Loading ...

Play interactive tourEdit tour

Windows Analysis Report https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b

Overview

General Information

Sample URL:https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b
Analysis ID:310

Most interesting Screenshot:

Detection

HTMLPhisher
Score:60
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Phishing site detected (based on favicon image match)
Yara detected HtmlPhish10
Phishing site detected (based on image similarity)
HTML body contains low number of good links
No HTML title found

Classification

Process Tree

  • System is start
  • chrome.exe (PID: 4808 cmdline: 'C:\Program Files\Google\Chrome\Application\chrome.exe' --start-maximized --enable-automation --single-argument https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b MD5: 74859601FB4BEEA84B40D874CCB56CAB)
    • chrome.exe (PID: 7728 cmdline: 'C:\Program Files\Google\Chrome\Application\chrome.exe' --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1728,18189082124331601565,14472081177511988843,131072 --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2136 /prefetch:8 MD5: 74859601FB4BEEA84B40D874CCB56CAB)
  • cleanup

Yara Overview

No yara matches

Sigma Overview

No Sigma rule has matched

Jbx Signature Overview

Click to jump to signature section

Show All Signature Results

Phishing:

barindex
Phishing site detected (based on favicon image match)Show sources
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Template: microsoft matched with high similarity
Yara detected HtmlPhish10Show sources
Source: Yara matchFile source: 25037.1.pages.csv, type: HTML
Phishing site detected (based on image similarity)Show sources
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 99141.2.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 99141.2.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 25037.1.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlMatcher: Found strong image similarity, brand: Microsoft image: 99141.2.img.2.gfk.csv EE5C8D9FB6248C938FD0DC19370E90BD
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: Number of links: 0
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: Number of links: 0
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: HTML title missing
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: HTML title missing
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: No <meta name="author".. found
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: No <meta name="author".. found
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: No <meta name="copyright".. found
Source: https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmlHTTP Parser: No <meta name="copyright".. found
Source: unknownHTTPS traffic detected: 151.101.193.26:443 -> 192.168.2.3:56465 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.227.222.102:443 -> 192.168.2.3:62171 version: TLS 1.2
Source: chrome.exeMemory has grown: Private usage: 1MB later: 22MB
Source: unknownDNS traffic detected: queries for: clients2.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 55233 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62240
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 57328
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50691
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 57328 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63499 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 52063 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50094 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58300
Source: unknownNetwork traffic detected: HTTP traffic on port 56290 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55233
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 54067
Source: unknownNetwork traffic detected: HTTP traffic on port 58347 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 54793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61982
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 64579
Source: unknownNetwork traffic detected: HTTP traffic on port 55041 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62171
Source: unknownNetwork traffic detected: HTTP traffic on port 59835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50691 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 54241 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58028
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58347
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 59835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55041
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 54793
Source: unknownNetwork traffic detected: HTTP traffic on port 55566 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 56290
Source: unknownNetwork traffic detected: HTTP traffic on port 59257 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 56465 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62240 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63499
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 58044 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 53785
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49560
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 54712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55566
Source: unknownNetwork traffic detected: HTTP traffic on port 58576 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 59257
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58322
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 56465
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 54241
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58044
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 52063
Source: unknownNetwork traffic detected: HTTP traffic on port 53785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 58322 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61982 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 54067 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 58028 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 61139 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 58378 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51618
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50241
Source: unknownNetwork traffic detected: HTTP traffic on port 49560 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 64579 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51618 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50241 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61139
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58378
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 58576
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50094
Source: unknownNetwork traffic detected: HTTP traffic on port 62171 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 54712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 58300 -> 443
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 20.67.183.221
Source: unknownTCP traffic detected without corresponding DNS query: 20.67.183.221
Source: unknownTCP traffic detected without corresponding DNS query: 20.67.183.221
Source: unknownTCP traffic detected without corresponding DNS query: 93.184.220.29
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownHTTPS traffic detected: 151.101.193.26:443 -> 192.168.2.3:56465 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.227.222.102:443 -> 192.168.2.3:62171 version: TLS 1.2
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\alfredo\AppData\Local\Temp\bcfd68f0-d669-4cf8-9694-3f5fac4fdb71.tmp
Source: classification engineClassification label: mal60.phis.win@28/170@21/268
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe 'C:\Program Files\Google\Chrome\Application\chrome.exe' --start-maximized --enable-automation --single-argument https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe 'C:\Program Files\Google\Chrome\Application\chrome.exe' --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1728,18189082124331601565,14472081177511988843,131072 --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2136 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-611C88E4-12C8.pma
Source: Window RecorderWindow detected: More than 3 window changes detected

Mitre Att&ck Matrix

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
Valid AccountsWindows Management InstrumentationPath InterceptionProcess Injection1Masquerading1OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local SystemExfiltration Over Other Network MediumEncrypted Channel2Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization ScriptsExtra Window Memory Injection1Process Injection1LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable MediaExfiltration Over BluetoothNon-Application Layer Protocol1Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)Extra Window Memory Injection1Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared DriveAutomated ExfiltrationApplication Layer Protocol2Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data

Screenshots

Thumbnails

This section contains all screenshots as thumbnails, including those not shown in the slideshow.

windows-stand

Antivirus, Machine Learning and Genetic Malware Detection

Initial Sample

SourceDetectionScannerLabelLink
https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b0%Avira URL Cloudsafe

Dropped Files

No Antivirus matches

Unpacked PE Files

No Antivirus matches

Domains

No Antivirus matches

URLs

No Antivirus matches

Domains and IPs

Contacted Domains

NameIPActiveMaliciousAntivirus DetectionReputation
stackpath.bootstrapcdn.com
104.18.10.207
truefalse
    high
    polyfill.map.fastly.net
    151.101.193.26
    truefalse
      unknown
      stt.nimbusweb.me
      216.239.36.21
      truefalse
        unknown
        accounts.google.com
        142.250.185.109
        truefalse
          high
          www-google-analytics.l.google.com
          142.250.185.238
          truefalse
            high
            stats.l.doubleclick.net
            64.233.167.156
            truefalse
              high
              sedrftgyh.nimbusweb.me
              13.224.96.70
              truefalse
                unknown
                www-googletagmanager.l.google.com
                142.250.185.136
                truefalse
                  high
                  text.nimbusweb.me
                  13.224.96.127
                  truefalse
                    unknown
                    afpuertos.com
                    185.50.196.125
                    truefalse
                      unknown
                      s3.us-east.cloud-object-storage.appdomain.cloud
                      169.63.118.98
                      truefalse
                        unknown
                        cdnjs.cloudflare.com
                        104.16.18.94
                        truefalse
                          high
                          www.google.co.uk
                          142.250.185.99
                          truefalse
                            unknown
                            www.google.com
                            142.250.185.228
                            truefalse
                              high
                              clients.l.google.com
                              142.250.185.238
                              truefalse
                                high
                                googlehosted.l.googleusercontent.com
                                142.250.184.193
                                truefalse
                                  high
                                  dojq4kt8ws9iq.cloudfront.net
                                  65.9.73.10
                                  truefalse
                                    high
                                    onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud
                                    unknown
                                    unknownfalse
                                      unknown
                                      g.live.com
                                      unknown
                                      unknownfalse
                                        high
                                        stats.g.doubleclick.net
                                        unknown
                                        unknownfalse
                                          high
                                          clients2.googleusercontent.com
                                          unknown
                                          unknownfalse
                                            high
                                            cdn.polyfill.io
                                            unknown
                                            unknownfalse
                                              high
                                              clients2.google.com
                                              unknown
                                              unknownfalse
                                                high

