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-3" x1="24" y1="154" x2="44" y2="154" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\4c5ee41d52605ff6f43538d46a1c0d35[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):12773
                                                                                                                Entropy (8bit):5.021780026284317
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:s/HeqPFaqW9UXuhX85+dkoEe3jO+HKFvO:0He2K9UMX8563jn
                                                                                                                MD5:4C5EE41D52605FF6F43538D46A1C0D35
                                                                                                                SHA1:5432F87B16A63087A22EDFA0AF1C5ECA4FADE3C4
                                                                                                                SHA-256:89BBCE254FCE9A0F06C8A2C4E491E4811418E25EE92183EE42C5CD6154778C1D
                                                                                                                SHA-512:7F655C5ADE13D276CF4CE6BEDAAF58F8E1A215018A39529B121B64284B1AE54031858CA4907B0715518BC01B146561F00BA4FDE6B1229CA2CDC3256EF44DCD61
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/4c5ee41d52605ff6f43538d46a1c0d35.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="16" y1="165" x2="40" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="200" x2="228" xlink:href="#linear-gradient"/>. <linearGradient id="linear-gradient-3" x1="158" y1="137" x2="186" y2="137" gradientUnits="userSpaceOnUse
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\KFOlCnqEu92Fr1MmEU9fBBc-[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 20012, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):20012
                                                                                                                Entropy (8bit):7.966842359681559
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:Yc6bX9TagDCXKqs4+W5XVgaflKHjsGdZtlh3K/qzWz/scZpuB:YcCVaeCaF4ea9KHYQZtlh3Kgy4B
                                                                                                                MD5:DE8B7431B74642E830AF4D4F4B513EC9
                                                                                                                SHA1:F549F1FE8A0B86EF3FBDCB8D508440AFF84C385C
                                                                                                                SHA-256:3BFE46BB1CA35B205306C5EC664E99E4A816F48A417B6B42E77A1F43F0BC4E7A
                                                                                                                SHA-512:57D3D4DE3816307ED954B796C13BFA34AF22A46A2FEA310DF90E966301350AE8ADAC62BCD2ABF7D7768E6BDCBB3DFC5069378A728436173D07ABFA483C1025AC
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff
                                                                                                                Preview: wOFF......N,................................GDEF.......G...d....GPOS................GSUB............7b..OS/2.......R...`t.#.cmap...4.......L....cvt .......\...\1..Kfpgm...@...2......$.gasp...t............glyf......:...j.'..hdmx..G,...f........head..G....6...6...rhhea..G........$....hmtx..G....a......MOloca..JP........\v@zmaxp..L,... ... ....name..LL..........:.post..M(....... .m.dprep..M<.......S...)x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x...pfK.G...1.c>..`9..m<+;..m.x...bg.M.T...O............l...XU.../{.[_..W....c.._..72.. ." z.+..F.......&.&...`e..T].....K=..K2S....q..d...xf.$~i..$?.d..dU.....@R-/LMO-J6...[]..Z..O.C_."If..d....fS....$d.G>eL`....Tf1.......9.c>..`1.TR..x./d-........q.........7....{...v.....!.....1.QG=.4.D3-..F;=..1'.'q.rw...9..e!.....Q....f......qV.n.h.V.Z]..B..C.[B...V.......v...o.w.{...w..zRO.i=..._.....-.m....].=...[...(1.(.#.....O0/.0?..04rL.G.9.....i6..l..|.(o.....|$,..{|&|....YJ...x.e8B.#..t;R8.{+....\=.....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\KFOlCnqEu92Fr1MmWUlfBBc-[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 19888, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):19888
                                                                                                                Entropy (8bit):7.96899630573477
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:0c6bX9TSzYzCrQH+qXM6C0ouF0xcYye+5x/U3S0X5v+obEgm:0cCV8GuPVyzx/MS0X5v+oI/
                                                                                                                MD5:CF6613D1ADF490972C557A8E318E0868
                                                                                                                SHA1:B2198C3FC1C72646D372F63E135E70BA2C9FED8E
                                                                                                                SHA-256:468E579FE1210FA55525B1C470ED2D1958404512A2DD4FB972CAC5CE0FF00B1F
                                                                                                                SHA-512:1866D890987B1E56E1337EC1E975906EE8202FCC517620C30E9D3BE0A9E8EAF3105147B178DEB81FA0604745DFE3FB79B3B20D5F2FF2912B66856C38A28C07EE
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmWUlfBBc-.woff
                                                                                                                Preview: wOFF......M.................................GDEF.......G...d....GPOS................GSUB............7b..OS/2.......P...`u.#.cmap...0.......L....cvt .......H...H+~..fpgm...(...3...._...gasp...\............glyf...h..:q..i..+ Ohdmx..F....f........head..GD...6...6...\hhea..G|.......$.&..hmtx..G....d.....E#loca..J.........\s@.maxp..K.... ... ....name..K........~..9.post..L........ .m.dprep..L........)*v60x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x...pfK.G...1.c>..`9..m<+;..m.x...bg.M.T...O............l...XU.../{.[_..W....c.._..72.. ." z.+..F.......&.&...`e..T].....K=..K2S....q..d...xf.$~i..$?.d..dU.....@R-/LMO-J6...[]..Z..O.C_."If..d....fS....$d.G>eL`....Tf1.......9.c>..`1.TR..x./d-........q.........7....{...v.....!.....1.QG=.4.D3-..F;=..1'.'q.rw...9..e!.....Q....f......qV.n.h.V.Z]..B..C.[B...V.......v...o.w.{...w..zRO.i=..._.....-.m....].=...[...(1.(.#.....O0/.0?..04rL.G.9.....i6..l..|.(o.....|$,..{|&|....YJ...x.e8B.#..t;R8.{+....\=.....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\NGX8DP50.js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):402857
                                                                                                                Entropy (8bit):5.595821696217468
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6144:HuuP5XquJJymz+NPAPapLOixsXxPB+n6DZkU1YMi0+o:6uvbzWPACxg9T1YMt
                                                                                                                MD5:67188073A312AB3347FD9FFF2909875E
                                                                                                                SHA1:867ABEA5AE93F944A8E00D9E79CD50F488727104
                                                                                                                SHA-256:B92222B1842BE4FF77BA14FA159B657BD63448B710C88C3C70DDD2D3B3741CCC
                                                                                                                SHA-512:84271C7E071633110E9AF7C1C513F1191F752D6877638DEFBF37187CB8DF9D2D02AFC1BFEA212A0C7E8808B860DF4CFC695192CA8FAF14E32003553969EC3F14
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";_F_installCss(".EDId0c{position:relative}.nhh4Ic{position:absolute;left:0;right:0;top:0;z-index:1;pointer-events:none}.nhh4Ic[data-state=\"snapping\"],.nhh4Ic[data-state=\"cancelled\"]{transition:transform 200ms}.MGUFnf{display:block;width:28px;height:28px;padding:15px;margin:0 auto;-ms-transform:scale(0.7);transform:scale(0.7);background-color:#fafafa;border:1px solid #e0e0e0;border-radius:50%;box-shadow:0 2px 2px 0 rgba(0,0,0,0.2);transition:opacity 400ms}.nhh4Ic[data-state=\"resting\"] .MGUFnf,.nhh4Ic[data-state=\"cooldown\"] .MGUFnf{-ms-transform:scale(0);transform:scale(0);transition:transform 150ms}.nhh4Ic .LLCa0e{stroke-width:3.6px;-ms-transform:translateZ(1px);transform:translateZ(1px)}.nhh4Ic[data-past-threshold=\"false\"] .LLCa0e{opacity:.3}.rOhAxb{fill:#4285f4;stroke:#4285f4}.A6UUqe{display:none;stroke-width:3px;width:28px;height:28px}.tbcVO{width:28px;height:28px}.bQ7oke{position:absolute;width:0;height:0;overflow:hidden}.A6UUqe.qs41qe{animation-name:quantumWiz
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\analytics[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):47051
                                                                                                                Entropy (8bit):5.516264124030958
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:ryOveCSBZfsnt5XqY/yPndFTkoWY3SoavqVy2rlebYUDTJC6g0stZm:ryJNDfs5hYdFTwY3SorSg0su
                                                                                                                MD5:53EE95B384D866E8692BB1AEF923B763
                                                                                                                SHA1:A82812B87B667D32A8E51514C578A5175EDD94B4
                                                                                                                SHA-256:E441C3E2771625BA05630AB464275136A82C99650EE2145CA5AA9853BEDEB01B
                                                                                                                SHA-512:C1F98A09A102BB1E87BFDF825A725B0E2CC1DBEDB613D1BD9E8FD9D8FD8B145104D5F4CACA44D96DB14AC20F2F51B4C653278BFC87556E7F00E48A5FA6231FAD
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.google-analytics.com/analytics.js
                                                                                                                Preview: (function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var l=this||self,m=function(a,b){a=a.split(".");var c=l;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};var q=function(a,b){for(var c in b)b.hasOwnProperty(c)&&(a[c]=b[c])},r=function(a){for(var b in a)if(a.hasOwnProperty(b))return!0;return!1};var t=/^(?:(?:https?|mailto|ftp):|[^:/?#]*(?:[/?#]|$))/i;var u=window,v=document,w=function(a,b){v.addEventListener?v.addEventListener(a,b,!1):v.attachEvent&&v.attachEvent("on"+a,b)};var x={},y=function(){x.TAGGING=x.TAGGING||[];x.TAGGING[1]=!0};var z=/:[0-9]+$/,A=function(a,b,c){a=a.split("&");for(var d=0;d<a.length;d++){var e=a[d].split("=");if(decodeURIComponent(e[0]).replace(/\+/g," ")===b)return b=e.slice(1).join("="),c?b:decodeURIComponent(b).replace(/\+/g," ")}},D=function(a,b){b&&(b=String(b).toLowerCase());if("p
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\b18d13e9ea8a362642b7d25bce665039[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):16764
                                                                                                                Entropy (8bit):5.015659059704473
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+7oy39iUOhxSoUhWBIBGNdByrJZeGyHObsjXDRKRpQ7wvkoln1WIGeDNc6ei52Ki:6vQ6JZoRKRa05Z9GImZAJgwEWZBYF
                                                                                                                MD5:B18D13E9EA8A362642B7D25BCE665039
                                                                                                                SHA1:928BE33E3ABE8071A068BE98084F406D5F4C07E2
                                                                                                                SHA-256:10F69DBA0842572682B65444464A1F8879BF29B201E730D5F824BB6636536555
                                                                                                                SHA-512:651CB5E1435A1E72392D425E73487413EF0A035574E84F738D775D29668CA7222AFA56C5AE77AB3A0AF15ECF94467C7070727EF10C0F38820545D5C81ABE2255
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/b18d13e9ea8a362642b7d25bce665039.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="180" y1="77.807" x2="144.01" y2="77.807" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#1967d2"/>. <stop offset="0.133" stop-color="#1967d2" stop-opacity="0.98"/>. <stop offset="0.271" stop-color="#1967d2" stop-opacity="0.921"/>. <stop offset="0.411" stop-color="#1967d2" stop-opacity="0.822"/>. <stop offset="0.553" stop-color="#1967d2" stop-opacity="0.683"/>. <stop offset="0.696" stop-color="#1967d2" stop-opacity="0.505"/>. <stop offset="0.84" stop-color="#1967d2" stop-opacity="0.287"/>. <stop offset="0.983" stop-color="#1967d2" stop-opacity="0.033"/>. <stop offset="1" stop-color="#1967d2" stop-opacity="0"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="191.997" y1="77.804" x2="168.003" y2="77.804" gradientUnits="userSpac
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\c1b97d74dace7e43a9ccb26841a7cae4[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):6217
                                                                                                                Entropy (8bit):5.12197916092655
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:hmpCgaDaIvQiJgZMDRzvrphOqqzfHm0TCgGT908uB75T:xPuB75T
                                                                                                                MD5:C1B97D74DACE7E43A9CCB26841A7CAE4
                                                                                                                SHA1:83F78C8D77BF9499B7E839345BB94C22A89616AF
                                                                                                                SHA-256:D9DE9633583A448CAD1268D42FFDF48D0B3C60D2693600B843A7EBE43AD06908
                                                                                                                SHA-512:B3986AF15A3FFB3AB35B8E3C120BC9BA8BECD5892CB7C1DE0BA5AD08A83499ACEC288B20708EE834EA43BFE446FD01ADA8CA55E0893EEBE766241913DB11A88B
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/c1b97d74dace7e43a9ccb26841a7cae4.svg
                                                                                                                Preview: <svg id="Content" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="41.178" y1="24.308" x2="41.368" y2="32.801" gradientUnits="userSpaceOnUse">. <stop offset="0.004" stop-color="#cdd0d5"/>. <stop offset="0.466" stop-color="#b1b6bd"/>. <stop offset="1" stop-color="#959ca5"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="29.696" y1="67.461" x2="68.387" y2="28.77" gradientUnits="userSpaceOnUse">. <stop offset="0.001" stop-color="#fff"/>. <stop offset="0.131" stop-color="#fff"/>. <stop offset="1" stop-color="#fff"/>. </linearGradient>. <clipPath id="clip-path">. <circle cx="27.84" cy="50.69" r="6.427" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient-3" x1="50.224" y1="35.554" x2="50.224" y2="31.004" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#cdd0d5"/>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\cb=gapi[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):51432
                                                                                                                Entropy (8bit):5.555402766212286
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:pYB9v4ye0RGPEiI199MSjQT7Rx0WwXRF1OVxK4X:pK4ye0RkwXR+X
                                                                                                                MD5:380373FCD08CB642C251152059997DB6
                                                                                                                SHA1:12773E4A16BF1B1D37967CEF5FBA90666E93ABBB
                                                                                                                SHA-256:98C669FC51080B27E219227634C7054D28012A063D8E58FCDA823D3688A8A458
                                                                                                                SHA-512:8B2C0AEA25A3C5A50DBE4354307F9FFF03D13966F1557D59156347E06C443897DA2A764F806A95779D34F72BA387F079F9BFD0FCEE5C59B0503C5E547D93C571
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: /* JS */ gapi.loaded_0(function(_){var window=this;./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var ka,na,sa,ya,Aa,Ba,Ga;_.ha=function(a){return function(){return _.ba[a].apply(this,arguments)}};_.ba=[];ka=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}};na="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.sa=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("a");};ya=sa(this);Aa=function(a,b){if(b)a:{var c=ya;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&na(c,a,{configurable:!0,writable:!0,value:b})}};.Aa("Symbol",function(a){if(a)return a;va
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\cb=gapi[2].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):63996
                                                                                                                Entropy (8bit):5.575641152056994
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:pYB9v4ye0RGPEiI199MSjQT7Rx0WgU3zKXRF1OVxKRNc/VC:pK4ye0RkgU3zKXRG4
                                                                                                                MD5:325C4FA4DF8F45F58DAF1D5FE8FBC10D
                                                                                                                SHA1:D8F614488C718BD543B2A2BDF77893E1E593395B
                                                                                                                SHA-256:5E020E137CC87D25C4F921F1BAC926B28B9D98C4E916A685F636DA792B8F2DF0
                                                                                                                SHA-512:BD32609868C0F47259FD8F28476B18A5B707497D1ED92C61C279C00FCA9367037B0D7DC4FB1FFF1A8D21FCEC9C593EC0BAB564FE831FA61AB65FDBA6F569B44E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://apis.google.com/_/scs/abc-static/_/js/k=gapi.gapi.en.L7mys-cL6BM.O/m=googleapis_proxy/rt=j/sv=1/d=1/ed=1/rs=AHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg/cb=gapi.loaded_0
                                                                                                                Preview: /* JS */ gapi.loaded_0(function(_){var window=this;./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var ka,na,sa,ya,Aa,Ba,Ga;_.ha=function(a){return function(){return _.ba[a].apply(this,arguments)}};_.ba=[];ka=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}};na="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.sa=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("a");};ya=sa(this);Aa=function(a,b){if(b)a:{var c=ya;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&na(c,a,{configurable:!0,writable:!0,value:b})}};.Aa("Symbol",function(a){if(a)return a;va
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\chatsupport[1].css
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):7598
                                                                                                                Entropy (8bit):5.238477683745263
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:+d36+swcre98YZwXO1JHq6PrLJRLwMKaSkZkF:Sz8Yjq6DLJ8aTZm
                                                                                                                MD5:81F4E76B75BC005C6C7C42E935F12BE1
                                                                                                                SHA1:1957A432A56569F9072DC082941222ECF58EE426
                                                                                                                SHA-256:EC79CAA8A2B64067631B65AFB295851C8C9F47CCA34B8AB53D341B32EA0C51E6
                                                                                                                SHA-512:79E2138BDDFEF6A632F38282CDF960CC86427A69EDE126159C47500152AEBFA5C5727D408F61D9A191A113382913FFB9CD1F1714B7AF5B6D91F7720345B0B012
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/realtime/operator/1612226769515/chatsupport.css
                                                                                                                Preview: #topSection{width:100%;height:4px;overflow:hidden}#bottomSection{width:100%;height:calc(100% - 4px);overflow:hidden;box-shadow:0px 1px 2px 0px rgba(60,64,67,.30),0px 2px 6px 2px rgba(60,64,67,.15)}.chatsupport_a{width:12px;height:100%}.chatsupport_b{width:calc(100% - 32px);height:100%}.chatsupport_c{width:4px;height:100%}.chatsupport_d{width:calc(100% - 8px);height:100%;box-shadow:0px 0px 5px #888}.chatsupport_e{width:100%;height:8px}.chatsupport_f{width:100%;height:calc(100% - 8px)}.chatsupport_g{overflow:hidden;display:block;z-index:10000001;bottom:0px;position:fixed}.chatsupport_h{top:4px;position:relative;left:4px}.chatsupport_i{top:4px;position:relative;right:4px}.chatsupport_j{width:100%;height:100%;background:none;vertical-align:bottom;visibility:visible;opacity:1}.chatsupport_k{display:inline-block;vertical-align:top}.chatsupport_l-m.chatsupport_n-m{box-sizing:content-box;font-family:Arial,sans-serif;font-size:13px;position:fixed;width:400px;z-index:10000001}.chatsupport_o .cha
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\e60586c0029adec0bacd3e48470ca6c6[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):15934
                                                                                                                Entropy (8bit):5.044031692686615
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+5rsHBQMyBNWB85GfnAWlkVzLIV2amGj31zBJqDb5PiStUseyXDhMln9UTfQLUQo:LHEQmGb1wgWX1CGkbjf+LJnx
                                                                                                                MD5:E60586C0029ADEC0BACD3E48470CA6C6
                                                                                                                SHA1:2660A543EDC31CC35115F37CFF36CC4DA7B95151
                                                                                                                SHA-256:DA83F15D25A23E295CBA8AF285B22F5AEB46394C6B13DFCD29EA3B6415F90DF7
                                                                                                                SHA-512:2FA00B15E609C22D343901BE202D66ED071A5E9989827DE3F3E486DBC33D62CDA296B66BB30875A905AA3BCC97A068F5ECA62FBD4B10EE5CC60CE2C0AFF37A00
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/e60586c0029adec0bacd3e48470ca6c6.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="264" y1="165" x2="328" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6" stop-opacity="0"/>. <stop offset="0.137" stop-color="#bdc1c6" stop-opacity="0.021"/>. <stop offset="0.279" stop-color="#bdc1c6" stop-opacity="0.084"/>. <stop offset="0.424" stop-color="#bdc1c6" stop-opacity="0.189"/>. <stop offset="0.57" stop-color="#bdc1c6" stop-opacity="0.336"/>. <stop offset="0.718" stop-color="#bdc1c6" stop-opacity="0.525"/>. <stop offset="0.864" stop-color="#bdc1c6" stop-opacity="0.753"/>. <stop offset="1" stop-color="#bdc1c6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="175" x2="199" xlink:href="#linear-gradient"/>. <linearGradient id="linear-gradient-3" x1="196" y1="165" x2="252" y2="165" gradientUnits="userSpac
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\fa9e0e90d1e7ec399dad9f3257a9bb63[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):7010
                                                                                                                Entropy (8bit):5.014483393232849
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+52a4F85vujmX+SMHk8GmgDIK2VGpv67Lwy/N7JPDzjUOH:O40uy+SMHk7lDI7spv67LwSN7JPDzgy
                                                                                                                MD5:FA9E0E90D1E7EC399DAD9F3257A9BB63
                                                                                                                SHA1:7126642DDBF2DED43DC097B3521F3DD6BEF50405
                                                                                                                SHA-256:3EB0CFC171D8DFE795A23B5884593227EC11109EE1F9057BED4E48E5E4740604
                                                                                                                SHA-512:D6909D7974FCE725A0915F04812DD901010A5D798B93BF943664C254627C4511D44792C27ED4C98E8D6B16890B51CD11E1ADE80300F3101C874914A283F326A4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/fa9e0e90d1e7ec399dad9f3257a9bb63.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="11" y1="165" x2="47" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="233" y1="121" x2="265" y2="121" xlink:href="#linear-gradient"/>. <clipPath id="clip-path">. <rect x="50" y="80" width="116" height="82" fill="none
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[1].ico
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):5430
                                                                                                                Entropy (8bit):3.6534652184263736
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:wIJct3xIAxG/7nvWDtZcdYLtX7B6QXL3aqG8Q:wIJct+A47v+rcqlBPG9B
                                                                                                                MD5:F3418A443E7D841097C714D69EC4BCB8
                                                                                                                SHA1:49263695F6B0CDD72F45CF1B775E660FDC36C606
                                                                                                                SHA-256:6DA5620880159634213E197FAFCA1DDE0272153BE3E4590818533FAB8D040770
                                                                                                                SHA-512:82D017C4B7EC8E0C46E8B75DA0CA6A52FD8BCE7FCF4E556CBDF16B49FC81BE9953FE7E25A05F63ECD41C7272E8BB0A9FD9AEDF0AC06CB6032330B096B3702563
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.google.com/favicon.ico
                                                                                                                Preview: ............ .h...&... .... .........(....... ..... ............................................0...................................................................................................................................v.].X.:.X.:.r.Y........................................q.X.S.4.S.4.S.4.S.4.S.4.S.4...X....................0........q.W.S.4.X.:.................J...A...g.........................K.H.V.8..........................F..B.....................,.......................................B..............................................B..B..B..B..B...u..........................................B..B..B..B..B...{.................5.......k...........................................................7R..8F.................................................2........Vb..5C..;I..................R^.....................0................Xc..5C..5C..5C..5C..5C..5C..lv..........................................]i..<J..:G..Zf....................................................
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[2].ico
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):5430
                                                                                                                Entropy (8bit):3.6534652184263736
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:wIJct3xIAxG/7nvWDtZcdYLtX7B6QXL3aqG8Q:wIJct+A47v+rcqlBPG9B
                                                                                                                MD5:F3418A443E7D841097C714D69EC4BCB8
                                                                                                                SHA1:49263695F6B0CDD72F45CF1B775E660FDC36C606
                                                                                                                SHA-256:6DA5620880159634213E197FAFCA1DDE0272153BE3E4590818533FAB8D040770
                                                                                                                SHA-512:82D017C4B7EC8E0C46E8B75DA0CA6A52FD8BCE7FCF4E556CBDF16B49FC81BE9953FE7E25A05F63ECD41C7272E8BB0A9FD9AEDF0AC06CB6032330B096B3702563
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://support.google.com/favicon.ico
                                                                                                                Preview: ............ .h...&... .... .........(....... ..... ............................................0...................................................................................................................................v.].X.:.X.:.r.Y........................................q.X.S.4.S.4.S.4.S.4.S.4.S.4...X....................0........q.W.S.4.X.:.................J...A...g.........................K.H.V.8..........................F..B.....................,.......................................B..............................................B..B..B..B..B...u..........................................B..B..B..B..B...{.................5.......k...........................................................7R..8F.................................................2........Vb..5C..;I..................R^.....................0................Xc..5C..5C..5C..5C..5C..5C..lv..........................................]i..<J..:G..Zf....................................................
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\fb61fc4bfc85ad86f11342e699d685e9[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):13663
                                                                                                                Entropy (8bit):4.850378997553469
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+y2aZrsHBAPC0GDy8gUFnD0alywjj/+TjD66Nt1ygnCL1YsrHwITnrU2TJbIrbon:baH/WMJYaNUyXNIr0n
                                                                                                                MD5:FB61FC4BFC85AD86F11342E699D685E9
                                                                                                                SHA1:5EA7B864D6A727F9A7CF5023BB556CC221564FEF
                                                                                                                SHA-256:92C06932C12A74573114DB6FEAA94C43A980FB7B5DC0014A1AEF32F8C222F849
                                                                                                                SHA-512:DD782F29B937B2CB6365C758B246D020BA5B718C797E5208EA0401EE3B599C77826219CE5612F137BADC34F97D59C80A427965F455A56829BEA790D2E756E605
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/fb61fc4bfc85ad86f11342e699d685e9.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="12" y1="143" x2="32" y2="143" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="72" y1="165" x2="144" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#bdc1c6" stop-opacity="0"/>. <stop offset="0.137" s
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\lazy.min[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):55342
                                                                                                                Entropy (8bit):5.485546536247136
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:h6BD8wYUv+Ajv766DEFLaYP7aWv2AdbYqxJgdHa2XBwPEXEtJz:h6BDZvtv7bDERP7aVAR6HXnXEtJz
                                                                                                                MD5:6A68F0E97FD39A5B77105116C08ED967
                                                                                                                SHA1:D9880C9EE68DBE5DA24479F077758DDB25E295CC
                                                                                                                SHA-256:35155979685E3019FA1A2B26EC80CFF729202FE0B7BF5ED2F0805005AD653527
                                                                                                                SHA-512:C98AB902EC6419CB4C711B2D49332C386C47DE2DB7A0FFF2379BDA2827723807F91B56CDB97FEA22D8633503EE9E367FBF0EBC24F0F1A0C1E3AB53C5281A45C4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/feedback/js/help/prod/service/lazy.min.js
                                                                                                                Preview: (function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ca="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},da=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");.},p=da(this),t=function(a,b){if(b)a:{var c=p;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ca(c,a,{configurable:!0,writable:!0,value:b})}};.t("Symbol",function(a){if(a)return a;var b=function(e,f){this.lb=e;ca(this,"description",{configurable:!0,writable:!0,value:f})};b.prototype.toString=function()
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\m=FqLSBc,krBSJd[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):1048
                                                                                                                Entropy (8bit):5.317802993924568
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:kAyEApZS8sdJlRWKDNh2jpa/jSWQBafuDCMgmMHgxJfrG:ty6RlwKYHWGanMgmMAnrG
                                                                                                                MD5:6663424BDD1C9CB446695DD3E70D64D5
                                                                                                                SHA1:CE5787AE7BB3BDB2CDD51500C0AEE50900CF390A
                                                                                                                SHA-256:1DBEEDBBB5C2357B0C0602F0382CFC4C1C870DFC41BCECB6D7F6B554F4D93D5B
                                                                                                                SHA-512:4EE1CF8C65CEBFF747C3B1563486EFEE35D224CC4BF810CCF7A710DA05C66811DDD5B4A6B4B3E6AF71AE3EEACD283B0D494284E390DC17FFECE5DF860BAEB46C
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{._.n("sy7i");.._.p();.._.n("FqLSBc");.var f3=function(a){_.T.call(this,a.ma);this.i=null};_.w(f3,_.T);f3.T=function(){return{}};f3.prototype.zC=function(a){a:{a=a.data;var b=this.H().v().getElementsByClassName("bCzwPe");b=_.v(b);for(var c=b.next();!c.done;c=b.next()){var d=c=c.value;if(d.href&&_.fd(d.href,"#"+a)){a=c;break a}}a=null}a&&a!==this.i&&(this.i&&_.rj(this.i,"YySNWc"),(this.i=a)&&_.qj(this.i,"YySNWc"))};_.V(f3.prototype,"C1eaHb",function(){return this.zC});_.fI(_.Vda,f3);.._.p();.._.n("krBSJd");.var $2=function(a){_.T.call(this,a.ma)};_.w($2,_.T);$2.T=function(){return{}};$2.prototype.uG=function(){var a=this.Fa("O1htCb").v().value;if(a){var b=new _.at(this.getWindow().location);b.g.set("hl",a);_.Zd(this.getWindow().location,b.toString())}};_.V($2.prototype,"msyOCf",function(){return this.uG});_.fI(_.Uda,$2);.._.p();..}catch(e){_._DumpException(e)}.}).call(this,t
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\player_api[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):810
                                                                                                                Entropy (8bit):5.278997218740305
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:E1GYtpqAK/HJ2TAXC5vuHM8aJLtdRWZ4FhQ:E1tPcSAXC5kaJLzwYhQ