                                                Contacted URLs

                                                NameMaliciousAntivirus DetectionReputation
                                                https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6btrue
                                                  unknown
                                                  https://onedrivesecurefiles.s3.us-east.cloud-object-storage.appdomain.cloud/index.htmltrue
                                                    unknown

                                                    Contacted IPs

                                                    • No. of IPs < 25%
                                                    • 25% < No. of IPs < 50%
                                                    • 50% < No. of IPs < 75%
                                                    • 75% < No. of IPs

                                                    Public

                                                    IPDomainCountryFlagASNASN NameMalicious
                                                    142.250.185.109
                                                    accounts.google.comUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.99
                                                    www.google.co.ukUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.228
                                                    www.google.comUnited States
                                                    15169GOOGLEUSfalse
                                                    64.233.167.156
                                                    stats.l.doubleclick.netUnited States
                                                    15169GOOGLEUSfalse
                                                    104.18.10.207
                                                    stackpath.bootstrapcdn.comUnited States
                                                    13335CLOUDFLARENETUSfalse
                                                    172.217.16.138
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.74.206
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.163
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    216.239.36.21
                                                    stt.nimbusweb.meUnited States
                                                    15169GOOGLEUSfalse
                                                    104.16.18.94
                                                    cdnjs.cloudflare.comUnited States
                                                    13335CLOUDFLARENETUSfalse
                                                    13.224.96.70
                                                    sedrftgyh.nimbusweb.meUnited States
                                                    16509AMAZON-02USfalse
                                                    185.50.196.125
                                                    afpuertos.comSpain
                                                    39020COMVIVE-ASSeville-SpainESfalse
                                                    13.224.96.127
                                                    text.nimbusweb.meUnited States
                                                    16509AMAZON-02USfalse
                                                    151.101.193.26
                                                    polyfill.map.fastly.netUnited States
                                                    54113FASTLYUSfalse
                                                    142.250.184.193
                                                    googlehosted.l.googleusercontent.comUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.186.163
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.234
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.238
                                                    www-google-analytics.l.google.comUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.136
                                                    www-googletagmanager.l.google.comUnited States
                                                    15169GOOGLEUSfalse
                                                    104.18.11.207
                                                    unknownUnited States
                                                    13335CLOUDFLARENETUSfalse
                                                    142.250.185.170
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    65.9.73.10
                                                    dojq4kt8ws9iq.cloudfront.netUnited States
                                                    16509AMAZON-02USfalse
                                                    169.63.118.98
                                                    s3.us-east.cloud-object-storage.appdomain.cloudUnited States
                                                    36351SOFTLAYERUSfalse
                                                    173.194.182.200
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    239.255.255.250
                                                    unknownReserved
                                                    unknownunknownfalse
                                                    169.254.68.153
                                                    unknownReserved
                                                    6966USDOSUSfalse
                                                    216.58.212.163
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    142.250.185.74
                                                    unknownUnited States
                                                    15169GOOGLEUSfalse
                                                    104.16.19.94
                                                    unknownUnited States
                                                    13335CLOUDFLARENETUSfalse

                                                    Private

                                                    IP
                                                    192.168.2.1
                                                    192.168.2.3
                                                    127.0.0.1

                                                    General Information

                                                    Joe Sandbox Version:33.0.0 White Diamond
                                                    Analysis ID:310
                                                    Start date:17.08.2021
                                                    Start time:21:12:52
                                                    Joe Sandbox Product:CloudBasic
                                                    Hypervisor based Inspection enabled:false
                                                    Report type:full
                                                    Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                    Sample URL:https://sedrftgyh.nimbusweb.me/s/share/5928796/cv88w6gylrhq6sg1zy6b
                                                    Number of analysed new started processes analysed:16
                                                    Number of new started drivers analysed:0
                                                    Number of existing processes analysed:0
                                                    Number of existing drivers analysed:0
                                                    Number of injected processes analysed:0
                                                    Technologies:
                                                    • EGA enabled
                                                    Analysis Mode:stream
                                                    Detection:MAL
                                                    Classification:mal60.phis.win@28/170@21/268
                                                    Warnings:
                                                    Show All
                                                    • Exclude process from analysis (whitelisted): MpCmdRun.exe, BackgroundTransferHost.exe, CompPkgSrv.exe
                                                    • Excluded IPs from analysis (whitelisted): 20.190.160.134, 20.190.160.136, 20.190.160.4, 20.190.160.71, 20.190.160.73, 20.190.160.132, 20.190.160.6, 20.190.160.129, 2.21.142.245, 40.126.31.139, 20.190.159.138, 40.126.31.143, 20.190.159.136, 40.126.31.1, 40.126.31.137, 40.126.31.135, 20.190.159.132, 216.58.212.163, 142.250.74.206, 173.194.182.200, 142.250.186.163
                                                    • Excluded domains from analysis (whitelisted): r3---sn-4g5e6nss.gvt1.com, www.tm.lg.prod.aadmsa.akadns.net, store-images.s-microsoft.com-c.edgekey.net, clientservices.googleapis.com, www.tm.a.prd.aadg.akadns.net, login.msa.msidentity.com, www.tm.a.prd.aadg.trafficmanager.net, e12564.dspb.akamaiedge.net, redirector.gvt1.com, login.live.com, store-images.s-microsoft.com, www.googletagmanager.com, r3.sn-4g5e6nss.gvt1.com, www.gstatic.com, www.tm.lg.prod.aadmsa.trafficmanager.net, www.google-analytics.com
                                                    • Not all processes where analyzed, report is missing behavior information
                                                    • Report size getting too big, too many NtOpenFile calls found.
                                                    • Report size getting too big, too many NtSetInformationFile calls found.