                                                                                                                MD5:BD19B296DA30A819B8C85710D3E7BD09
                                                                                                                SHA1:882779A4E7FF2EAD894937E770FA7930107ADC4F
                                                                                                                SHA-256:0FDA85F124DD12BF4C1145DDDE8C81BB9B6BE55EBA9511857CE3CC3CFB4EB2F9
                                                                                                                SHA-512:4D9E0E59559A23E002AC946600E6AAB88723EACC81C32EED816F236182A981E5C18C22DB22EDEB51EBCEFF412B243EA6AF8F4EBD336178CB7AC1D1CC6982616E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube.com/player_api
                                                                                                                Preview: var scriptUrl = 'https:\/\/www.youtube.com\/s\/player\/f6ef8aad\/www-widgetapi.vflset\/www-widgetapi.js';if(!window["YT"])var YT={loading:0,loaded:0};if(!window["YTConfig"])var YTConfig={"host":"https://www.youtube.com"};.if(!YT.loading){YT.loading=1;(function(){var l=[];YT.ready=function(f){if(YT.loaded)f();else l.push(f)};window.onYTReady=function(){YT.loaded=1;for(var i=0;i<l.length;i++)try{l[i]()}catch(e){}};YT.setConfig=function(c){for(var k in c)if(c.hasOwnProperty(k))YTConfig[k]=c[k]};var a=document.createElement("script");a.type="text/javascript";a.id="www-widgetapi-script";a.src=scriptUrl;a.async=true;var c=document.currentScript;if(c){var n=c.nonce||c.getAttribute("nonce");if(n)a.setAttribute("nonce",n)}var b=.document.getElementsByTagName("script")[0];b.parentNode.insertBefore(a,b)})()};.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\postmessageRelay[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):567
                                                                                                                Entropy (8bit):5.170610154185245
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6:haxUpErQWR0NNEXW0YBVk3bVfAbplMIzZIT1ZQKpA8GnHRupEdCayvwyYuB96iGJ:haxyErYfhVkrC9sAsEGwPYJmWmM8ytrI
                                                                                                                MD5:C4C120112D590811D7FDF453A0E31F97
                                                                                                                SHA1:A4AC16B1E1E53A5E7CE963ECE0F9D8AD1030ACC5
                                                                                                                SHA-256:944EF88353543B4F5B5FC35AD42CBCDC69C0DB7BFEE7E68C17DC7CF1007608AB
                                                                                                                SHA-512:A0B185497D94C64E754FF2D2DA32B6C619CF36080CDF7CFC93789051111EDD58FC1DB7CBDFFA27FB34405FF1F357430D33F807F1A045ECF4D5450DAF93480215
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!DOCTYPE html><html><head><title></title><meta http-equiv="content-type" content="text/html; charset=utf-8"><meta http-equiv="X-UA-Compatible" content="IE=edge"><meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1, maximum-scale=1, user-scalable=0"><script nonce="/74lX8cqR6KzOpE/onsOrg" src='https://ssl.gstatic.com/accounts/o/2038943760-postmessagerelay.js'></script></head><body ><script nonce="/74lX8cqR6KzOpE/onsOrg" type="text/javascript" src="https://apis.google.com/js/rpc:shindig_random.js?onload=init"></script></body></html>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\remote[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):96868
                                                                                                                Entropy (8bit):5.457580313251284
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:WL++ncL6nxMQYRdKvkNwhAc2HSwD55M/cr38dvEFdC0dbTy3elL1RJZ80We+4Tyr:8cLCMQ6dKGwN2l/q1dvEFA0dbTy3elL2
                                                                                                                MD5:8A46F481928C47E16EE4DE343F85BE63
                                                                                                                SHA1:0AE5254A3420AD17CFABB2BBD5C3126B18647CAE
                                                                                                                SHA-256:CF2702DAF347E2EDCB608EDFEE2E620DE2B6995AFE959DF8ECD4CE8DB1121E43
                                                                                                                SHA-512:D0FC9DE87EA80281CBF4DC74BD0158DD54F0ADE111D3A00C73341BEDA95053FE3229276189A039B18BDBAAECFA805DCDEED3FEEA40DF1362FAE124546F2ABB75
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/player_ias.vflset/en_GB/remote.js
                                                                                                                Preview: (function(g){var window=this;var YGa=function(a,b){return g.Nb(a,b)},k4=function(a,b,c){a.C.set(b,c)},l4=function(a){k4(a,"zx",Math.floor(2147483648*Math.random()).toString(36)+Math.abs(Math.floor(2147483648*Math.random())^g.A()).toString(36));.return a},m4=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.jn(a.C,b,c)},ZGa=function(a,b){var c=[];.g.nj(b,function(d){try{var e=g.fo.prototype.B.call(this,d,!0)}catch(f){if("Storage: Invalid value was encountered"==f)return;throw f;}void 0===e?c.push(d):g.eo(e)&&c.push(d)},a);.return c},$Ga=function(a,b){var c=ZGa(a,b);.g.Bb(c,function(d){g.fo.prototype.remove.call(this,d)},a)},aHa=function(a){if(a.U){if(a.U.locationOverrideToken)return{locationOverrideToken:a.U.locationOverrideToken};.if(null!=a.U.latitudeE7&&null!=a.U.longitudeE7)return{latitudeE7:a.U.latitudeE7,longitudeE7:a.U.longitudeE7}}return null},bHa=function(a,b){g.gb(a,b)||a.push(b)},n4=function(a){var b=0,c;.for(c in a)b++;return b},cHa=function(a,b){var c=b instanceof g.Cc?b
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\rs=AA2YrTsjK3XvJqwVOqhNUyIluXG8dqpEqw[1].css
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):301
                                                                                                                Entropy (8bit):5.192037061010406
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6:6ZwTcqcA2n6gt9VvKcZWbnRVIM6RoeSjIUVY29g+7s8agMNDzY/:6ZfqcA26gAcZWfp6SVY/soY/
                                                                                                                MD5:5E1BA7773FBAB75FDF7B3E74BD4AB2F1
                                                                                                                SHA1:C0EFB23EA4A186B9936A9D441C3DC4907C507D2A
                                                                                                                SHA-256:EB4D490B39F02AE67360FB75D13BEAAE29BBE932C08034A688890A28692C8E1E
                                                                                                                SHA-512:CC62BFDE42DE77EE97AB514DF29155A7A6D3992B1C2E30DC3EA97C364CDF073F46F9937DDFD027274E2F1F6A6C6836ACB75046ED0C06DDCEA0EA64175921A822
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: .gb_Se{background:rgba(60,64,67,0.90);border-radius:4px;color:#ffffff;font:500 12px 'Roboto',arial,sans-serif;letter-spacing:.8px;line-height:16px;margin-top:4px;min-height:14px;padding:4px 8px;position:absolute;z-index:1000}.gb_Jc .gb_Ec{overflow:hidden}.gb_Jc .gb_Ec:hover{overflow-y:auto}sentinel{}
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\so[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):46850
                                                                                                                Entropy (8bit):5.729129700676044
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:k7/d9SvRugphM0X6IknoVxTl5qhQPFJ/N4/ltigO:W2MVnoXTPqg1snigO
                                                                                                                MD5:22FEAD66D48756FDA3C914572B7D7CE5
                                                                                                                SHA1:8142902E2632198CC4B42083D925CAE752966481
                                                                                                                SHA-256:4497A7CA6B09892CB8F9BE656F38B4940473452B38133C35254890E41F560BF1
                                                                                                                SHA-512:B6F3326F6E4078F8E1651B0066D8F4EEE54DD7E099A8A245FF4079D2FCB413C7CC43408E10B87202D4D4FA400188A4B0A93A3D34201E1DB1FA8B073B36BE59B2
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ogs.google.com/widget/app/so?origin=https%3A%2F%2Fpolicies.google.com&cn=app&pid=269&spid=545&hl=en-GB
                                                                                                                Preview: <!doctype html><html lang="en" dir="ltr"><head><base href="https://ogs.google.com/"><meta name="referrer" content="origin"><link rel="canonical" href="https://ogs.google.com/widget/app/so"><link rel="preconnect" href="https://www.gstatic.com"><link rel="preconnect" href="https://ssl.gstatic.com"><link rel="preconnect" href="https://apis.google.com"><link rel="prefetch" href="https://apis.google.com/js/api.js"><script data-id="_gd" nonce="GZAKOK5s0xc/B9cSfShMLg">window.WIZ_global_data = {"DpimGf":false,"EP1ykd":["/_/*"],"FdrFJe":"4103055559577346512","Im6cmf":"/_/OneGoogleWidgetUi","LVIXXb":1,"LoQv7e":true,"MT7f9b":[],"NrSucd":false,"OwAJ6e":false,"QrtxK":"","S06Grb":"","S1NZmd":false,"Yllh3e":"%.@.1612302631170955,178767765,822682004]\n","ZwjLXe":545,"cfb2h":"boq_onegooglehttpserver_20210131.08_p0","eptZe":"/_/OneGoogleWidgetUi/","fPDxwd":[1763433,1772879,1782333],"gGcLoe":false,"ikfjnc":["https://policies.google.com"],"nQyAE":{"wcLcde":"false","tBSlob":"false"},"qwAQke":"OneGoogleWidg
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\unnamed[1].png
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:PNG image data, 36 x 36, 8-bit gray+alpha, non-interlaced
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):787
                                                                                                                Entropy (8bit):7.668192418299216
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:6v/7D7ehI9uPdFhCaA9cYMWj8W1bQkmKbYD0gEIMYQsHOxgsc9DoZP/:yUI9uPdSXOYXj8Cr89EIMYQoqgVUP/
                                                                                                                MD5:E96B685C095FAC2551F817B895FC2654
                                                                                                                SHA1:EB9D9483AA1B02D0FACE41298A11E96A470F50B0
                                                                                                                SHA-256:04CDC37AD0B87D493768F6DF95EC13B20F512EC03903BB9A9383D3C11AE08564
                                                                                                                SHA-512:7975A06AC0312AB91531F0B297BB8053EEF45A46CADF40920E93F19A86E0EE79AE07BD21019B994AEAC4335F19E43F4F98B4882D84BE1009294E9561A93BB4CC
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://lh3.googleusercontent.com/yl0EzS1GixeU9QVLJtHu7hom-4PIHwYylP17hRk9_UasgFCCc6lo6E0-ReGn8R1ny3A=w36-h36
                                                                                                                Preview: .PNG........IHDR...$...$.....K.P.....sBIT..U.F.....IDATH....N.Q......VP.!....F...<\.;....O ..7...J.IIl =\@S.1.........)$..b.w....^.-dHm[6.l.#f._r..=.Ji./......U;.J...A.......F@....:L...+..k..{.e".Y".B...&....<g,H..~Zz.......o.r%...,?.Z.!.......:..3....`....K.9.z@.i..N. V.PS...hE\..C&.:.(..U..=pI..F?...._#.....sF.C.....uD*D.........'.I..Z.-.k0.mYug.M...SO.....;.*.e.\...s.......F.8....h...REW<..*.e.e~..r.2.Y<..{..........cj0D.{..t.... E.3..B.B....`q%.x...t....K...#O..x.B.'.f.Hl... H,.........2.'F+.o.7.14!.h.J3:4z<...5z...........m..:.p...FVA[+....8zq..!...J......{uX.S..g(...f....C6..i......d.X.L.v,auq-...J..~4e.....G..[m..Z...]x@.?\.....I.O.By..@..bt....f.%9 <......yk#{$.._h9.. ..r....iT..g..v..../.s...]..Y..2...=...0......'D.pb.....IEND.B`.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\02f8664b95445de6f27ba682f3c5f9ab[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):4026
                                                                                                                Entropy (8bit):5.165425025048119
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+O2aTjjawLtBx0tdmK9YYlfBWX5oM4rLEa:DTj+wVeY0S4r7
                                                                                                                MD5:02F8664B95445DE6F27BA682F3C5F9AB
                                                                                                                SHA1:EFF0C42E5C642D81EF76995CE6B6C059CB38DCB6
                                                                                                                SHA-256:343B575C37BF08A1FDC972D0D86BCFAFF9C405DE625516C8656B60D37DCBA927
                                                                                                                SHA-512:2F58F0E0D46B9DE2F47CA8EC41B15E4B78A02EF9C7172B7C673CF85A3FD8D8870F00AF04C82768893A86B3F787B64464DF5613C801B6D85F1FC16A614F25CCF6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/02f8664b95445de6f27ba682f3c5f9ab.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="108" y1="165" x2="180" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="242" y1="149" x2="284" y2="149" xlink:href="#linear-gradient"/>. <linearGradient id="linear-gradient-3" x1="34" y1="149" x2="76" y2="149" xlink:href=
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\2917834[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, UTF-8 Unicode text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):768960
                                                                                                                Entropy (8bit):5.616806806304681
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12288:nVg734+89CHmLbGnqvNFcXuL5bT0eoHqVEzskjSHm:Vg734WmLinqvNCXuL5bT0BHqyskjSG
                                                                                                                MD5:56AF191F5972A0C10556A579837303A2
                                                                                                                SHA1:0CA7AFA137EBF1D7C5155004BF0A584C0736ACDF
                                                                                                                SHA-256:FB4C70DE82E5DEA2F3717E75CEA29B080DE3DA74EB8D23D13FD850A9C08C46D7
                                                                                                                SHA-512:E99E55AC4FE03A279C95EF7D86286527A43F4D4B8A60B63B4A0257083228DBFC71EFA402A4799F471D233BB5108BB72F97AC0DA2C540E9BDB1D8C57CA07DFBE9
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://support.google.com/accounts/answer/2917834?visit_id=637478994226273166-3870769646&p=signin_privatebrowsing&hl=en-GB&rd=1
                                                                                                                Preview: <!doctype html><html class="hcfe" data-page-type="ANSWER" lang="en"><head><title>Sign in on a device that's not yours - Computer - Google Account Help</title><meta content="email=no" name="format-detection"><meta content="nofollow,noindex" name="robots"><meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"><meta content="If you sign in temporarily on a computer, phone, or tablet that doesn't belong to you, use a private browsing window.&#10;For example: A public computer that's available to lots of people, like at a" name="description"><link href="https://support.google.com/accounts/answer/2917834?co=GENIE.Platform%3DDesktop&amp;hl=en" rel="canonical"><meta content="width=device-width,initial-scale=1,maximum-scale=1,user-scalable=no" name="viewport"><style>@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:500;src:
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\2951277d4c35389d7d304ed78d4fb6f6[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):3437
                                                                                                                Entropy (8bit):5.159691776325374
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+GzHx4GLZ/W1wHxJCXvGUQoHxno+e//Ij0jiO0ijy1uHldlzvgYx:+G2UCv0Ij0jH0P+ldlzvgYx
                                                                                                                MD5:2951277D4C35389D7D304ED78D4FB6F6
                                                                                                                SHA1:936A9062B6E78E198BA1CD7ACDB42DEA29920890
                                                                                                                SHA-256:F3E55293686B1A4BCB8095896F8ADA506D3CE3E8BAD1DE89EAB56AFBEF3AD793
                                                                                                                SHA-512:8A9B5F0DAE9DFBD5C1FC7FCBEE51FD9A40302856C2F305FF0343DB2BA46D9C05B5F25A6F90AAE4AAFCEB6ACEFF7813157617773E2147954928B1E9227B581415
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/2951277d4c35389d7d304ed78d4fb6f6.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <linearGradient id="linear-gradient" x1="24" y1="77" x2="48" y2="77" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.116" stop-color="#9aa0a6" stop-opacity="0.054"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.201"/>. <stop offset="0.546" stop-color="#9aa0a6" stop-opacity="0.44"/>. <stop offset="0.823" stop-color="#9aa0a6" stop-opacity="0.768"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="48" y1="80" x2="48" y2="16" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#1967d2"/>. <stop offset="0.043" stop-color="#1967d2" stop-opacity="0.942"/>. <stop offset="0.305" stop-color="#1967d2" stop-opacity="0.611"/>. <stop offset="0.54" stop-color="#1967d2" sto