                                                    Created / dropped Files

                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\5082c44e-a22c-4dc0-828d-a8637dfa616b.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):77954
                                                    Entropy (8bit):6.0769006002258
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"browser":{"last_redirect_origin":"","shortcut_migration_version":"91.0.4472.77"},"data_use_measurement":{"data_used":{"services":{"background":{},"foreground":{}},"user":{"background":{},"foreground":{}}}},"hardware_acceleration_mode_previous":true,"intl":{"app_locale":"en"},"legacy":{"profile":{"name":{"migrated":true}}},"network_time":{"network_time_mapping":{"local":1.629260007505177e+12,"network":1.629227609e+12,"ticks":5958247479.0,"uncertainty":3578713.0}},"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAABBQ7WxpM2gT7fMNkY5iRxkAAAAAAIAAAAAABBmAAAAAQAAIAAAALDWDwoLRYqp0NkiPsTxUN2QcOPsitaJrdacpo+ULE2PAAAAAA6AAAAAAgAAIAAAAOIeKQBWbQSCqXv1OSNS2lIZGHfAdJRwvbkapN4/FWvwMAAAAPz8I/w07KQb4Ut8ObsBGVgFwbuU88R362cCGZpNEtOEILJDMaKWOA4Y9ejBRTt5kEAAAADq8RkIezfgqGPgEaEMkhoGd9qhyBeyucXcRUPEI7mgYIxaDt8C5FJrjkEhV5EOUcUmR2SCzqYelImLnfOlbhRQ"},"password_manager":{"os_password_blank":true,"os_password_last_changed":"13267638417667412"},"plugins":{"metadata":{"adobe-flash-player":{"disp
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\84f0dbe8-2d46-4a23-93e7-07cc123c6d44.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):73489
                                                    Entropy (8bit):6.043849598894437
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"browser":{"last_redirect_origin":"","shortcut_migration_version":"91.0.4472.77"},"data_use_measurement":{"data_used":{"services":{"background":{},"foreground":{}},"user":{"background":{},"foreground":{}}}},"hardware_acceleration_mode_previous":true,"intl":{"app_locale":"en"},"legacy":{"profile":{"name":{"migrated":true}}},"network_time":{"network_time_mapping":{"local":1.629260007505177e+12,"network":1.629227609e+12,"ticks":5958247479.0,"uncertainty":3578713.0}},"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAABBQ7WxpM2gT7fMNkY5iRxkAAAAAAIAAAAAABBmAAAAAQAAIAAAALDWDwoLRYqp0NkiPsTxUN2QcOPsitaJrdacpo+ULE2PAAAAAA6AAAAAAgAAIAAAAOIeKQBWbQSCqXv1OSNS2lIZGHfAdJRwvbkapN4/FWvwMAAAAPz8I/w07KQb4Ut8ObsBGVgFwbuU88R362cCGZpNEtOEILJDMaKWOA4Y9ejBRTt5kEAAAADq8RkIezfgqGPgEaEMkhoGd9qhyBeyucXcRUPEI7mgYIxaDt8C5FJrjkEhV5EOUcUmR2SCzqYelImLnfOlbhRQ"},"policy":{"last_statistics_update":"13273733604472778"},"profile":{"info_cache":{"Default":{"active_time":1629260005.19298,"avatar_icon":"chrom
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):40
                                                    Entropy (8bit):3.254162526001658
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: sdPC.....................A.>'..M..,.,.-.
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\0f69afa7-44db-4e4f-a9f0-fb847254927a.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):3343
                                                    Entropy (8bit):4.945222848960228
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"net":{"http_server_properties":{"servers":[{"alternative_service":[{"advertised_alpns":["h3-29"],"expiration":"13270230891381309","port":443,"protocol_str":"quic"},{"advertised_alpns":["h3-Q050"],"expiration":"13270230891381310","port":443,"protocol_str":"quic"}],"isolation":[],"network_stats":{"srtt":39697},"server":"https://www.googleapis.com","supports_spdy":true},{"alternative_service":[{"advertised_alpns":["h3-29"],"expiration":"13270230887958662","port":443,"protocol_str":"quic"},{"advertised_alpns":["h3-Q050"],"expiration":"13270230887958664","port":443,"protocol_str":"quic"}],"isolation":[],"network_stats":{"srtt":52163},"server":"https://clients2.googleusercontent.com","supports_spdy":true},{"alternative_service":[{"advertised_alpns":["h3-29"],"expiration":"13270230886326794","port":443,"protocol_str":"quic"},{"advertised_alpns":["h3-Q050"],"expiration":"13270230886326795","port":443,"protocol_str":"quic"}],"isolation":[],"server":"https://clients2.google.com","supports_spdy
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\17395236-54ad-4f35-9848-9ee71b91f1a0.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):2876
                                                    Entropy (8bit):5.597107128665356
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"expect_ct":[{"expect_ct_enforce":false,"expect_ct_expiry":1629864828.36069,"expect_ct_observed":1629260028.36069,"expect_ct_report_uri":"https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct","host":"AKBA0EXj1W1QmJumkxUOTpibibkAwoUEp1CDrh5UFWY=","nik":[]},{"expect_ct_enforce":false,"expect_ct_expiry":1629864828.346055,"expect_ct_observed":1629260028.346055,"expect_ct_report_uri":"https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct","host":"E10e7Gwg5+phsYD4E8qNYFsQySXnIHPAfo4zloUPESc=","nik":[]}],"sts":[{"expiry":1660796028.360679,"host":"AKBA0EXj1W1QmJumkxUOTpibibkAwoUEp1CDrh5UFWY=","mode":"force-https","sts_include_subdomains":true,"sts_observed":1629260028.360684},{"expiry":1645040028.346045,"host":"E10e7Gwg5+phsYD4E8qNYFsQySXnIHPAfo4zloUPESc=","mode":"force-https","sts_include_subdomains":false,"sts_observed":1629260028.346049},{"expiry":1640146414.608511,"host":"LAZkYS46RVRcFiZAzmUJrz6TJHBd4nwE6VxPWfPLYHs=","mode":"force-https","sts_include_subdomains":true,"sts_obser
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\1b9e7962-b8ea-4136-b832-cdcf1f5a4616.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):4342
                                                    Entropy (8bit):5.037678126460657
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"account_id_migration_state":2,"account_tracker_service_last_update":"13273733605224739","alternate_error_pages":{"backup":true},"autocomplete":{"retention_policy_last_version":92},"autofill":{"orphan_rows_removed":true},"browser":{"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"countryid_at_install":21843,"data_reduction":{"this_week_number":2693,"this_week_services_downstream_foreground_kb":{"112189210":3,"115188287":28,"21145003":1051,"35565745":1,"5151071":1}},"default_apps_install_state":2,"domain_diversity":{"last_reporting_timestamp":"13273733605219815"},"download":{"directory_upgrade":true},"extensions":{"alerts":{"initialized":true},"chrome_url_overrides":{},"last_chrome_version":"92.0.4515.107"},"gaia_cookie":{"changed_time":1629260008.711315,"hash":"2jmj7l5rSw0yVb/vlWAYkK/YBwk=","last_list_accounts_data":"[\"gaia.l.a.r\",[]]"},"gcm":{"product_category_for_
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\1ba70652-9d81-4fc4-8968-513b1876b068.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):2878
                                                    Entropy (8bit):5.597893881975633
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:E955D7D9157EDED3CBE738C12370A1A1
                                                    SHA1:6589260AEFECC6148B3C98AFFECD7A2B59BF9DAF
                                                    SHA-256:766252E2DC527EC093E4A86B92943E3999060D09F1E3EF9E20240ACBE70D4C34
                                                    SHA-512:4A0F5EE3C78AF2CC903CAD89B62E94F56F7FC97865A7F734660AD74D83D378EEF0483BA1ADCBB9FBDDF57E6B67C35E2ACC94B5041DF42FABA68589C406BFC149
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"expect_ct":[{"expect_ct_enforce":false,"expect_ct_expiry":1629864907.569422,"expect_ct_observed":1629260107.569422,"expect_ct_report_uri":"https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct","host":"AKBA0EXj1W1QmJumkxUOTpibibkAwoUEp1CDrh5UFWY=","nik":[]},{"expect_ct_enforce":false,"expect_ct_expiry":1629864828.346055,"expect_ct_observed":1629260028.346055,"expect_ct_report_uri":"https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct","host":"E10e7Gwg5+phsYD4E8qNYFsQySXnIHPAfo4zloUPESc=","nik":[]}],"sts":[{"expiry":1660796107.569411,"host":"AKBA0EXj1W1QmJumkxUOTpibibkAwoUEp1CDrh5UFWY=","mode":"force-https","sts_include_subdomains":true,"sts_observed":1629260107.569416},{"expiry":1645040028.346045,"host":"E10e7Gwg5+phsYD4E8qNYFsQySXnIHPAfo4zloUPESc=","mode":"force-https","sts_include_subdomains":false,"sts_observed":1629260028.346049},{"expiry":1640146414.608511,"host":"LAZkYS46RVRcFiZAzmUJrz6TJHBd4nwE6VxPWfPLYHs=","mode":"force-https","sts_include_subdomains":true,"sts_obs