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\3394102be0315326fd760e503b31c7b6[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1997
                                                                                                                Entropy (8bit):4.972761923159453
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+G0uMHxFi+eeunuGuQmDjuf3XU8MtUPFWl:+3vHxAr8Cn4tgWl
                                                                                                                MD5:3394102BE0315326FD760E503B31C7B6
                                                                                                                SHA1:8D80ABE58002CB8CF2A9C05EC5CE61F6A528AA6C
                                                                                                                SHA-256:FD266CACD5FD6FACBA81DEB7274AD226D7916B8883F23480A86F6F9C015913C8
                                                                                                                SHA-512:769DDC47AAA142961A8E00CDE3566DE62A6A6CA28D6EF568D5ECF67A0A5D8EF8806CF2428B653D58B9313E86161B6099D73362E6CEA6097D0B48DF4846253FE8
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/3394102be0315326fd760e503b31c7b6.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <clipPath id="clip-path">. <circle cx="48" cy="48" r="41" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient" x1="51" y1="78" x2="93" y2="78" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6"/>. <stop offset="1" stop-color="#9aa0a6" stop-opacity="0"/>. </linearGradient>. </defs>. <title>site_sec_C_01</title>. <g style="isolation: isolate">. <g id="Content">. <g>. <g>. <g>. <circle cx="48" cy="48" r="41" fill="#e8eaed"/>. <circle cx="48" cy="48" r="41" fill="none"/>. <circle cx="48" cy="48" r="41" fill="none"/>. <g clip-path="url(#clip-path)">. <path d="M89.981,22.441,67.05,68.843c-1.63,3.328-5.58,3.008-7.182-.581L51.8,50.168c-1.613-3.616-5.6-3.907-7.208-.526l-6.8,14.3C36.141,67.408,32.029,67,30.5,63.224L25.63
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\48l-xdS4pXg[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):47767
                                                                                                                Entropy (8bit):5.8780422689698195
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:y75/iR6oVfOK0rQ48y0z/D3J3+v0Mtb5euJsx6e9HP2ZO+3JjmTXJ6Vk:NyH3/ehMyv2Z6XUa
                                                                                                                MD5:55DD674D61ABD3EEDFBBC2E28C2228EE
                                                                                                                SHA1:AD8D1302EAE4F9860A87876B641AF748D38617AA
                                                                                                                SHA-256:350E84190565D313E489E7D968E13F8F71E7DB608D11911CCE68ADA5E087F1CA
                                                                                                                SHA-512:84F3A4D2FA3AE62E53B0AECD5219E98EB065778E4CDCFD112D91EFDFCCA6E0006B41E61DD9B29C11E0DB1A7936774991C06CC365774889B055C8DB2B614397E5
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/embed/48l-xdS4pXg?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&cc_lang_pref=en-GB&cc_load_policy=1&enablejsapi=1
                                                                                                                Preview: <!DOCTYPE html> <html lang="en-GB" dir="ltr" data-cast-api-enabled="true">.<head><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="robots" content="noindex"><style name="www-roboto" >@font-face{font-family:'Roboto';font-style:italic;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOjCnqEu92Fr1Mu51S7ACc6CsI.woff)format('woff');}@font-face{font-family:'Roboto';font-style:italic;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOkCnqEu92Fr1Mu51xIIzQ.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}</style><script name="www-roboto" >if (document.fonts && document.fonts.load) {document.fonts.load("400 10pt Roboto", "");document.fonts.load("500 10pt Roboto", "");}</script>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\900a793eae04f4bddd675f8d95c4a794[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):4391
                                                                                                                Entropy (8bit):5.07432704633403
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:+GO/YWHx4GLZ/W12HxDWj6V7QlWHxjUW+ev/3jZVV8gFOiawwEMqjJ79oqFCB2IK:+Hp2ShN4Q3ji9w8qj1C/JBWgWV
                                                                                                                MD5:900A793EAE04F4BDDD675F8D95C4A794
                                                                                                                SHA1:D79FE87CC4B220245AB72251DCF3AE4C71108544
                                                                                                                SHA-256:166EAB00B3516B5AEB1BB114FA70D57E0F4E021D4C06735C6969B08C5B7E1FDB
                                                                                                                SHA-512:E18FC18597424E69987E13E8F4E6E174A56B46C2D1616E203AC9C02EFBEFB47CCABB39ED999B0DF1784CEFC0D7444C19E2DDACA30022F45864554F999587DE13
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/900a793eae04f4bddd675f8d95c4a794.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="96" height="96" viewBox="0 0 96 96">. <defs>. <clipPath id="clip-path">. <path d="M48,7A41,41,0,1,0,89,48,40.989,40.989,0,0,0,48,7Z" fill="none"/>. </clipPath>. <linearGradient id="linear-gradient" x1="12" y1="68" x2="24" y2="68" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.116" stop-color="#9aa0a6" stop-opacity="0.054"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.201"/>. <stop offset="0.546" stop-color="#9aa0a6" stop-opacity="0.44"/>. <stop offset="0.823" stop-color="#9aa0a6" stop-opacity="0.768"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="46" y1="71" x2="46" y2="25" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#f29900"/>. <stop offset="0.138" stop-color="#f29900" stop-opacity="0.81
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\CheckConnection[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):30472
                                                                                                                Entropy (8bit):5.448802231199134
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:gcSkteAJVNPD1MydOvIgNM1LPrJfRvT4kZA5kREJk5PwPZMsE68Z4JzSKMn:gcVA+19dOvIEMPlfRvU1kHKFE68gzUn
                                                                                                                MD5:6B19422859E25A3D75FD1F4CBB06E9F3
                                                                                                                SHA1:9AD7B0EFAF1A6E513873045A4DE1C2BA3C3C0BC7
                                                                                                                SHA-256:8827969C1E723B374E802B40C39C4F73724D3C9AA01FCE9FE45C24C362B46FAE
                                                                                                                SHA-512:092DAF833C94FD540FF4B62167CECB68209C5E9E417B73ACEF9F7E6B6AE304FA71690BA1EBCDDFE20B64B4098D1A5272301DD8BC4916570DF0019E25772C6360
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <html><head><script nonce="fR5M7Xs2kXFJ7yUImfBJbg">"use strict";this.default_AccountsDomaincookiesCheckconnectionJs=this.default_AccountsDomaincookiesCheckconnectionJs||{};(function(_){var window=this;.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var k=function(a){if(Error.captureStackTrace)Error.captureStackTrace(this,k);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a))},aa=function(a,b){a:{for(var c=a.length,d="string"===typeof a?a.split(""):a,e=0;e<c;e++)if(e in d&&b.call(void 0,d[e],e,a)){b=e;break a}b=-1}return 0>b?null:"string"===typeof a?a.charAt(b):a[b]},ba=function(a,b){b=l(a,b);var c;(c=0<=b)&&Array.prototype.splice.call(a,b,1);return c},ca=function(a){n(a)},fa=function(){var a={};a.location=document.location.toString();.if(da())try{a["top.location"]=top.location.toString()}catch(c){a["top.location"]="[external]"}else a["top.location"]="[external]";for(var b in ea)try{a[b]=ea[b].call()}catch(c){a[b]="[error] "+c
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\KFOkCnqEu92Fr1MmgVxIIzQ[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 19936, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):19936
                                                                                                                Entropy (8bit):7.969635209849544
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:mvNCb8Eb+tS9nAIRMeC4J4h4Il7xtUOTCBGt+GXn/TUnOPgdGRhBg9r:Y4zbwTiMedJNIhkGbXn/TUnS+2hS9r
                                                                                                                MD5:E9DBBE8A693DD275C16D32FEB101F1C1
                                                                                                                SHA1:B99D87E2F031FB4E6986A747E36679CB9BC6BD01
                                                                                                                SHA-256:48433679240732ED1A9B98E195A75785607795037757E3571FF91878A20A93B2
                                                                                                                SHA-512:D1403EF7D11C1BA08F1AE58B96579F175F8DD6A99045B1E8DB51999FB6060E0794CFDE16BFE4F73155339375AB126269BC3A835CC6788EA4C1516012B1465E75
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOkCnqEu92Fr1MmgVxIIzQ.woff
                                                                                                                Preview: wOFF......M.................................GDEF.......G...d....GPOS...............hGSUB............7b..OS/2.......R...`s.#.cmap...........L....cvt .......H...H.2..fpgm.......3...._...gasp...0............glyf...<..;...n..e..hdmx..G<...i........head..G....6...6.G..hhea..G........$...`hmtx..H....M.....Wd^loca..JP............maxp..L,... ... ....name..LL.......x..9.post..M ....... .m.dprep..M4........+6.x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x.....[....#N..m.m.m.mfm....SP..NuM..9]..=.U..!...[........w...|......^p....H......;...)..........;..EoDo....E.E.D...`.0.GG.aA.H.V.Mx\xA....../..d3.Eb_.J...R.^v........\^ob.}.z..k.x).v$f$..O)+.2..*....y}6`C6b.6cs...l...........!.........<..|.|..|..|..|.|....o....I%.4.L.SI.&C.6..!`...{...c..\.J.(.2.C....V.A..?.M<nG......v..m.;..R.C..aj.H...=..{.>.:.....}i_Y......:....o.&k..KY.2..6k....i]..{,.p}../.....VO3.o].fJ....R-TZ..;...RN..&V...C...3.?.......&..z.s&.D....r,.I...t.R..a$k..Mm..Y.U...+b.%kQ..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\KFOkCnqEu92Fr1Mu51xIIzQ[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 21528, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):21528
                                                                                                                Entropy (8bit):7.973887568128485
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:uy/NCb8EbjU+Fos6gaUFZ3qR474EAqAG3w/Qpt/uxMsucMgwtDw031F:7/4zb7o6XqR4+3QptcuLg0w031F
                                                                                                                MD5:9680D5A0C32D2FD084E07BBC4C8B2923
                                                                                                                SHA1:8020B21E3DB55FF7A02100FAEBD92C2305E7156E
                                                                                                                SHA-256:2CFE69657C55133DAC6EA017B4452EFFF2131422ABD9E90500A072DF7CA5A9C8
                                                                                                                SHA-512:E19A498866F69F3D8136A65A5AB4E92CC047170673ED00B506E325165A84216267B9FEF1E5CFD66458E85ED820C12E9C345CEC9BEE4DE48E1C2E2B1A784F179F
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOkCnqEu92Fr1Mu51xIIzQ.woff
                                                                                                                Preview: wOFF......T.................................GDEF.......G...d....GPOS...............hGSUB............7b..OS/2.......R...`tq#gcmap...........L....cvt .......R...R..-.fpgm.......4....s...gasp...<............glyf...H..@...o..Na.hdmx..M....g........head..Mp...6...6...ehhea..M...."...$...{hmtx..M....k.....1<.loca..P8........6...maxp..R.... ... ....name..R4..........:.post..S........ .a.dprep..S$.......D..].x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x.....[....#N..m.m.m.mfm....SP..NuM..9]..=.U..!...[........w...|......^p....H......;...)..........;..EoDo....E.E.D...`.0.GG.aA.H.V.Mx\xA....../..d3.Eb_.J...R.^v........\^ob.}.z..k.x).v$f$..O)+.2..*....y}6`C6b.6cs...l...........!.........<..|.|..|..|..|.|....o....I%.4.L.SI.&C.6..!`...{...c..\.J.(.2.C....V.A..?.M<nG......v..m.;..R.C..aj.H...=..{.>.:.....}i_Y......:....o.&k..KY.2..6k....i]..{,.p}../.....VO3.o].fJ....R-TZ..;...RN..&V...C...3.?.......&..z.s&.D....r,.I...t.R..a$k..Mm..Y.U...+b.%kQ..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\KFOlCnqEu92Fr1MmWUlfBBc-[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 20356, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):20356
                                                                                                                Entropy (8bit):7.972919215442608
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:of+dt1ebKR28EPpAXxR5wthZZv4B8Te/h4+ctr5NH9NwZaUp4VsEgm:of+P1eeRcU8Hqdy+UHHbEw/
                                                                                                                MD5:ADCDE98F1D584DE52060AD7B16373DA3
                                                                                                                SHA1:0A9B76D81989A7A45336EBD7B48ED25803F344B9
                                                                                                                SHA-256:806EA46C426AF8FC24E5CF42A210228739696933D36299EB28AEE64F69FC71F1
                                                                                                                SHA-512:7B1D6CC0D841A9E5EFEC540387BC5F9B47E07A21FDC3DC4CE029BB0E3C74664BBC9F1BCCFD8FB575B595C2CC1FD16925C533E062C4C82EEE0C310FFD2B4C2927
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmWUlfBBc-.woff
                                                                                                                Preview: wOFF......O.................................GDEF.......G...d....GPOS.............~..GSUB.......'......r.OS/2.......Q...`u...cmap...\..........W.cvt ...T...H...H+~..fpgm.......3...._...gasp................glyf......;...k....hdmx..H....m....!$..head..H....6...6...\hhea..I,.......$.&..hmtx..IL...y.....XF.loca..K.........`.C.maxp..M.... ... .(..name..M........~..9.post..N........ .m.dprep..N........)*v60x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R...A.J.x....dK...{....?..F?.|.~.m...ms.{.Z..;......U.]7s......\.=D.=.7...>....x...D..O|.U:...|o..3.x.j.r"B.............../.)x$.'"j.....1LGmaGxQxG....~.:'.A..hd.z,.k..KO.....^.}H|#z_.O......R..A...9..A..!.(./..."..:.Iq1.r..s..r.7r.7s..q.wr....nz..]...2..d4c..c....d....T.1...d....\....,c9k.g..Yv.#O."%...... ...t"uM..%.......j.#^.....}\c.q.i...<jy.D...C.01.2.r.....V..z.W.7b..L.S.41]..kUs.X/6..b.........(..(...K..{.^..'........`#./..B......N+p.m`...].lQ....Drg.M..Kx.^.S.*..........h ..$.k.'Hy.I.ze..4z.-T.....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\KFOmCnqEu92Fr1Mu4mxM[1].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 19824, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):19824
                                                                                                                Entropy (8bit):7.970306766642997
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:ozNCb8EbW9Wg166uwroOp/taiap3K6MC4fsPPuzt+7NCXzS65XZELt:K4zbWcDVwt230hfs+x+Bb65X2
                                                                                                                MD5:BAFB105BAEB22D965C70FE52BA6B49D9
                                                                                                                SHA1:934014CC9BBE5883542BE756B3146C05844B254F
                                                                                                                SHA-256:1570F866BF6EAE82041E407280894A86AD2B8B275E01908AE156914DC693A4ED
                                                                                                                SHA-512:85A91773B0283E3B2400C773527542228478CC1B9E8AD8EA62435D705E98702A40BEDF26CB5B0900DD8FECC79F802B8C1839184E787D9416886DBC73DFF22A64
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff
                                                                                                                Preview: wOFF......Mp.......P........................GDEF.......G...d....GPOS...............hGSUB............7b..OS/2.......R...`tq#.cmap...........L....cvt .......T...T+...fpgm.......5....w.`.gasp...@............glyf...L..:+..j.....hdmx..Fx...g........head..F....6...6.j.zhhea..G........$....hmtx..G8...]......Vlloca..I.........?.#.maxp..Kt... ... ....name..K........t.U9.post..Ld....... .m.dprep..Lx.......I.f..x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R.....2.x.....[....#N..m.m.m.mfm....SP..NuM..9]..=.U..!...[........w...|......^p....H......;...)..........;..EoDo....E.E.D...`.0.GG.aA.H.V.Mx\xA....../..d3.Eb_.J...R.^v........\^ob.}.z..k.x).v$f$..O)+.2..*....y}6`C6b.6cs...l...........!.........<..|.|..|..|..|.|....o....I%.4.L.SI.&C.6..!`...{...c..\.J.(.2.C....V.A..?.M<nG......v..m.;..R.C..aj.H...=..{.>.:.....}i_Y......:....o.&k..KY.2..6k....i]..{,.p}../.....VO3.o].fJ....R-TZ..;...RN..&V...C...3.?.......&..z.s&.D....r,.I...t.R..a$k..Mm..Y.U...+b.%kQ..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\KFOmCnqEu92Fr1Mu4mxM[2].woff
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Web Open Font Format, TrueType, length 20268, version 1.1
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):20268
                                                                                                                Entropy (8bit):7.970212610239314
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:LyfRPUY1e32pJd75q1DzPjsnouCrZsZtetWFNFfIP0cIWvdzNcrm:uJPb1em3dSPjKrZYtWntk0wvdzh
                                                                                                                MD5:60FA3C0614B8FB2F394FA29944C21540
                                                                                                                SHA1:42C8AE79841C592A26633F10EE9A26C75BCF9273
                                                                                                                SHA-256:C1DC87F99C7FF228806117D58F085C6C573057FA237228081802B7D8D3CF7684
                                                                                                                SHA-512:C921362A52F3187224849EB566E297E48842D121E88C33449A5C6C1193FD4842BBD3EF181D770ADE9707011EB6F4078947B8165FAD51C72C17F43B592439FFF4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://fonts.gstatic.com/s/roboto/v20/KFOmCnqEu92Fr1Mu4mxM.woff
                                                                                                                Preview: wOFF......O,.......P........................GDEF.......G...d....GPOS................GSUB.......'......r.OS/2.......P...`t...cmap...$..........W.cvt .......T...T+...fpgm...p...5....w.`.gasp................glyf......;Q..lD..&0hdmx..H....n..... ..head..Hx...6...6.j.zhhea..H........$....hmtx..H....t......Xdloca..KD........BC%.maxp..M0... ... .(..name..MP.......t.U9.post..N ....... .m.dprep..N4.......I.f..x...1..P......PB..U.=l.@..B)..w.......Y.e.u.m.C.s...x.h.~R....R...A.J.x.l..h.a........l.m.6.1+.X....i...y....&...._..63..5....2>...x|D...ct.Kx..H@b.3..l..#u.....L.*.....^.*.4.....rP..{.*......Q...JT.:Xu>..T./>...oq...........~..@.....lq../.... ..#..".&.8.H$..r...J)..jj...&..f.=.9..N9.....'F..8.4.....m...m...m.m..n..&.X..}....S.|.....n........PHaE...J*...4..MjJ.*..nW)..rn3'/.....ks5zY5c...Mgg.5..p..rR{c...p..t\.8.c=..p...X.(.......7....=.........!...H ........(.0...(.q.JT?.b..z].'T...m..vNi.....t....:P.R..H....t.........&?.:.j.51+.S.":j.SK'I.^....}S.i.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\ServiceLogin[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):1595988
                                                                                                                Entropy (8bit):5.83185718680799
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12288:IpM3yJ2nlaBp5jTlCIedGjaOm3bNhpOphycnAtoPB489jIudhEjHFFG:MglaBHjTl+WaOipqKyTINK
                                                                                                                MD5:E90E58B7923338C1E486EE8C9737BD56
                                                                                                                SHA1:EE002D5F57DBC0EC70F30FB253335CF828FFE1D0
                                                                                                                SHA-256:CAEAB6B5D40176054291382D3CB5412495777488087A1A0E486491F2D38F8681
                                                                                                                SHA-512:C27A5548341DD3712BDA4FCE9BA9371DB2EFB5ECC1226A3A6E0417DB67868B3D40F7D18D841B7E47A25F61F93572863F607399824B3B8E26FFDC0D46D43EAC0C
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!doctype html><html lang="en-GB" dir="ltr"><head><base href="https://accounts.google.com/"><script data-id="_gd" nonce="hQHYL+qnFHnm5M8DtOJ4Kg">window.WIZ_global_data = {"Mo6CHc":7303684187890598155,"OewCAd":"%.@.\"xsrf\",null,[\"\"]\n,\"AFoagUVAtGUzyvaPVZqBOro5LX4GdacZyQ:1612302603763\"]\n","Qzxixc":"S-972314627:1612302603742348","thykhd":"AKH95evoxUe1tzTwf0ZH1fWF202vysd0XyQay-2i8c5yi08hmwL6KE_VG81UmZpjbr74xMPB-1uvB2QaO6YWPSVBuMkxmzGsAEVcVlFhlxZDLdfj3wXZ-pI\u003d","w2btAe":"%.@.null,null,\"\",false,null,null,true,false]\n"};</script><meta charset="utf-8"/><meta http-equiv="X-UA-Compatible" content="IE=edge"/><link rel="shortcut icon" href="//www.google.com/favicon.ico"/><noscript><meta http-equiv="refresh" content="0; url=https://accounts.google.com/ServiceLogin?continue=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq2XLp9%2Fview%3Fusp%3Ddrivesdk&amp;rip=1&amp;nojavascript=1&amp;followup=https%3A%2F%2Fdrive.google.com%2Ffile%2Fd%2F1ntXs1_bhlkIPkIH_acfd802I3yq
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\TOS[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT)
                                                                                                                Category:dropped
                                                                                                                Size (bytes):197
                                                                                                                Entropy (8bit):6.748558418265418
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:6:XtwM9CG1f8OaC3TVXZc/S28CGWdjV2K+j:XWGWD0TLubxjU9j
                                                                                                                MD5:D2637B3A0059D2AA6133D587491FCB76
                                                                                                                SHA1:10B4804ACF823EF874069793C27522D190443F79
                                                                                                                SHA-256:13AE332B053348547D338D24907CAA06EF48342A1074661235715B3CA2742A9D
                                                                                                                SHA-512:02E60F72B132C12C09627EFF30B7DF68092D4954CB940AC3662908AE1CA612B355FC45489E26CFF924AF66985329CAFC178365B88CABED7558C8B8C69B4B71B1
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: ..........m....0...>EH.....F....E(9.G........}5.sYvv...9/..y....w^$aifh..m.P.R-.|..%. ...b.*.G.w..F<y.u=:....mu=....yk.'$..i.....I.`1Mv<.b.............r.... c.Z.P...P...D...n...=..Z..R....
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\YlmVKT3Zvhw[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):47908
                                                                                                                Entropy (8bit):5.867008196550997
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:xCD/iR6oVfOjTeTApXnSyzlVVRpQq65gCnhMQpYb+iJB/xk8HAD:oLNpQqc8XBH6
                                                                                                                MD5:CD798D9C5C569D19DB04391171991FA6
                                                                                                                SHA1:4914E1C39FA55AFE4BF38F7BDF8CCBAEDF150868
                                                                                                                SHA-256:C0A7B22A61330CD3C2BB72E1A9D12DC6A84996CE4EAFCB97A4D0D848787DC90E
                                                                                                                SHA-512:64E929E6E708F76A8B0D65210633EDDDF9F54F5B248986D178E6D89F911C0DA10A859D44769D22F6BE68246FCBA8263A249ACCB9B17BC3BBB52957E9FF3AFB0D
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/embed/YlmVKT3Zvhw?rel=0&showinfo=0&theme=light&version=3&hl=en-GB&cc_lang_pref=en-GB&cc_load_policy=1&enablejsapi=1
                                                                                                                Preview: <!DOCTYPE html> <html lang="en-GB" dir="ltr" data-cast-api-enabled="true">.<head><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="robots" content="noindex"><style name="www-roboto" >@font-face{font-family:'Roboto';font-style:italic;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOkCnqEu92Fr1Mu51xIIzQ.woff)format('woff');}@font-face{font-family:'Roboto';font-style:italic;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOjCnqEu92Fr1Mu51S7ACc6CsI.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:500;src:url(//fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc-.woff)format('woff');}@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}</style><script name="www-roboto" >if (document.fonts && document.fonts.load) {document.fonts.load("400 10pt Roboto", "");document.fonts.load("500 10pt Roboto", "");}</script>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\acad335ad7ba163209d8c3e671b2c445[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):9346
                                                                                                                Entropy (8bit):4.909678911846309
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:+12aGkB/pvtjRn5EC9QeOgyCVWV3h4yx2WFt1PMXdDWCkgiQAJ9FnPDbs/A2i:6jt9nGCG4SxMhkyAJfnPD4ti
                                                                                                                MD5:ACAD335AD7BA163209D8C3E671B2C445
                                                                                                                SHA1:6FFD6741AE59ED5B7AAA33505EF2F57F86A1D082
                                                                                                                SHA-256:BBD9E8EDDB8A9888E40E0CF19EA2E0898D7C2FA534B4E70F3922B7A1A20A584D
                                                                                                                SHA-512:C96EAF974A77B8D17723F02F84A4C28DC9B9A34C7DB0867CE7674C51A5772667152EE9057C137EA639DAA1728C23C22917DB05758BE7A56588D10D744A52C991
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/policies/privacy/acad335ad7ba163209d8c3e671b2c445.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" width="360" height="204" viewBox="0 0 360 204">. <defs>. <linearGradient id="linear-gradient" x1="119" y1="165" x2="147" y2="165" gradientUnits="userSpaceOnUse">. <stop offset="0" stop-color="#9aa0a6" stop-opacity="0"/>. <stop offset="0.15" stop-color="#9aa0a6" stop-opacity="0.025"/>. <stop offset="0.306" stop-color="#9aa0a6" stop-opacity="0.1"/>. <stop offset="0.464" stop-color="#9aa0a6" stop-opacity="0.225"/>. <stop offset="0.624" stop-color="#9aa0a6" stop-opacity="0.4"/>. <stop offset="0.786" stop-color="#9aa0a6" stop-opacity="0.626"/>. <stop offset="0.946" stop-color="#9aa0a6" stop-opacity="0.898"/>. <stop offset="1" stop-color="#9aa0a6"/>. </linearGradient>. <linearGradient id="linear-gradient-2" x1="67" y1="165" x2="115" y2="165" xlink:href="#linear-gradient"/>. <linearGradient id="linear-gradient-3" x1="107.557" y1="61.557" x2="119.557" y2="49.5
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\base[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1569183
                                                                                                                Entropy (8bit):5.584544816043122
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12288:EpuYiufaH2QUs/SyuNPWa2rG3rlJmrTAvmD:VY5faH2Ts/SyupWa2rG3xaAI
                                                                                                                MD5:CEDA2DB36F5CFCBBA28133CE26EABDA3
                                                                                                                SHA1:6A119A1B95FD00DC5FB919C4896F47A13041B2F5
                                                                                                                SHA-256:B74551B54742F2893AB72AE850125F27B9C60A9EE054758C65EC49020C3CC841
                                                                                                                SHA-512:6E6AD17CC06504CB199C9063DE21D34F2E1766B983621DCA9662B8BB10681CB16EF3FE09073022E6304D3F8EE404B7F259C2D82CFB5FF8170C064CFCD5756AE6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/player_ias.vflset/en_GB/base.js
                                                                                                                Preview: var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var ba,da,maa,ia,ka,la,pa,qa,ra,sa,ta,ua,naa,taa,va,wa,uaa,xa,ya,Aa,Ba,Ca,Da,Ha,Fa,Ka,La,xaa,yaa,Ua,Va,Wa,zaa,Aaa,Xa,Baa,Za,$a,Caa,Daa,bb,jb,Eaa,qb,rb,Faa,xb,tb,Gaa,ub,Haa,Iaa,Jaa,Fb,Ib,Jb,Mb,Ob,Pb,Sb,Yb,$b,cc,dc,hc,jc,kc,Maa,lc,mc,nc,wc,xc,zc,Ec,Kc,Lc,Pc,Nc,Qaa,Taa,Uaa,Vaa,Vc,Wc,Yc,Xc,$c,cd,Waa,Xaa,bd,Yaa,id,jd,kd,ld,od,qd,rd,$aa,sd,td,Bd,Cd,Dd,Ed,Fd,Gd,Hd,Id,Kd,Od,Pd,Rd,Sd,Td,bba,Ud,Vd,Wd,Zd,$d,ae,he,je,me,qe,re,we,xe,Ae,ye,Ce,Fe,Ee,De,gba,oe,Te,Re,Se,Ve,Ue,ne,We,Xe,iba,af,cf,$e,ef,hf,jf,kf,lf,.mf,nf,of,jba,vf,rf,Hf,kba,Lf,Nf,Sf,Tf,Uf,Vf,Wf,Yf,Xf,Zf,$f,nba,pba,qba,sba,eg,fg,gg,ig,jg,kg,mg,lg,uba,tba,og,pg,vba,qg,wba,rg,xba,sg,ug,wg,Dg,Eg,Hg,yba,Kg,Jg,Lg,zba,Tg,Aba,Ug,Wg,Xg,Yg,Zg,$g,Bba,ah,bh,ch,dh,eh,fh,gh,Cba,hh,ih,jh,Dba,Eba,kh,mh,lh,oh,ph,sh,qh,Gba,rh,th,Iba,Hba,Jba,zh,Kba,Bh,Ch,Dh,Ah,Eh,Lba,Fh,Mba,Nba,Ih,Pba,Jh,Kh,Lh,Qba,Nh,Ph,Sh,Vh,Xh,Uh,Th,Yh,Rba,Zh
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\cb=gapi[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):213220
                                                                                                                Entropy (8bit):5.518438460669518
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3072:pUnq59U3zzVB2UM8aLCLLbJlco3/TqOJPKB/FL6+LClcL2JDBJt4yU8JMPGBNnX:pOZzlL3JupF2+acaVBJt4ytJMPGBNnX
                                                                                                                MD5:68F7670315C465CF9017576197206812
                                                                                                                SHA1:1A1544DB510EBB9A571A99F6232F603492C31C4A
                                                                                                                SHA-256:5CD7BB98D47F6001973B383BC2C43913D2606F8AD3FACE658A51FBFF4D7C0EC8
                                                                                                                SHA-512:3998CA94E911D8DFE6DE57E5290985BD315EB4919B13CD2B7DA2DA86452C21A1C66A9167FC90C5EF2D50761EA904540761B3579C833FE31F94B13BBC9D02B40E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: /* JS */ gapi.loaded_1(function(_){var window=this;./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var Rx=function(){};Rx.prototype.VD=null;Rx.prototype.getOptions=function(){var a;(a=this.VD)||(a={},_.Sx(this)&&(a[0]=!0,a[1]=!0),a=this.VD=a);return a};.var Ux;Ux=function(){};_.O(Ux,Rx);_.Sx=function(a){if(!a.WG&&"undefined"==typeof XMLHttpRequest&&"undefined"!=typeof ActiveXObject){for(var b=["MSXML2.XMLHTTP.6.0","MSXML2.XMLHTTP.3.0","MSXML2.XMLHTTP","Microsoft.XMLHTTP"],c=0;c<b.length;c++){var d=b[c];try{return new ActiveXObject(d),a.WG=d}catch(e){}}throw Error("la");}return a.WG};_.Tx=new Ux;.._.Le=_.Le||{};.(function(){function a(c,d){return String.fromCharCode(d)}var b={0:!1,10:!0,13:!0,34:!0,39:!0,60:!0,62:!0,92:!0,8232:!0,8233:!0,65282:!0,65287:!0,65308:!0,65310:!0,65340:!0};_.Le.escape=function(c,d){if(c){if("string"===typeof c)return _.Le.escapeString(c);if("Array"===typeof c){var e=0;for(d=c.length;e<d;++e)c[e]=_.Le.escape(c[e])}else if("o
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\embed[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):30254
                                                                                                                Entropy (8bit):5.548559781811496
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:Hd+1iJpE+OeG9Ym5f3VCmkVPh7DtF7XxF:V1OeGVRVCfbxF
                                                                                                                MD5:AC8A39C465F04D807C98AC4C26342E23
                                                                                                                SHA1:A94F87C786B1B300A7B0B4CAC7B13DBB36DA8273
                                                                                                                SHA-256:1AFA01A4D3A04C2876BC9CCF3B6C7698DB2BCA2752786FFBB09BD937EC41D56B
                                                                                                                SHA-512:C7B6A9D3CE7C29DF9A18DB2788B2E06ED0D82FD33197B97E3FD2ED941EE6F105D87EC252A20A1C766B08D2F7023D2257A6D56AD9A69AB8B0576B30668742DB0B
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/player_ias.vflset/en_GB/embed.js