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\1e9a3b20-543f-4998-b612-d450ff928aa4.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):3471
                                                    Entropy (8bit):4.954825256729432
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"account_id_migration_state":2,"account_tracker_service_last_update":"13273733605224739","alternate_error_pages":{"backup":true},"autofill":{"orphan_rows_removed":true},"browser":{"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"countryid_at_install":21843,"data_reduction":{"this_week_number":2693},"default_apps_install_state":2,"domain_diversity":{"last_reporting_timestamp":"13273733605219815"},"extensions":{"alerts":{"initialized":true},"chrome_url_overrides":{},"last_chrome_version":"92.0.4515.107"},"gcm":{"product_category_for_subtypes":"com.chrome.windows"},"google":{"services":{"signin_scoped_device_id":"5197e7b9-89b8-4cec-8ef0-3935d11d8e84"}},"intl":{"selected_languages":"en-US,en"},"invalidation":{"per_sender_topics_to_handler":{"1013309121859":{},"8181035976":{}}},"media":{"device_id_salt":"B3D49A08AF16AE1904FF4AA2E30DDF5B","engagement":{"schema_version":4}},
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\2f1c123b-9eea-4713-b766-51f836aab33e.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:very short file (no magic)
                                                    Category:modified
                                                    Size (bytes):1
                                                    Entropy (8bit):0.0
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\623b6333-4abc-42f8-aab8-32f82632af32.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):15154
                                                    Entropy (8bit):5.580164959318533
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"manifest_permissions":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13273733604697774","location":5,"manifest":{"app":{"launch":{"web_url":"https://chrome.google.com/webstore"},"urls":["https://chrome.google.com/webstore"]},"description":"Discover great apps, games, extensions and themes for Google Chrome.","icons":{"128":"webstore_icon_128.png","16":"webstore_icon_16.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB","name":"Web Store","pe
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\7e55026e-98a9-4b08-a68c-5b7875cff4bc.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):3471
                                                    Entropy (8bit):4.954931398820948
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"account_id_migration_state":2,"account_tracker_service_last_update":"13273733605224739","alternate_error_pages":{"backup":true},"autofill":{"orphan_rows_removed":true},"browser":{"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"countryid_at_install":21843,"data_reduction":{"this_week_number":2693},"default_apps_install_state":2,"domain_diversity":{"last_reporting_timestamp":"13273733605219815"},"extensions":{"alerts":{"initialized":true},"chrome_url_overrides":{},"last_chrome_version":"92.0.4515.107"},"gcm":{"product_category_for_subtypes":"com.chrome.windows"},"google":{"services":{"signin_scoped_device_id":"5197e7b9-89b8-4cec-8ef0-3935d11d8e84"}},"intl":{"selected_languages":"en-US,en"},"invalidation":{"per_sender_topics_to_handler":{"1013309121859":{},"8181035976":{}}},"media":{"device_id_salt":"B3D49A08AF16AE1904FF4AA2E30DDF5B","engagement":{"schema_version":4}},
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\865bffcd-df09-4b77-8587-af5126cd9c84.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:MS Windows icon resource - 13 icons, 8x8, 32 bits/pixel, 10x10, 32 bits/pixel
                                                    Category:dropped
                                                    Size (bytes):181072
                                                    Entropy (8bit):5.774426487043815
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: ............ .H............. ............... .p............. .h...n......... ............... ......... .... .....n...((.... .h.......00.... ..%..~H..@@.... .(B..&n..``.... .....N......... .(....D........ .2v...M..(............. .................................]..X\.).H...>..Z............\..._...V...F...A...A.......^..Wb...f.)...l...v.M...B...@..Wc...[.....z...`...J.....9...E...k...R.D.......G...A.....;...E...h..XKd..KW..........D...>...=..X....GQ.JW..;M..8K..@H..=;.............JV.YKV.IT.BS.Y........................................(............. .....................................[..TZ.5.B...@..T................X...]...`...\...K...D...A...;.......3...\...e...V...h.).d.G.<...F...@...3...^..Td...X.....e....v.....:...E...=..T`...d...h.B.....?...;...O...B...A...b.!.g...Ru......9...8...P...C...C...l..U].M.5@..............6...C...@..T....EW..LX..=K..Ob..Me..5R..AX..;V..++......BL..KW..KW..DO..BL..EN..AJ..;1..................HT.UIV.FT.BQ.U..............................
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\001faf4862a1d632_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):212
                                                    Entropy (8bit):5.462682558382172
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......P...bT.\...._keyhttps://www.google-analytics.com/plugins/ua/linkid.js .https://nimbusweb.me/.A..Eo.................."6..c(/...........i...........@...A.&..gf.e1M&..@.@..W9.3..-.A..Eo.......$aA........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\057a1b3eaa2d474e_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):226
                                                    Entropy (8bit):5.449497906623306
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......^.....y....._keyhttps://ajax.googleapis.com/ajax/libs/jquery/2.2.4/jquery.min.js .https://appdomain.cloud/.A..Eo..................c...c(/...........i.t.................>.U1Rug..m./.........A..Eo.......Me/........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\08aa05d82acac63a_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):204
                                                    Entropy (8bit):5.420002288628965
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......H...dY]....._keyhttps://www.google-analytics.com/analytics.js .https://nimbusweb.me/.A..Eo......................c(/...........i.............H.1...t.w......vT.l|S.._.....A..Eo.......$lC........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\340933ba7ece0b7e_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):232
                                                    Entropy (8bit):5.738330282246673
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......d...Q^<....._keyhttps://www.googletagmanager.com/gtag/js?id=G-7ZKFB3S0PN&l=dataLayer&cx=c .https://nimbusweb.me/.A..Eo..................)...c(/...........i............+..K.1Tq..P.z$\N...).s....f.A..Eo..................
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\37382bc0e88aa8fb_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):210
                                                    Entropy (8bit):5.624610906147929
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......N....^=....._keyhttps://stt.nimbusweb.me/gtlytics.js?id=GTM-WHFRJTP .https://nimbusweb.me/.A..Eo..................p...c(/...........i..}.........C.(2..|....n...sq.6....9VB.A..Eo.......E..........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\6223d4e79358f64a_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):232
                                                    Entropy (8bit):5.64718697609268
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......d....Z......_keyhttps://www.googletagmanager.com/gtag/js?id=G-7G2K66TV09&l=dataLayer&cx=c .https://nimbusweb.me/.A..Eo..................SA..c(/...........i..~......;2.j:.CP. .q...B.k.....=\0..A..A..Eo.......P@M........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\641a65c40e152b65_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):216
                                                    Entropy (8bit):5.443826561060217
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......T....v......_keyhttps://dojq4kt8ws9iq.cloudfront.net/s/dist/hammer.min.js .https://nimbusweb.me/.A..Eo...................R..c(/...........i.8p......k..1...'..)..z@eL.....W....4..A..Eo.......8.n........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\681038511a5a3e8a_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):209
                                                    Entropy (8bit):5.506954048791702
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......M....w......_keyhttps://stt.nimbusweb.me/gtag/js?id=UA-67774717-30 .https://nimbusweb.me/.A..Eo.....................c(/...........i..}......m..E@...#.!..e.s......I..2H8C....A..Eo..................
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\7aa7281d85aa0c2d_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):242
                                                    Entropy (8bit):5.562377559556884
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......n....7......_keyhttps://dojq4kt8ws9iq.cloudfront.net/s/dist/vendor/webcomponents-bundle.js?v=6.46.0 .https://nimbusweb.me/.A..Eo..................;L..c(/...........i.0o........L...3.*..*....3..........()..A..Eo......x...........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\d2ca87a0c2b93b9c_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):227
                                                    Entropy (8bit):5.505363284269606
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......_....s......_keyhttps://ajax.googleapis.com/ajax/libs/jquery/1.12.4/jquery.min.js .https://appdomain.cloud/.A..Eo..................c...c(/...........i.e.........C);`2V..I....-.<CQ..).|(.I.y.A..Eo.......!y.........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\d5810bd105014b4f_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):243
                                                    Entropy (8bit):5.623918627784138
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......o......C...._keyhttps://www.gstatic.com/recaptcha/releases/JF4U2g-hvLrBJ_UxdbKj92gN/recaptcha__en.js .https://nimbusweb.me/.A..Eo..................WT..c(/...........i..p........Iqj....h....f.S.B2R.O.tt..CQ.A..Eo.................
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\d71d49024e67c2b3_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):221
                                                    Entropy (8bit):5.5241102086253315
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......Y..........._keyhttps://dojq4kt8ws9iq.cloudfront.net/s/dist/common.js?v=6.46.0 .https://nimbusweb.me/.A..Eo..................mK..c(/...........i..o............1 .%c......1........0.A..Eo...... -..........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\df519902408cc889_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):232
                                                    Entropy (8bit):5.329515902531613
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......d.....`....._keyhttps://stackpath.bootstrapcdn.com/bootstrap/4.3.1/js/bootstrap.min.js .https://appdomain.cloud/.A..Eo..................d...c(/...........i.h.......q..P.r'w..4..P...W>..x..p.4......A..Eo.......\..........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\e88fcc069805b0d3_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):229
                                                    Entropy (8bit):5.6935013343845196
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......a...N..n...._keyhttps://dojq4kt8ws9iq.cloudfront.net/s/dist/index.js?v=6.46.0-832f81bd .https://nimbusweb.me/.A..Eo.....................c(/...........i..t.......+....,...U.,......=..... ....:.A..Eo......K.\.........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\ee9e79aa465906d3_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):244
                                                    Entropy (8bit):5.598331393876899
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......p......W...._keyhttps://sedrftgyh.nimbusweb.me/s/static/assets/223bd0d91015db350184.vendors.fs_web.js .https://nimbusweb.me/.A..Eo..................:F..c(/...........i..}......z~....r....|\..]?Tw..>5...2...A..Eo........*........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\fe293cc6664c6e65_0
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):255
                                                    Entropy (8bit):5.535376144108759
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 0\r..m......{..........._keyhttps://sedrftgyh.nimbusweb.me/s/static/assets/7073136be971e1f9c0e7.vendors.syntax_codemirror.js .https://nimbusweb.me/.A..Eo..................Go..c(/...........i.7~........QF<.V......s.l.\.R...|F"..e...A..Eo.......-..........
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\temp-index
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):576
                                                    Entropy (8bit):5.078989611933156
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 8.....8.oy retne............................$....a..c(/..0...........f...a..c(/..g......H .f..c..a..c(/..........a-/yb.a..c(/.........NG-.>.z..w..c(/.........T.')|.PL.w..c(/.........6.Wd.v.,.a..c(/...........@..Q..a..c(/..........;......w..c(/.........2.bH.......c(/.........:..*........c(/.........~..~.3.4....c(/.........J.X...#b....c(/.........enLf.<).@...c(/..............+87@...c(/..........>Z.Q8.h@...c(/...........YF.y..@...c(/...................c(/.........OK........c(/.........e+...e.d...c(/.........-....(.z...c(/...........gN.I....c(/........./...c(/.
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_1\_metadata\computed_hashes.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):11336
                                                    Entropy (8bit):6.0707244876366575
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"file_hashes":[{"block_hashes":["8D+nOE33nrpuAnTVcJlgMPWVo79reBkp3Z22WTJi5B8="],"block_size":4096,"path":"_locales/nb/messages.json"},{"block_hashes":["A+1PYW3V6CJbBuQ7aqrgYhyH3bT8PKyBXp3hN2slpI0=","WSOpQRkYTHjPSlG9Zif2a7TNhy43NDcG1Zg5Nv0UbH0=","jDctR8ImG5KZrQKm4kDjUB7FokSJfjo/pmvFowRVlaY=","LPxhhJiuU0lprt0T6flpS7TkaDg7MocrbmzO65xH6RI=","nZ9zLb2By96AkKXALRM+C0Eu11XUjPiMXEKjiCPdtHE=","wifibc1QfMBN2jrtUtLgsCefvuceTpAatmLvul11RJA=","dHjWlSIIdjj7MWqg3T8MG58RuuqRXk32vqi/13JqEgA=","zd3DV7dbvfNvx1hdhU01fW5ily52DLN0CFL/ADaEeTI=","DpjXcO85FFFY9KJFPkGNfFUtdQIOsGwO5jUckiUwY14=","gqid6l1+mk/6yWgUECRofI9lMipXgXh2jEN2+CxmPE0=","prDB91X2Mmfg/M/txVMITWBmEGbOGjqBTP7CMjYqdHs=","yLPAqV4gqoyS/zFkEt3Cn2j0q2v9QOSthVFfWn8EzCM=","EPQ3jzdrLkAHyvf3920B5Y3aAkO1IJdn/UtbnAmq6T0=","+oOc6ca+ChKUpTu+oa2ZRxRE+wG3QJmuYWEvYCs40NI=","3mBGNAiRlTANEQkqzU3TEi+5wJ0ubR5uwtS4/9OOM7w=","1A9NNawxuhu95H5eThvf1rewJ4QQWhhPNxJXO1C/n68=","E3vWLQxzmj+e5QxYbUscllJ5n0ITpw5JBHV1Kph3/KM=","i3I8ghdTF9c1ZXNBZmvsID+DV4gxBVN27rj9wsMtRpg=","R
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_metadata\computed_hashes.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):26178
                                                    Entropy (8bit):6.060546316291638
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"file_hashes":[{"block_hashes":["DOZdV3jFvk12AM2JNDYKo3KZrIVRprmJ+sVGWkqqE4Q=","rVElW3Hu3T52SzDDUqGT5YiJTBGUv2h3pNuBKFlhZ1U=","X/3fg4KZxgQ1jBr5QGq0F5JnflgE27UErd88mrxTcxs=","VibLbpy0ig+5INMOU71fTYN76iaka2XVpmm1qAKYsX8=","EChCwCbQHbHQ7oDdGT2qNyiRJ0yck2YC2emNGq4whtE="],"block_size":4096,"path":"_locales/iw/messages.json"},{"block_hashes":["fM6wUoU96QmdAMMJqhyPQdILY6QXE2cfpXivMNd/kSg=","GmZUfDhlvU+1ByKQxZIcQZm+8bSFENyNk79q9fsZu3o=","X0hU8nolnxRmTiwIKtHtUeSjEP4YaSRtnpXvJQrqg8I="],"block_size":4096,"path":"_locales/nb/messages.json"},{"block_hashes":["/0XLYLvR7GDi1lXEsqI5OOorLaHGVkQU9sW9wrxd/qs=","ugdSYfR9jET/5OpIYWZUycWy9FcBX/jb/7/hmW5DVR0=","Z2vShQRg9avHHQwTkYjAyfnFnhHQ6Ce+ob00hRV0V2Q=","lIb7yaoAR7pQ0ZDpBU1ZzIKa+hURf3edJBILNvUO6lk=","5mpQSSRBXvBC9O0QpFoDxFGOcDS5Iua0gICy3D+t0UM=","EkWgzDTb1zblDgz7APE/G19fsHn/TJJuw3JbNsqGNCY=","Mb/n/cgw5oibXHqBfMwXremke8GY9oWJPhuY1Y2CrpQ=","cb+9vKl/3iDYu97Gc5yEsJnJ2QWd4dpd1E3pt/3yaqQ=","17+40sjnss/mFRm6idVmlEZTl+kWrR1GSzedHRD8yZI=","fTKSj8L49Jxlk/4helP5XYq
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Google Profile.icoTM (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:MS Windows icon resource - 13 icons, 8x8, 32 bits/pixel, 10x10, 32 bits/pixel
                                                    Category:dropped
                                                    Size (bytes):181072
                                                    Entropy (8bit):5.774426487043815