                                                                                                                Preview: (function(g){var window=this;var H2=function(a,b){g.pf(a.u,8*b+2);var c=a.u.end();a.C.push(c);a.B+=c.length;c.push(a.B);return c},I2=function(a,b){var c=b.pop();.for(c=a.B+a.u.length()-c;127<c;)b.push(c&127|128),c>>>=7,a.B++;b.push(c);a.B++},GFa=function(a,b,c){null!=c&&(g.pf(a.u,8*b+1),a=a.u,b=c>>>0,c=Math.floor((c-b)/4294967296)>>>0,g.Af=b,g.Bf=c,g.qf(a,g.Af),g.qf(a,g.Bf))},J2=function(a,b,c){null!=c&&(g.pf(a.u,8*b),a.u.u.push(c?1:0))},K2=function(a,b,c){if(null!=c){b=H2(a,b);.for(var d=a.u,e=0;e<c.length;e++){var f=c.charCodeAt(e);if(128>f)d.u.push(f);else if(2048>f)d.u.push(f>>6|192),d.u.push(f&63|128);else if(65536>f)if(55296<=f&&56319>=f&&e+1<c.length){var h=c.charCodeAt(e+1);56320<=h&&57343>=h&&(f=1024*(f-55296)+h-56320+65536,d.u.push(f>>18|240),d.u.push(f>>12&63|128),d.u.push(f>>6&63|128),d.u.push(f&63|128),e++)}else d.u.push(f>>12|224),d.u.push(f>>6&63|128),d.u.push(f&63|128)}I2(a,b)}},L2=function(a,b,c,d){null!=c&&(b=H2(a,b),d(c,a),I2(a,b))},M2=function(a,b,c,d){if(null!=.c)f
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\fetch-polyfill[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:Pascal source, ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):8543
                                                                                                                Entropy (8bit):5.238064281324506
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:oQHdiEslZc0rsNYNU5mSJHqI03aej6tZoaMLQO/x5/P80+HcW:ocHslLsP5muHqI0Jj6tZcUO/x5+V
                                                                                                                MD5:04E3CC8A9641B3F9F9C9370F4E9B5BDD
                                                                                                                SHA1:9602A891F583094BB04FD407B253ABCAFFB8C8D0
                                                                                                                SHA-256:DE6C4FFA2BD9FD283610E28D0DB2EC48607AAB39D213A51AEF248673A0A7E980
                                                                                                                SHA-512:58942BCC0F39D620A475B65C1AEB4F18872F68F22C89DEC076906A0DB8BC2B7CCA9357710A7824A0FA7404FF73F41013AECA34609CAACD2187414F7BD0D490D6
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.youtube-nocookie.com/s/player/f6ef8aad/fetch-polyfill.vflset/fetch-polyfill.js
                                                                                                                Preview: /*.. Copyright (c) 2014-2016 GitHub, Inc... Permission is hereby granted, free of charge, to any person obtaining. a copy of this software and associated documentation files (the. "Software"), to deal in the Software without restriction, including. without limitation the rights to use, copy, modify, merge, publish,. distribute, sublicense, and/or sell copies of the Software, and to. permit persons to whom the Software is furnished to do so, subject to. the following conditions:.. The above copyright notice and this permission notice shall be. included in all copies or substantial portions of the Software... THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,. EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF. MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND. NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE. LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION. OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\ggoJFaE71W8[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):48735
                                                                                                                Entropy (8bit):5.809252055969609
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:768:i0KJ7yUUvQoq9rF3N5DJAyk6BSGs7KPnuwo1vwz3P:RGkOSBKPuwoCz/
                                                                                                                MD5:DBE4344D490C99BA899964E78805318D
                                                                                                                SHA1:F39BE0A475D867EC745D84CC125AEB292F4DCC48
                                                                                                                SHA-256:EE7E7E39955167649A7991E2F6089954F93361E2A53C327B4AFD8C7650D51070
                                                                                                                SHA-512:C050EF9C63226B2EE6A797E543235E05CB3F79D917F55C7A34937838E263D2A354ACB320781E8B11273FB6115C405F410CA659CC373381881CEF8FB3F44D6BF3
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!DOCTYPE html><html lang="en-GB" dir="ltr" data-cast-api-enabled="true"><head><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="robots" content="noindex"><style name="www-roboto" nonce="F1Gzgh3KK95vZFp1a60wXQ">@font-face{font-family:'Roboto';font-style:normal;font-weight:400;src:url(//fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxM.woff)format('woff');}</style><script name="www-roboto" nonce="F1Gzgh3KK95vZFp1a60wXQ">if (document.fonts && document.fonts.load) {document.fonts.load("400 10pt Roboto", "E"); document.fonts.load("500 10pt Roboto", "E");}</script><link rel="stylesheet" href="/s/player/f6ef8aad/www-player.css" name="www-player" nonce="F1Gzgh3KK95vZFp1a60wXQ"><style nonce="F1Gzgh3KK95vZFp1a60wXQ">html {overflow: hidden;}body {font: 12px Roboto, Arial, sans-serif; background-color: #000; color: #fff; height: 100%; width: 100%; overflow: hidden; position: absolute; margin: 0; padding: 0;}#player {width: 100%; height: 100%;}h1 {text-align: center
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\googlelogo_clr_74x24px[1].svg
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:SVG Scalable Vector Graphics image
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1660
                                                                                                                Entropy (8bit):4.301517070642596
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:A/S9VU5IDhYYmMqPLmumtrYW2DyZ/jTq9J:A2VUSDhYYmM5trYFw/jmD
                                                                                                                MD5:554640F465EB3ED903B543DAE0A1BCAC
                                                                                                                SHA1:E0E6E2C8939008217EB76A3B3282CA75F3DC401A
                                                                                                                SHA-256:99BF4AA403643A6D41C028E5DB29C79C17CBC815B3E10CD5C6B8F90567A03E52
                                                                                                                SHA-512:462198E2B69F72F1DC9743D0EA5EED7974A035F24600AA1C2DE0211D978FF0795370560CBF274CCC82C8AC97DC3706C753168D4B90B0B81AE84CC922C055CFF0
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://www.gstatic.com/images/branding/googlelogo/svg/googlelogo_clr_74x24px.svg
                                                                                                                Preview: <svg xmlns="http://www.w3.org/2000/svg" width="74" height="24" viewBox="0 0 74 24"><path fill="#4285F4" d="M9.24 8.19v2.46h5.88c-.18 1.38-.64 2.39-1.34 3.1-.86.86-2.2 1.8-4.54 1.8-3.62 0-6.45-2.92-6.45-6.54s2.83-6.54 6.45-6.54c1.95 0 3.38.77 4.43 1.76L15.4 2.5C13.94 1.08 11.98 0 9.24 0 4.28 0 .11 4.04.11 9s4.17 9 9.13 9c2.68 0 4.7-.88 6.28-2.52 1.62-1.62 2.13-3.91 2.13-5.75 0-.57-.04-1.1-.13-1.54H9.24z"/><path fill="#EA4335" d="M25 6.19c-3.21 0-5.83 2.44-5.83 5.81 0 3.34 2.62 5.81 5.83 5.81s5.83-2.46 5.83-5.81c0-3.37-2.62-5.81-5.83-5.81zm0 9.33c-1.76 0-3.28-1.45-3.28-3.52 0-2.09 1.52-3.52 3.28-3.52s3.28 1.43 3.28 3.52c0 2.07-1.52 3.52-3.28 3.52z"/><path fill="#4285F4" d="M53.58 7.49h-.09c-.57-.68-1.67-1.3-3.06-1.3C47.53 6.19 45 8.72 45 12c0 3.26 2.53 5.81 5.43 5.81 1.39 0 2.49-.62 3.06-1.32h.09v.81c0 2.22-1.19 3.41-3.1 3.41-1.56 0-2.53-1.12-2.93-2.07l-2.22.92c.64 1.54 2.33 3.43 5.15 3.43 2.99 0 5.52-1.76 5.52-6.05V6.49h-2.42v1zm-2.93 8.03c-1.76 0-3.1-1.5-3.1-3.52 0-2.05 1.34-3.52 3.1-3
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\m=sym,i5dxUd,RAnnUd,syj,syk,uu7UOe,soHxf[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):19311
                                                                                                                Entropy (8bit):5.6268601174903505
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:7ARAvADQGutjCFoylI7ABtY5IXJ9EPykS7f/zoH:8GYDQlh7AB798S7f/zoH
                                                                                                                MD5:9955D13C946101C0468F15385309EF11
                                                                                                                SHA1:D846ADAA1C6BBF6C8BE131DCCC45B13887E8F682
                                                                                                                SHA-256:DD7F89A2A6D96FA74252424E34FDD3FF64D67497EE7A1CCAA87558AAE16656C2
                                                                                                                SHA-512:4C693DB353D1A80643ACC8482914777F6DE141E7B8A7B0B3A4789A88328A360A87AACE0D7FF8A85DA8E411811983BA7ECA05EDF3A12C171C1A042EAFD82C9F8F
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this._G=this._G||{};(function(_){var window=this;.try{._.k("sym");./*.. Copyright 2016 Google Inc... Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the Software... THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR. IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,. FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE. AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER. LIABILITY, WHETHER IN AN ACTIO
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\m=uiNkee,IavLJc[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):1578
                                                                                                                Entropy (8bit):5.193580588439274
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:kAyE+e6RNS89njCLbv68VLtuU1jR88zHidthK85d8HbR8875MTIiljd5FJLqrG:tyZWCjUTf19sd8HVYYrG
                                                                                                                MD5:2C4B88E5370A43AE9A0617895501F97D
                                                                                                                SHA1:87EAA8FCE34F162F1DCD5F3074B33C52D995C271
                                                                                                                SHA-256:53269BA641C922081275D68CAE057717F653F2F69BBFD46EEB96943B2E8B26E2
                                                                                                                SHA-512:FA6E19E520867189CB5D019EF887989A3AAA876A5A7C2D6416DAE77840D8061D2AF345E9D7892BBA068EFB613E1452744BFDB786AB5D2CE1EBBA5978D6F897E4
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: "use strict";this.default_IdentityPoliciesUi=this.default_IdentityPoliciesUi||{};(function(_){var window=this;.try{._.n("uiNkee");._.Em(_.Mo);.._.p();.._.n("IavLJc");.var Z2=function(a){_.T.call(this,a.ma);this.lf=!1;this.i=this.j=null;this.Gk=a.W.focus;this.history=a.W.history};_.w(Z2,_.T);Z2.T=function(){return{W:{focus:_.eT,history:_.Mo}}};_.h=Z2.prototype;_.h.open=function(){var a=this;if(!this.lf&&(this.lf=!0,this.update(),_.Ws(_.Xs(this).Ya(function(){_.Oh(this.iF,310,this);this.H().Ha("sMVRZe")}))(),"none"!==_.Ej(this.H().v(),"display")))try{this.history.il(void 0,void 0,function(){a.i&&a.close()}).then(function(b){a.i=b})}catch(b){}};._.h.iF=function(){_.Ws(_.Xs(this).Ya(function(){this.j=this.Gk.xf();_.fT(this.Gk,this.H())}))()};_.h.close=function(){this.lf&&(this.lf=!1,this.i&&(this.history.pop(this.i),this.i=null),_.Ws(_.Xs(this).Ya(function(){this.H().Ga("sMVRZe");_.Oh(this.sA,310,this);var a=this.H();_.As(a,".pw1uU").remove();this.j&&_.dT(this.j)}))())};_.h.sA=function(){_
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\operatordeferred_bin_base__en[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):384887
                                                                                                                Entropy (8bit):5.205892826579452
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:3072:pjHKnPmb62HMrt7sFSn0DoOa5Waz0PNHXz1pRJi/JQOrpRRZDNMTW0d3bFwI2iQC:GLZDWaGH6hQOrpRRZDaW0d3bFP29Ra
                                                                                                                MD5:EEF670736C12C5BE694280C8A1202472
                                                                                                                SHA1:2B8D569647765D881101335F28AD22646B078DBF
                                                                                                                SHA-256:63AAC514C0FD933C53067D83DC783AE51E7B742C628477A72D77583357D763D7
                                                                                                                SHA-512:B7FAFC0432AB348ED922F86C35B4ED68B1328AF2A08CDBCF48939954744384E6EC8AD1F0867A3A6E7BD37A078972AEF3B9C3871E7068783EE2983C3988E5AD8F
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://ssl.gstatic.com/support/realtime/operator/1612226769515/operatordeferred_bin_base__en.js
                                                                                                                Preview: /*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var rtsinternal_,rtsinternal_aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},rtsinternal_ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},rtsinternal_ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&.c.Math==Math)return c}throw Error("Cannot find global object");},rtsinternal_da=rtsinternal_ca(this),rtsinternal_a=function(a,b){if(b)a:{var c=rtsinternal_da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&rtsinternal_ba(c,a,{configurable:!0,writable:!0,value:b})}};.rtsinternal_a("Symbol",function(a){if(a)return a;var b=function
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\postmessageRelay[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text, with very long lines, with no line terminators
                                                                                                                Category:dropped
                                                                                                                Size (bytes):567
                                                                                                                Entropy (8bit):5.230839432777072
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:haxyErYfhVkrC9sAO4WEGwPY4MJmWmM8ytrI:haJspVkO9seW3wj+aSI
                                                                                                                MD5:E6ED0BFD45BAE9C028999D8C27F4CA1C
                                                                                                                SHA1:85BFB627EB78CAFC88EA1A091789587FBC41337A
                                                                                                                SHA-256:F760BFFCFAD3B17B0862D719EB8FEA12F15C94734AF1B613B1F8352FE5582DEC
                                                                                                                SHA-512:FCD1287BAB3187C06F11A8A63B1F50CB28AFE7AB23CB5CBB3AF7F887EDEAD1CFDD931C549B851E9F2B355EDA94386683DC1B583B1911BBF265BCCB7087002947
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!DOCTYPE html><html><head><title></title><meta http-equiv="content-type" content="text/html; charset=utf-8"><meta http-equiv="X-UA-Compatible" content="IE=edge"><meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1, maximum-scale=1, user-scalable=0"><script nonce="uFH4VMRlou5xsCTejxWNTA" src='https://ssl.gstatic.com/accounts/o/2038943760-postmessagerelay.js'></script></head><body ><script nonce="uFH4VMRlou5xsCTejxWNTA" type="text/javascript" src="https://apis.google.com/js/rpc:shindig_random.js?onload=init"></script></body></html>
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\proxy[1].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text
                                                                                                                Category:dropped
                                                                                                                Size (bytes):436
                                                                                                                Entropy (8bit):5.355534980611045
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:hYA0HqJmqGfwoy79hLFBkAAqJmPm/esHbDwop4Nbx4IQL:hYPcBqgBvPz7Dt4NW
                                                                                                                MD5:8B45E1A4B5FAF807FFEAF7B15D1F3296
                                                                                                                SHA1:FA95FE09C49A49263A4CE5AD4F44E2734A6221F8
                                                                                                                SHA-256:08B6FF1EE467B4C6093FFA8509A132CCB6F192321DC252DB802C178DC12564B9
                                                                                                                SHA-512:C5CDB67005002C32AA8631EEE80173807E9DEE9553B350A8E28AF7894CE15DDFE9E319E19203CB116F99A3866B82C3D1B2086B37EA35441A8AC8F21DEE04E989
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: <!DOCTYPE html>.<html>.<head>.<title></title>.<meta http-equiv="X-UA-Compatible" content="IE=edge" />.<script type="text/javascript" nonce="VQ12CPgInALFZ7m5HkVsDw==">. window['startup'] = function() {. googleapis.server.init();. };.</script>.<script type="text/javascript". src="https://apis.google.com/js/googleapis.proxy.js?onload=startup" async. defer nonce="VQ12CPgInALFZ7m5HkVsDw=="></script>.</head>.<body>.</body>.</html>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\proxy[2].htm