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: ............ .H............. ............... .p............. .h...n......... ............... ......... .... .....n...((.... .h.......00.... ..%..~H..@@.... .(B..&n..``.... .....N......... .(....D........ .2v...M..(............. .................................]..X\.).H...>..Z............\..._...V...F...A...A.......^..Wb...f.)...l...v.M...B...@..Wc...[.....z...`...J.....9...E...k...R.D.......G...A.....;...E...h..XKd..KW..........D...>...=..X....GQ.JW..;M..8K..@H..=;.............JV.YKV.IT.BS.Y........................................(............. .....................................[..TZ.5.B...@..T................X...]...`...\...K...D...A...;.......3...\...e...V...h.).d.G.<...F...@...3...^..Td...X.....e....v.....:...E...=..T`...d...h.B.....?...;...O...B...A...b.!.g...Ru......9...8...P...C...C...l..U].M.5@..............6...C...@..T....EW..LX..=K..Ob..Me..5R..AX..;V..++......BL..KW..KW..DO..BL..EN..AJ..;1..................HT.UIV.FT.BQ.U..............................
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):3471
                                                    Entropy (8bit):4.954825256729432
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"account_id_migration_state":2,"account_tracker_service_last_update":"13273733605224739","alternate_error_pages":{"backup":true},"autofill":{"orphan_rows_removed":true},"browser":{"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"countryid_at_install":21843,"data_reduction":{"this_week_number":2693},"default_apps_install_state":2,"domain_diversity":{"last_reporting_timestamp":"13273733605219815"},"extensions":{"alerts":{"initialized":true},"chrome_url_overrides":{},"last_chrome_version":"92.0.4515.107"},"gcm":{"product_category_for_subtypes":"com.chrome.windows"},"google":{"services":{"signin_scoped_device_id":"5197e7b9-89b8-4cec-8ef0-3935d11d8e84"}},"intl":{"selected_languages":"en-US,en"},"invalidation":{"per_sender_topics_to_handler":{"1013309121859":{},"8181035976":{}}},"media":{"device_id_salt":"B3D49A08AF16AE1904FF4AA2E30DDF5B","engagement":{"schema_version":4}},
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Preferencest\ (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):4342
                                                    Entropy (8bit):5.037678126460657
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"account_id_migration_state":2,"account_tracker_service_last_update":"13273733605224739","alternate_error_pages":{"backup":true},"autocomplete":{"retention_policy_last_version":92},"autofill":{"orphan_rows_removed":true},"browser":{"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"countryid_at_install":21843,"data_reduction":{"this_week_number":2693,"this_week_services_downstream_foreground_kb":{"112189210":3,"115188287":28,"21145003":1051,"35565745":1,"5151071":1}},"default_apps_install_state":2,"domain_diversity":{"last_reporting_timestamp":"13273733605219815"},"download":{"directory_upgrade":true},"extensions":{"alerts":{"initialized":true},"chrome_url_overrides":{},"last_chrome_version":"92.0.4515.107"},"gaia_cookie":{"changed_time":1629260008.711315,"hash":"2jmj7l5rSw0yVb/vlWAYkK/YBwk=","last_list_accounts_data":"[\"gaia.l.a.r\",[]]"},"gcm":{"product_category_for_
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):15867
                                                    Entropy (8bit):5.577627136632938
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"manifest_permissions":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13273733604697774","location":5,"manifest":{"app":{"launch":{"web_url":"https://chrome.google.com/webstore"},"urls":["https://chrome.google.com/webstore"]},"description":"Discover great apps, games, extensions and themes for Google Chrome.","icons":{"128":"webstore_icon_128.png","16":"webstore_icon_16.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB","name":"Web Store","pe
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Secure PreferencesTM (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):15154
                                                    Entropy (8bit):5.580164959318533
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"manifest_permissions":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13273733604697774","location":5,"manifest":{"app":{"launch":{"web_url":"https://chrome.google.com/webstore"},"urls":["https://chrome.google.com/webstore"]},"description":"Discover great apps, games, extensions and themes for Google Chrome.","icons":{"128":"webstore_icon_128.png","16":"webstore_icon_16.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB","name":"Web Store","pe
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\39f53fad-26e2-4982-839d-1a1cb8b3c40d.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):139
                                                    Entropy (8bit):4.762700853527964
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"net":{"http_server_properties":{"servers":[],"version":5},"network_qualities":{"CAASABiAgICA+P////8B":"4G","CAESABiAgICA+P////8B":"4G"}}}
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\a6b70c4c-dac6-4b67-b652-40ac2626e5ba.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with no line terminators
                                                    Category:modified
                                                    Size (bytes):15867
                                                    Entropy (8bit):5.577627136632938
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"manifest_permissions":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13273733604697774","location":5,"manifest":{"app":{"launch":{"web_url":"https://chrome.google.com/webstore"},"urls":["https://chrome.google.com/webstore"]},"description":"Discover great apps, games, extensions and themes for Google Chrome.","icons":{"128":"webstore_icon_128.png","16":"webstore_icon_16.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB","name":"Web Store","pe
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000006.dbtmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text
                                                    Category:dropped
                                                    Size (bytes):16
                                                    Entropy (8bit):3.2743974703476995
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: MANIFEST-000006.
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENTrl (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text
                                                    Category:dropped
                                                    Size (bytes):16
                                                    Entropy (8bit):3.2743974703476995
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: MANIFEST-000006.
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Last Browser
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:data
                                                    Category:dropped
                                                    Size (bytes):106
                                                    Entropy (8bit):3.138546519832722
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e...e.x.e.
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Last Version
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):13
                                                    Entropy (8bit):2.873140679513133
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: 92.0.4515.107
                                                    C:\Users\alfredo\AppData\Local\Google\Chrome\User Data\Local State (copy)
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):73489
                                                    Entropy (8bit):6.043849598894437
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"browser":{"last_redirect_origin":"","shortcut_migration_version":"91.0.4472.77"},"data_use_measurement":{"data_used":{"services":{"background":{},"foreground":{}},"user":{"background":{},"foreground":{}}}},"hardware_acceleration_mode_previous":true,"intl":{"app_locale":"en"},"legacy":{"profile":{"name":{"migrated":true}}},"network_time":{"network_time_mapping":{"local":1.629260007505177e+12,"network":1.629227609e+12,"ticks":5958247479.0,"uncertainty":3578713.0}},"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAABBQ7WxpM2gT7fMNkY5iRxkAAAAAAIAAAAAABBmAAAAAQAAIAAAALDWDwoLRYqp0NkiPsTxUN2QcOPsitaJrdacpo+ULE2PAAAAAA6AAAAAAgAAIAAAAOIeKQBWbQSCqXv1OSNS2lIZGHfAdJRwvbkapN4/FWvwMAAAAPz8I/w07KQb4Ut8ObsBGVgFwbuU88R362cCGZpNEtOEILJDMaKWOA4Y9ejBRTt5kEAAAADq8RkIezfgqGPgEaEMkhoGd9qhyBeyucXcRUPEI7mgYIxaDt8C5FJrjkEhV5EOUcUmR2SCzqYelImLnfOlbhRQ"},"policy":{"last_statistics_update":"13273733604472778"},"profile":{"info_cache":{"Default":{"active_time":1629260005.19298,"avatar_icon":"chrom
                                                    C:\Users\alfredo\AppData\Local\Temp\13a0709e-420c-4923-a948-713168623e1c.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):176087
                                                    Entropy (8bit):5.285438318965507
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"version":3,"sources":["../../js/src/util.js","../../js/src/alert.js","../../js/src/button.js","../../js/src/carousel.js","../../js/src/collapse.js","../../js/src/dropdown.js","../../js/src/modal.js","../../js/src/tooltip.js","../../js/src/popover.js","../../js/src/scrollspy.js","../../js/src/tab.js","../../js/src/index.js"],"names":["$","NAME","DATA_KEY","EVENT_KEY","JQUERY_NO_CONFLICT","Event","ClassName","Alert","DATA_API_KEY","Selector","Button","Default","DefaultType","Direction","Carousel","Dimension","Collapse","REGEXP_KEYDOWN","AttachmentMap","Dropdown","Modal","CLASS_PREFIX","BSCLS_PREFIX_REGEX","HoverState","Trigger","Tooltip","Popover","OffsetMethod","ScrollSpy","Tab","Util","TRANSITION_END","transitionEndEmulator","duration","_this","this","called","one","setTimeout","triggerTransitionEnd","getUID","prefix","Math","random","document","getElementById","getSelectorFromElement","element","selector","getAttribute","querySelector","err","getTransitionDurationFromElement","trans
                                                    C:\Users\alfredo\AppData\Local\Temp\a2079fb3-b99f-466d-b465-da03f063c26c.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):190253
                                                    Entropy (8bit):5.370682280825065
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"version":3,"sources":["../../js/src/util.js","../../js/src/alert.js","../../js/src/button.js","../../js/src/carousel.js","../../js/src/collapse.js","../../js/src/dropdown.js","../../js/src/modal.js","../../js/src/tools/sanitizer.js","../../js/src/tooltip.js","../../js/src/popover.js","../../js/src/scrollspy.js","../../js/src/tab.js","../../js/src/toast.js","../../js/src/index.js"],"names":["TRANSITION_END","transitionEndEmulator","duration","_this","this","called","$","one","Util","setTimeout","triggerTransitionEnd","getUID","prefix","Math","random","document","getElementById","getSelectorFromElement","element","selector","getAttribute","hrefAttr","trim","querySelector","err","getTransitionDurationFromElement","transitionDuration","css","transitionDelay","floatTransitionDuration","parseFloat","floatTransitionDelay","split","reflow","offsetHeight","trigger","supportsTransitionEnd","Boolean","isElement","obj","nodeType","typeCheckConfig","componentName","config","configTypes","property
                                                    C:\Users\alfredo\AppData\Local\Temp\c3dab0a7-9d8f-46a2-bea1-72acd87ddad0.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):311949
                                                    Entropy (8bit):5.392387119083506
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"version":3,"sources":["../../js/src/util.js","../../js/src/alert.js","../../js/src/button.js","../../js/src/carousel.js","../../js/src/collapse.js","../../node_modules/popper.js/dist/esm/popper.js","../../js/src/dropdown.js","../../js/src/modal.js","../../js/src/tools/sanitizer.js","../../js/src/tooltip.js","../../js/src/popover.js","../../js/src/scrollspy.js","../../js/src/tab.js","../../js/src/toast.js","../../js/src/index.js"],"names":["TRANSITION_END","transitionEndEmulator","duration","_this","this","called","$","one","Util","setTimeout","triggerTransitionEnd","getUID","prefix","Math","random","document","getElementById","getSelectorFromElement","element","selector","getAttribute","hrefAttr","trim","querySelector","err","getTransitionDurationFromElement","transitionDuration","css","transitionDelay","floatTransitionDuration","parseFloat","floatTransitionDelay","split","reflow","offsetHeight","trigger","supportsTransitionEnd","Boolean","isElement","obj","nodeType","typeCheckConfig
                                                    C:\Users\alfredo\AppData\Local\Temp\cea0471c-c7b4-416c-b291-c809ca8a4427.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:Google Chrome extension, version 3
                                                    Category:dropped
                                                    Size (bytes):826470
                                                    Entropy (8bit):7.993386298864445
                                                    Encrypted:true
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: Cr24..............0.."0...*.H.............0...........\7c.<........Fto.8.2'5..qk...%....2...C.F.9.#..e.xQ.......[...L|....3>/....u.:T.7...(.yM...?V.<?........1.a...O?d.....A.H..'.MpB..T.m..Vn Ip..>k.|1..n.<Fb..f..*Q1.....s..2..{*.6....Pp....obM..1.......b1.......(.u^.'z......v.F.W.X4."-*eu...b.........b.._..+.........e..'.q<.iJ............]m.......L.3..O....u{..+..&..;....]..)....b._.Ut._........B.Q.X.C.._....,...x.^........8B..n....}. Q.u;..>6....B......a...Y..j1.<..b...m..@...y..&.".7..+a%{`..|...).:.7j.*k.0...(7...U.4Q.b'.._;.e.z...v.......0..0...*.H............0.......Mbh=.[O}.+..U.KHF(n3.\"...,g.c...6)..(.E...U...#.i.a..:...N.....P...x.O...(mC;|.5.S.{m.aEx...[..fP.i`.y..5..R....v.$......l-m...........e8....:._i..4.r#...@3.F.:...!0...{..s............)v3-....S.G.I.;......c$.*......-...p&..,.......i){G....6.L?.....c............[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...H0F.!..\...`.M..\..3......2g.7.
                                                    C:\Users\alfredo\AppData\Local\Temp\e92ada0b-9397-4e6f-b60a-c76741804682.tmp
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:Google Chrome extension, version 3
                                                    Category:modified
                                                    Size (bytes):248531
                                                    Entropy (8bit):7.963657412635355
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: Cr24..............0.."0...*.H.............0...........\7c.<........Fto.8.2'5..qk...%....2...C.F.9.#..e.xQ.......[...L|....3>/....u.:T.7...(.yM...?V.<?........1.a...O?d.....A.H..'.MpB..T.m..Vn Ip..>k.|1..n.<Fb..f..*Q1.....s..2..{*.6....Pp....obM..1.......b1.......(.u^.'z......v.F.W.X4."-*eu...b.........\..F!...b...l5....zJ.q.......L].....w[T0.6....E.....r..%Z.vFm.9..5!,.~g5...;.t...']....+A.....u....k...e..&..l.6r[yU...%..f.......N..V.....<+.....l..}.{...z...)y.n..'..).....,.b....5.08K%..O.g..D.S.F5o..<(....>....\f..X..I..2."l...w....7f|.~.c.4.E.......0..0...*.H............0.......).'..b.*$w\$.q&.]zF_2..;...?.U,...W..L1.2...R..#....W.....c1k.$W..$.J....+M!.Hz.n`U.I)N.|b.l....{.K@]6.LlP/....](.A..................I...).H....IQ.y.;MG.d..ix..#f.Z$|..|.?...0K...t"i..s...Y..%.Ky....0...{.!+.~v.;....J.....Z....).(6..@?v.;~..2..c....[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...F0D. .0...|!..A..L.+.=...kP.!.1..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\bg\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):796
                                                    Entropy (8bit):4.864931792423268
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "........ . ... ........ .. Chrome".. },.. "app_name": {.. "message": "........ . ... ........ .. Chrome".. },.. "craw_app_unavailable": {.. "message": "........... .... ...... .. .............".. },.. "craw_connect_to_network": {.. "message": "...., ........ .. . ......".. },.. "iap_unavailable": {.. "message": "........... .... ...... .. .......... ....... .. .........".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "...., ...... . Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\ca\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):675
                                                    Entropy (8bit):4.536753193530313