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:HTML document, ASCII text
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):436
                                                                                                                Entropy (8bit):5.28327103388349
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:12:hYA0HqJmqGfLw79hLFBkAAqJmPm/esHbjLX4Nbx4IQL:hYPcBwuBvPz73X4NW
                                                                                                                MD5:65A96D6C34180FE10095596FCCB08AD9
                                                                                                                SHA1:E38B7B2824E1CB51460F0A27613E1BABAB9E5B49
                                                                                                                SHA-256:6AC91B86366C8AF8F4C24E44DA43CEA83087FBB44CD51C45029E1F20BC0D09AB
                                                                                                                SHA-512:ADCFC237DA4D94040A7EFF730954FC600135D13E2B7497EC8D014AE8C8F5F8E605F5A4AF576850361AE9EC4DC538751FC51BF26E0471B64EA2857EE618618D13
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://scone-pa.clients6.google.com/static/proxy.html?usegapi=1&jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.gapi.en.L7mys-cL6BM.O%2Fd%3D1%2Fct%3Dzgms%2Frs%3DAHpOoo8QoBZWYtEZfsgOGqh_X1WKvJV7Wg%2Fm%3D__features__
                                                                                                                Preview: <!DOCTYPE html>.<html>.<head>.<title></title>.<meta http-equiv="X-UA-Compatible" content="IE=edge" />.<script type="text/javascript" nonce="UJ6UwolHFInS9ZjS1cowSg==">. window['startup'] = function() {. googleapis.server.init();. };.</script>.<script type="text/javascript". src="https://apis.google.com/js/googleapis.proxy.js?onload=startup" async. defer nonce="UJ6UwolHFInS9ZjS1cowSg=="></script>.</head>.<body>.</body>.</html>.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\rpc_shindig_random[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):12542
                                                                                                                Entropy (8bit):5.463869772094116
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:192:8iApwYKUa9uzv1cJJBA1pwgZCwm5Mi0+Sczle:83pw9duQJO1pUwmR0+Scxe
                                                                                                                MD5:C040F26CDE55C1FDAE194D59A3F0D116
                                                                                                                SHA1:BADDFD319108081F4F4F4789E44615ABAAD1BB6D
                                                                                                                SHA-256:11657D06995B4AC167D7006AEAD184C36293854D25F4EF4615AAE990EB89EA21
                                                                                                                SHA-512:F20B482E06DB3AB5156C4CEF05E404FE941628232F96EA13C8EDF67BD517153776BB34C199F8D9BCC344D98BA577ED7BBD60DC5C314752229B275D23603F4D94
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://apis.google.com/js/rpc:shindig_random.js?onload=init
                                                                                                                Preview: var gapi=window.gapi=window.gapi||{};gapi._bs=new Date().getTime();(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var g=this||self,h=function(a){return a};/*. gapi.loader.OBJECT_CREATE_TEST_OVERRIDE &&*/.var m=window,n=document,aa=m.location,ba=function(){},ca=/\[native code\]/,q=function(a,b,c){return a[b]=a[b]||c},da=function(a){a=a.sort();for(var b=[],c=void 0,d=0;d<a.length;d++){var e=a[d];e!=c&&b.push(e);c=e}return b},v=function(){var a;if((a=Object.create)&&ca.test(a))a=a(null);else{a={};for(var b in a)a[b]=void 0}return a},x=q(m,"gapi",{});var C;C=q(m,"___jsl",v());q(C,"I",0);q(C,"hel",10);var D=function(){var a=aa.href;if(C.dpo)var b=C.h;else{b=C.h;var c=/([#].*&|[#])jsh=([^&#]*)/g,d=/([?#].*&|[?#])jsh=([^&#]*)/g;if(a=a&&(c.exec(a)||d.exec(a)))try{b=decodeURIComponent(a[2])}catch(e){}}return b},fa=function(a){var b=q(C,"PQ",[]);C.PQ=[];var c=b.length;if(0===c)a();else for(var d=0,e=function(){++d===c&&a()},f=0;f<c;f++)b[f](e)},E=
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\rs=AA2YrTu6BO2xi0U_VDOlpXjo7ITaxldXIQ[1].js
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:ASCII text, with very long lines
                                                                                                                Category:dropped
                                                                                                                Size (bytes):96014
                                                                                                                Entropy (8bit):5.561673402927639
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:1536:6fCy7gyA0XUwv4fHbdExlHKKDa6QhyO6uDrsxdP40n:ikP0XGHUlHb/yrsxV
                                                                                                                MD5:A90F34C41098BDE8F3E45F8B7A26236E
                                                                                                                SHA1:CF050204F1E78A5CFC7B855AD74702F77DEB6DB2
                                                                                                                SHA-256:27A776A64959767DEE9D96DB957921AA39CADF7967AE8A90B421EFB5B53DFA4D
                                                                                                                SHA-512:859F88A7E42AD81010B187026CD52262AE189C5EE7C67821BC5F698A8F0ACD45127F3064E0B63F9E69AC2F31DC07DE5189A5ABF2E7271A38105BD214BA247517
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: this.gbar_=this.gbar_||{};(function(_){var window=this;.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Oj=function(a){switch(a){case 200:case 201:case 202:case 204:case 206:case 304:case 1223:return!0;default:return!1}};._.Pj=function(){};_.Pj.prototype.o=null;.var Rj;Rj=function(){};_.x(Rj,_.Pj);Rj.prototype.j=function(){var a=Sj(this);return a?new ActiveXObject(a):new XMLHttpRequest};Rj.prototype.B=function(){var a={};Sj(this)&&(a[0]=!0,a[1]=!0);return a};var Sj=function(a){if(!a.A&&"undefined"==typeof XMLHttpRequest&&"undefined"!=typeof ActiveXObject){for(var b=["MSXML2.XMLHTTP.6.0","MSXML2.XMLHTTP.3.0","MSXML2.XMLHTTP","Microsoft.XMLHTTP"],c=0;c<b.length;c++){var d=b[c];try{return new ActiveXObject(d),a.A=d}catch(e){}}throw Error("U");}return a.A};._.Qj=new Rj;..}catch(e){_._DumpException(e)}.try{./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/._.Tj=function(a,b,c){a.j||(a.j={});if(!a.j[c]){for(var d=_.
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\unnamed[1].png
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):1393
                                                                                                                Entropy (8bit):7.741695342683955
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:D/6Bm17qS9DbPDQ45Gkds4VbbBYdVATpFxb+hs3xl0Sau164l2kFSWZR2vtUx2lH:D/6BmIG7hdbYdVules3xla+64l9wxVUo
                                                                                                                MD5:0EAA75E84E3B5D76E26B5BDEF873465E
                                                                                                                SHA1:79DAEA62FA0952E79644B23305210D61B6CBB631
                                                                                                                SHA-256:D375701BEED766135440CC65BD4CEDE9CC455C0116A362E124C3C2158EDCEFF4
                                                                                                                SHA-512:EE117EEF8002ABEF55C7521FDF265C597226994BDD4EDDF9965E22E1FBA4D8526544A6427F847C2BEA3B586B3E4C06BEB6584D1CCEF5A06AD4739CAF837DB7EB
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://lh3.googleusercontent.com/o9U8AvPuX9gkIYtYfNmH-_wBdTfOJ7jb0VwbLWWbERzml7oTPngODhKv2Br7A64=w64
                                                                                                                Preview: .PNG........IHDR...@...@......iq.....pHYs.................tEXtSoftware.Adobe ImageReadyq.e<....IDATx..[;l.A..;1!@.@......@" ....44|KD.......E..(A"....ih ...@.H..B..)............>{w{...H..n.;;og.vfw..T.YM....^.m`...b.0.....V..^\....`Jo..B.-..}....F...)..wq..<6........5.L.a.a.q.}.."...J...g..*..FZ.....4m.4.*.n..i.g.8............3...w./:..Be....r.T%.0......g5..v.:..X.r.V..?...c_3.J...u ........da....).c.3p(...T.l.E..3....Q.9.R7{...'...MTQ. ..@...R.....j:up....j...w#?...|.n.}E.........Q:.Q.._..n....W.Q...x.:.X...aU.....o;../4MS..P...Z....%...a.V...S...x...B..FfL{g....%'^......kd.C.U..7.;.....@{.|.+K.o.0+;.........\%..,qA...(...@......."Gdd..^..C..c.w..S[.P....`......B^....~.c.'t...4 ...P..I$.....,.-.....Z.^..\M.....d.`...TV.LC.....`..H.....KYYB..,......o.../.|v...d.Y......H.....q..Bq/. 09...7.@....."."n.".d..:'..r...x..F.O......m.i....}.....SS.'g7...|1..d.dA........:T._..>.t....M...A..$....vN[.#..|..7...,.J.."w...D.v4..F2..?}..@.mclf>w+...h.m..
                                                                                                                C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\unnamed[2].png
                                                                                                                Process:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                File Type:PNG image data, 72 x 72, 8-bit/color RGBA, non-interlaced
                                                                                                                Category:downloaded
                                                                                                                Size (bytes):3279
                                                                                                                Entropy (8bit):7.715641786855708
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:48:yqQvnLtkzdjmJJ3hAk+dJa9XrVmdGeNXCZ4o6w+Zv4lUWVV4c/952ql7mHiGJ4JU:7Q89mek+dJjnXno/++WSx1Vc/KWoxO/
                                                                                                                MD5:039E5B669C976EAA7569F9FA8ED813BE
                                                                                                                SHA1:1B5E33D16FC2A26B9318DFEAD0FEC938C5A0C98F
                                                                                                                SHA-256:265FE691B1687E0D18A34D33B5958C1A72E4CCB7D90BF3C70311B6DD4BAE13B6
                                                                                                                SHA-512:D9E8934419FC9E0A34CCDE0EEE3D8BC5435A95C4A72D50F9F8F1B3063C54AC6DB97E30B68ED8CD8CB37B5B73AD7400DC6585864E349B0893210B6152F08485D3
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                IE Cache URL:https://lh4.ggpht.com/WnIr0x3yhEpMTqI4DCrI_ZOc9vdK_yV0WPig_suRjHQCv4B-2CmQoQu3nE-Eo7_MZ-yZQbq30w=w72
                                                                                                                Preview: .PNG........IHDR...H...H.....U.G....tEXtSoftware.Adobe ImageReadyq.e<...hiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:0180117407206811822ABF5C578297F4" xmpMM:DocumentID="xmp.did:FAD30A79931D11E290ACA48D7B31C326" xmpMM:InstanceID="xmp.iid:FAD30A78931D11E290ACA48D7B31C326" xmp:CreatorTool="Adobe Photoshop CS6 (Macintosh)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0180117407206811822ABF5C578297F4" stRef:documentID="xmp.did:0180117407206811822ABF5C578297F4"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>*.P=....IDATx..[l....?J.....4.l'..Rb..f]..-.(Z
                                                                                                                C:\Users\user\AppData\Local\Temp\~DF0544450210876992.TMP
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:data
                                                                                                                Category:dropped
                                                                                                                Size (bytes):141231
                                                                                                                Entropy (8bit):2.1144022339261173
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:384:kBqoxKAuqR+lLpY79G6GKGl5VGYdGeAzvdFrjARyWGYdGeAzUdFrjiJvquIlkGnZ:N56F/+5xF/jl
                                                                                                                MD5:E5593826842D89C8F941059979C4B718
                                                                                                                SHA1:A1AF2175D68C43D3FB74A1808EA24545DE0C60CC
                                                                                                                SHA-256:E9004B046A7252D37E35C98B03702B705215F75EC7C8AE22EAE06F280080ADCC
                                                                                                                SHA-512:4DBD18A42228E95CB883F37741CBE71219CDE738DE1A321EF380FAD0BE3378D50708A8405FC53E32054D3AD06A0B001B06351311F1818ADD23167F05B7A3D6FE
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: .............................*%..H..M..{y..+.0...(................... ...............................................*%..H..M..{y..+.0...(................... ..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                C:\Users\user\AppData\Local\Temp\~DF15D787BCCB657D02.TMP
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:data
                                                                                                                Category:dropped
                                                                                                                Size (bytes):25441
                                                                                                                Entropy (8bit):0.9317762822572141
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:96:kBqoxDhHWSVSE+JbF1qRuVlzaxG5dMsQLevrk:kBqoxDhHjgE+JF8G75ysQLevI
                                                                                                                MD5:A2716C66D7BF38EE2A9044583781847E
                                                                                                                SHA1:325ED2A5199394D8F4494C797BB076A0246B73CF
                                                                                                                SHA-256:01A45EA975AE359D38CE89A3FAEE03377768B56DA55DA9F71FB6BC6F77D1FBEC
                                                                                                                SHA-512:D45729BDCA51871980B2D2D06F22108700CF861BEEEAD26C2065FBD2329EC407F0042B286B752F2EAE5D9A719C514D0D3344F074C6D1070C1ED57905A591B187
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: .............................*%..H..M..{y..+.0...(................... ...............................................*%..H..M..{y..+.0...(................... ..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                C:\Users\user\AppData\Local\Temp\~DF7BC35B70B757F035.TMP
                                                                                                                Process:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                File Type:data
                                                                                                                Category:dropped
                                                                                                                Size (bytes):13029
                                                                                                                Entropy (8bit):0.47943319725295064
                                                                                                                Encrypted:false
                                                                                                                SSDEEP:24:c9lLh9lLh9lIn9lIn9loe9loO9lWdegQYe:kBqoI5PdKt
                                                                                                                MD5:8BE4A1760BE387FBFE7FF99B6176D99F
                                                                                                                SHA1:105596851B09DB46D6D2B73845C2E827C3BAFEBB
                                                                                                                SHA-256:AD903B9453BDA561C4DF7CEBFAAD6DE226BBFA88952B93F1B3AF9F6B4FC4E9A1
                                                                                                                SHA-512:FA14990E75F7B8D236C7296273926F2CA6BD149A7F06984302BFA45F4C21303974FDB7F38875DB4C178DA7B4621F85FB13DF2E33B3704AD6D5330E8DB4B3D00E
                                                                                                                Malicious:false
                                                                                                                Reputation:low
                                                                                                                Preview: .............................*%..H..M..{y..+.0...(................... ...............................................*%..H..M..{y..+.0...(................... ..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................

                                                                                                                Static File Info

                                                                                                                No static file info

                                                                                                                Network Behavior

                                                                                                                Download Network PCAP: filteredfull

                                                                                                                Network Port Distribution

                                                                                                                • Total Packets: 138
                                                                                                                • 443 (HTTPS)
                                                                                                                • 53 (DNS)
                                                                                                                TimestampSource PortDest PortSource IPDest IP
                                                                                                                Feb 2, 2021 22:50:23.213823080 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.214237928 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.258228064 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.258327961 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.258631945 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.258725882 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.259022951 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.259294033 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.303261995 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.303781986 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317008018 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317049980 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317086935 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317094088 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317111969 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317164898 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317166090 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317235947 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317678928 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317718029 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317781925 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317826033 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317886114 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317934036 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.317950010 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.317990065 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.325614929 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.325742960 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.326118946 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.326255083 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.326378107 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368298054 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368330002 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368359089 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368386030 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368393898 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368412971 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368429899 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368463039 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368470907 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368489981 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.368550062 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.368613958 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.369029999 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.369534969 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.374691963 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.388104916 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.388143063 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.388166904 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.388180017 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.388212919 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.388225079 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.388814926 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:23.416349888 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.417442083 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.431181908 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.775520086 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.818068981 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.818708897 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.818753004 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.818799973 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.818826914 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.820285082 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.820364952 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.820405006 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:25.820466995 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.820702076 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:50:25.868506908 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.598181009 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.598386049 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.642047882 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.642086983 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.642153978 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.642208099 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.649060011 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.649509907 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.691625118 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.691826105 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705354929 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705427885 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705437899 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705467939 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705497026 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705497980 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705527067 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705528021 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705543995 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705549955 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705575943 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705600023 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.705668926 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705710888 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705718040 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.705722094 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.710179090 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.715091944 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.724502087 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.727318048 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.727396011 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.752697945 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.752753973 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.752763033 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.752830029 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.753544092 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.757683039 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.757695913 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.757772923 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.762653112 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.766856909 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.766944885 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.769706011 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.769768953 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.771014929 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.771047115 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.771071911 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.771100044 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.771100998 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.771117926 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.771164894 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.773129940 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.773202896 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.774101019 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:50:26.802237988 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.811449051 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.818358898 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:51:52.483103991 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:51:52.483165979 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:51:52.483881950 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:51:52.483954906 CET49770443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:51:52.525537968 CET44349783172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:51:52.525620937 CET44349784172.217.23.33192.168.2.4
                                                                                                                Feb 2, 2021 22:51:52.525677919 CET49783443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:51:52.525779009 CET49784443192.168.2.4172.217.23.33
                                                                                                                Feb 2, 2021 22:51:52.526201010 CET44349769172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:51:52.526268959 CET49769443192.168.2.4172.217.23.1
                                                                                                                Feb 2, 2021 22:51:52.526334047 CET44349770172.217.23.1192.168.2.4
                                                                                                                Feb 2, 2021 22:51:52.526408911 CET49770443192.168.2.4172.217.23.1
                                                                                                                TimestampSource PortDest PortSource IPDest IP
                                                                                                                Feb 2, 2021 22:49:56.662848949 CET53623898.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:49:57.747172117 CET4991053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:49:57.801522017 CET53499108.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:49:58.898664951 CET5585453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:49:58.949534893 CET53558548.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:00.290839911 CET6454953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:00.347248077 CET53645498.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:01.458072901 CET6315353192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:01.507910967 CET53631538.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:01.799998045 CET5299153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:01.858136892 CET53529918.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:02.855739117 CET5370053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:02.921989918 CET53537008.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:03.266736031 CET5172653192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:03.316227913 CET53517268.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:03.474191904 CET5679453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:03.551466942 CET53567948.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:05.913939953 CET5653453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:05.975327969 CET53565348.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:06.321080923 CET5662753192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:06.362256050 CET5662153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:06.390336990 CET53566278.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:06.431354046 CET53566218.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:06.499382973 CET6311653192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:06.547961950 CET53631168.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:06.557163000 CET6407853192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:06.621822119 CET53640788.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:06.761693954 CET6480153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:06.817953110 CET53648018.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:07.536243916 CET6172153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:07.585897923 CET53617218.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:08.520484924 CET5125553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:08.576889038 CET53512558.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:09.642009020 CET6152253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:09.694458961 CET53615228.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:11.117877960 CET5233753192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:11.165833950 CET53523378.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:12.265392065 CET5504653192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:12.324850082 CET53550468.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:13.480282068 CET4961253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:13.529619932 CET53496128.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:14.432838917 CET4928553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:14.490284920 CET53492858.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:20.710501909 CET5060153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:20.758409977 CET53506018.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:22.399463892 CET6087553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:22.419193983 CET5644853192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:22.466548920 CET53608758.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:22.466979980 CET53564488.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.132354021 CET5917253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:23.140382051 CET6242053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:23.169994116 CET6057953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:23.188909054 CET53591728.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.197722912 CET5018353192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:23.204889059 CET53624208.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.230268955 CET53605798.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.264319897 CET53501838.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:23.636205912 CET6153153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:23.705059052 CET53615318.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:24.021581888 CET4922853192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:24.099531889 CET53492288.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:24.527245045 CET5979453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:24.553634882 CET5591653192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:24.594561100 CET53597948.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:24.620857954 CET53559168.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.530728102 CET5275253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:26.595278025 CET53527528.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:26.638345957 CET6054253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:26.697680950 CET53605428.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:28.295211077 CET6068953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:28.361603022 CET53606898.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:29.702359915 CET6420653192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:29.784089088 CET53642068.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:30.743258953 CET5090453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:30.808969975 CET53509048.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:31.811558962 CET5752553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:31.859385967 CET53575258.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:32.452704906 CET5381453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:32.500559092 CET53538148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:32.813869953 CET5752553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:32.864036083 CET53575258.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:33.456764936 CET5381453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:33.504842043 CET53538148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:33.816652060 CET5752553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:33.873110056 CET53575258.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:34.476667881 CET5381453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:34.525850058 CET53538148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:35.820791960 CET5752553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:35.877087116 CET53575258.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:36.480973005 CET5381453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:36.529036999 CET53538148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:39.825187922 CET5752553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:39.873312950 CET53575258.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:40.485200882 CET5381453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:40.535768986 CET53538148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:45.360912085 CET5341853192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:45.417321920 CET53534188.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:53.703392982 CET6283353192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:53.797813892 CET53628338.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:54.503407955 CET5926053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:54.564364910 CET53592608.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:55.137763023 CET4994453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:55.196114063 CET53499448.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:55.579144001 CET6330053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:55.637605906 CET53633008.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:56.062077045 CET6144953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:56.121301889 CET53614498.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:56.895664930 CET5127553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:56.954842091 CET53512758.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:50:58.664849043 CET6349253192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:50:58.726217031 CET53634928.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:00.249039888 CET5894553192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:00.296968937 CET53589458.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:01.222898960 CET6077953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:01.280757904 CET53607798.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:01.663351059 CET6401453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:01.713932991 CET53640148.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:01.830497980 CET5709153192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:01.904824972 CET53570918.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:17.243921995 CET5590453192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:17.303464890 CET53559048.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:57.178709030 CET5210953192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:57.226859093 CET53521098.8.8.8192.168.2.4
                                                                                                                Feb 2, 2021 22:51:58.709620953 CET5445053192.168.2.48.8.8.8
                                                                                                                Feb 2, 2021 22:51:58.760354042 CET53544508.8.8.8192.168.2.4
                                                                                                                TimestampSource IPDest IPTrans IDOP CodeNameTypeClass
                                                                                                                Feb 2, 2021 22:50:06.362256050 CET192.168.2.48.8.8.80x903aStandard query (0)accounts.youtube.comA (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:23.140382051 CET192.168.2.48.8.8.80x3df2Standard query (0)lh3.googleusercontent.comA (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:26.530728102 CET192.168.2.48.8.8.80xa5c9Standard query (0)lh4.ggpht.comA (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:26.638345957 CET192.168.2.48.8.8.80xedc3Standard query (0)www.youtube.comA (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:29.702359915 CET192.168.2.48.8.8.80x6aaaStandard query (0)www.youtube-nocookie.comA (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:30.743258953 CET192.168.2.48.8.8.80xb5fcStandard query (0)s.ytimg.comA (IP address)IN (0x0001)
                                                                                                                TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClass
                                                                                                                Feb 2, 2021 22:50:06.431354046 CET8.8.8.8192.168.2.40x903aNo error (0)accounts.youtube.comwww3.l.google.comCNAME (Canonical name)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:23.204889059 CET8.8.8.8192.168.2.40x3df2No error (0)lh3.googleusercontent.comgooglehosted.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:23.204889059 CET8.8.8.8192.168.2.40x3df2No error (0)googlehosted.l.googleusercontent.com172.217.23.1A (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:26.595278025 CET8.8.8.8192.168.2.40xa5c9No error (0)lh4.ggpht.comphotos-ugc.l.googleusercontent.comCNAME (Canonical name)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:26.595278025 CET8.8.8.8192.168.2.40xa5c9No error (0)photos-ugc.l.googleusercontent.com172.217.23.33A (IP address)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:26.697680950 CET8.8.8.8192.168.2.40xedc3No error (0)www.youtube.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:29.784089088 CET8.8.8.8192.168.2.40x6aaaNo error (0)www.youtube-nocookie.comyoutube-ui.l.google.comCNAME (Canonical name)IN (0x0001)
                                                                                                                Feb 2, 2021 22:50:30.808969975 CET8.8.8.8192.168.2.40xb5fcNo error (0)s.ytimg.com172.217.23.46A (IP address)IN (0x0001)
                                                                                                                TimestampSource IPSource PortDest IPDest PortSubjectIssuerNot BeforeNot AfterJA3 SSL Client FingerprintJA3 SSL Client Digest
                                                                                                                Feb 2, 2021 22:50:23.317166090 CET172.217.23.1443192.168.2.449769CN=*.googleusercontent.com, O=Google LLC, L=Mountain View, ST=California, C=US CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GTS CA 1O1, O=Google Trust Services, C=US CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Tue Jan 05 13:11:08 CET 2021 Thu Jun 15 02:00:42 CEST 2017Tue Mar 30 14:11:07 CEST 2021 Wed Dec 15 01:00:42 CET 2021771,49196-49195-49200-49199-49188-49187-49192-49191-49162-49161-49172-49171-157-156-61-60-53-47-10,0-10-11-13-35-16-23-24-65281,29-23-24,09e10692f1b7f78228b2d4e424db3a98c
                                                                                                                CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Thu Jun 15 02:00:42 CEST 2017Wed Dec 15 01:00:42 CET 2021
                                                                                                                Feb 2, 2021 22:50:23.317934036 CET172.217.23.1443192.168.2.449770CN=*.googleusercontent.com, O=Google LLC, L=Mountain View, ST=California, C=US CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GTS CA 1O1, O=Google Trust Services, C=US CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Tue Jan 05 13:11:08 CET 2021 Thu Jun 15 02:00:42 CEST 2017Tue Mar 30 14:11:07 CEST 2021 Wed Dec 15 01:00:42 CET 2021771,49196-49195-49200-49199-49188-49187-49192-49191-49162-49161-49172-49171-157-156-61-60-53-47-10,0-10-11-13-35-16-23-24-65281,29-23-24,09e10692f1b7f78228b2d4e424db3a98c
                                                                                                                CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Thu Jun 15 02:00:42 CEST 2017Wed Dec 15 01:00:42 CET 2021
                                                                                                                Feb 2, 2021 22:50:26.705497980 CET172.217.23.33443192.168.2.449783CN=*.googleusercontent.com, O=Google LLC, L=Mountain View, ST=California, C=US CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GTS CA 1O1, O=Google Trust Services, C=US CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Tue Jan 05 13:11:08 CET 2021 Thu Jun 15 02:00:42 CEST 2017Tue Mar 30 14:11:07 CEST 2021 Wed Dec 15 01:00:42 CET 2021771,49196-49195-49200-49199-49188-49187-49192-49191-49162-49161-49172-49171-157-156-61-60-53-47-10,0-10-11-13-35-16-23-24-65281,29-23-24,09e10692f1b7f78228b2d4e424db3a98c
                                                                                                                CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Thu Jun 15 02:00:42 CEST 2017Wed Dec 15 01:00:42 CET 2021
                                                                                                                Feb 2, 2021 22:50:26.705600023 CET172.217.23.33443192.168.2.449784CN=*.googleusercontent.com, O=Google LLC, L=Mountain View, ST=California, C=US CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GTS CA 1O1, O=Google Trust Services, C=US CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Tue Jan 05 13:11:08 CET 2021 Thu Jun 15 02:00:42 CEST 2017Tue Mar 30 14:11:07 CEST 2021 Wed Dec 15 01:00:42 CET 2021771,49196-49195-49200-49199-49188-49187-49192-49191-49162-49161-49172-49171-157-156-61-60-53-47-10,0-10-11-13-35-16-23-24-65281,29-23-24,09e10692f1b7f78228b2d4e424db3a98c
                                                                                                                CN=GTS CA 1O1, O=Google Trust Services, C=USCN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2Thu Jun 15 02:00:42 CEST 2017Wed Dec 15 01:00:42 CET 2021

                                                                                                                Code Manipulations

                                                                                                                Statistics

                                                                                                                CPU Usage

                                                                                                                050100s020406080100

                                                                                                                Click to jump to process

                                                                                                                Memory Usage

                                                                                                                050100s0.00100200300MB

                                                                                                                Click to jump to process

                                                                                                                Behavior

                                                                                                                Click to jump to process

                                                                                                                System Behavior

                                                                                                                Start time:22:50:00
                                                                                                                Start date:02/02/2021
                                                                                                                Path:C:\Program Files\internet explorer\iexplore.exe
                                                                                                                Wow64 process (32bit):false
                                                                                                                Commandline:'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding
                                                                                                                Imagebase:0x7ff75ea40000
                                                                                                                File size:823560 bytes
                                                                                                                MD5 hash:6465CB92B25A7BC1DF8E01D8AC5E7596
                                                                                                                Has elevated privileges:true
                                                                                                                Has administrator privileges:true
                                                                                                                Programmed in:C, C++ or other language
                                                                                                                Reputation:low
                                                                                                                Start time:22:50:01
                                                                                                                Start date:02/02/2021
                                                                                                                Path:C:\Program Files (x86)\Internet Explorer\iexplore.exe
                                                                                                                Wow64 process (32bit):true
                                                                                                                Commandline:'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6880 CREDAT:17410 /prefetch:2
                                                                                                                Imagebase:0x1110000
                                                                                                                File size:822536 bytes
                                                                                                                MD5 hash:071277CC2E3DF41EEEA8013E2AB58D5A
                                                                                                                Has elevated privileges:true
                                                                                                                Has administrator privileges:true
                                                                                                                Programmed in:C, C++ or other language
                                                                                                                Reputation:low

                                                                                                                Disassembly