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Sistema de pagaments de Chrome Web Store".. },.. "app_name": {.. "message": "Sistema de pagaments de Chrome Web Store".. },.. "craw_app_unavailable": {.. "message": "Ara mateix aquesta aplicaci. no est. disponible.".. },.. "craw_connect_to_network": {.. "message": "Connecteu-vos a una xarxa.".. },.. "iap_unavailable": {.. "message": "La funci. Pagaments a l'aplicaci. no est. disponible actualment.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Inicieu la sessi. a Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\cs\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):641
                                                    Entropy (8bit):4.698608127109193
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Platby Internetov.ho obchodu Chrome".. },.. "app_name": {.. "message": "Platby Internetov.ho obchodu Chrome".. },.. "craw_app_unavailable": {.. "message": "Aplikace v sou.asn. dob. nen. dostupn..".. },.. "craw_connect_to_network": {.. "message": "P.ipojte se pros.m k s.ti.".. },.. "iap_unavailable": {.. "message": "Platby v aplikaci aktu.ln. nejsou k dispozici.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "P.ihlaste se do Chromu.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\da\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):624
                                                    Entropy (8bit):4.5289746475384565
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Betalinger i Chrome Webshop".. },.. "app_name": {.. "message": "Betalinger i Chrome Webshop".. },.. "craw_app_unavailable": {.. "message": "Appen er ikke tilg.ngelig i .jeblikket.".. },.. "craw_connect_to_network": {.. "message": "Opret forbindelse til et netv.rk.".. },.. "iap_unavailable": {.. "message": "Betaling i appen er ikke tilg.ngelig i .jeblikket.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Log ind p. Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\de\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):651
                                                    Entropy (8bit):4.583694000020627
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome Web Store-Zahlungen".. },.. "app_name": {.. "message": "Chrome Web Store-Zahlungen".. },.. "craw_app_unavailable": {.. "message": "Die App ist momentan nicht verf.gbar.".. },.. "craw_connect_to_network": {.. "message": "Bitte stellen Sie eine Verbindung zu einem Netzwerk her.".. },.. "iap_unavailable": {.. "message": "In-App-Zahlungen sind momentan nicht m.glich.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Bitte melden Sie sich in Chrome an.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\el\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):787
                                                    Entropy (8bit):4.973349962793468
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "........ ... Chrome Web Store".. },.. "app_name": {.. "message": "........ ... Chrome Web Store".. },.. "craw_app_unavailable": {.. "message": ". ........ .... .. ..... ... ..... ..........".. },.. "craw_connect_to_network": {.. "message": ".......... .. ... .......".. },.. "iap_unavailable": {.. "message": ".. ........ ..... ......... ... ..... ..... .. ...... ...........".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": ".......... ... Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\en\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):593
                                                    Entropy (8bit):4.483686991119526
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome Web Store Payments".. },.. "app_name": {.. "message": "Chrome Web Store Payments".. },.. "craw_app_unavailable": {.. "message": "App currently unavailable.".. },.. "craw_connect_to_network": {.. "message": "Please connect to a network.".. },.. "iap_unavailable": {.. "message": "In-App Payments is currently unavailable.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Please sign into Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\es\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):661
                                                    Entropy (8bit):4.450938335136508
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Sistema de pagos de Chrome Web Store".. },.. "app_name": {.. "message": "Sistema de pagos de Chrome Web Store".. },.. "craw_app_unavailable": {.. "message": "Esta aplicaci.n no est. disponible en este momento.".. },.. "craw_connect_to_network": {.. "message": "Con.ctate a una red.".. },.. "iap_unavailable": {.. "message": "Los pagos en la aplicaci.n no est.n disponibles en este momento.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Inicia sesi.n en Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\es_419\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):637
                                                    Entropy (8bit):4.47253983486615
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Sistema de pagos de Chrome Web Store".. },.. "app_name": {.. "message": "Sistema de pagos de Chrome Web Store".. },.. "craw_app_unavailable": {.. "message": "Esta aplicaci.n no est. disponible en este momento.".. },.. "craw_connect_to_network": {.. "message": "Con.ctate a una red.".. },.. "iap_unavailable": {.. "message": "En este momento, Pagos En-Apps no est. disponible.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Accede a Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\et\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):595
                                                    Entropy (8bit):4.467205425399467
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome'i veebipoe maksed".. },.. "app_name": {.. "message": "Chrome'i veebipoe maksed".. },.. "craw_app_unavailable": {.. "message": "Rakendus pole praegu saadaval.".. },.. "craw_connect_to_network": {.. "message": "Looge .hendus v.rguga.".. },.. "iap_unavailable": {.. "message": "Rakendusesisesed maksed ei ole praegu saadaval.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Logige Chrome'i sisse.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\fi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):568
                                                    Entropy (8bit):4.768364810051887
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"craw_app_unavailable":{"message":"Sovellus ei ole t\u00e4ll\u00e4 hetkell\u00e4 k\u00e4ytett\u00e4viss\u00e4."},"craw_connect_to_network":{"message":"Muodosta verkkoyhteys."},"app_name":{"message":"Chrome Web Storen maksut"},"app_description":{"message":"Chrome Web Storen maksut"},"iap_unavailable":{"message":"Sovelluksen sis\u00e4iset maksut eiv\u00e4t ole t\u00e4ll\u00e4 hetkell\u00e4 k\u00e4ytett\u00e4viss\u00e4."},"please_sign_in":{"message":"Kirjaudu sis\u00e4\u00e4n Chromeen."},"jwt_retrieve_failed":{"message":"The transaction could not be completed."}}.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\fil\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):515
                                                    Entropy (8bit):4.699741311937528
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"craw_app_unavailable":{"message":"Kasalukuyang hindi available ang app."},"craw_connect_to_network":{"message":"Mangyaring kumonekta sa isang network."},"app_name":{"message":"Mga Pagbabayad sa Chrome Web Store"},"app_description":{"message":"Mga Pagbabayad sa Chrome Web Store"},"iap_unavailable":{"message":"Kasalukuyang hindi available ang Mga Pagbabayad na In-App."},"please_sign_in":{"message":"Mangyaring mag-sign in sa Chrome."},"jwt_retrieve_failed":{"message":"The transaction could not be completed."}}.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\fr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):562
                                                    Entropy (8bit):4.717150188929866
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"craw_app_unavailable":{"message":"Application indisponible pour le moment."},"craw_connect_to_network":{"message":"Veuillez vous connecter \u00e0 un r\u00e9seau."},"app_name":{"message":"Paiements via le Chrome\u00a0Web\u00a0Store"},"app_description":{"message":"Paiements via le Chrome\u00a0Web\u00a0Store"},"iap_unavailable":{"message":"Les paiements via l'application ne sont pas disponibles pour le moment."},"please_sign_in":{"message":"Veuillez vous connecter \u00e0 Chrome."},"jwt_retrieve_failed":{"message":"The transaction could not be completed."}}.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\hi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):1055
                                                    Entropy (8bit):4.454461505283053
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"craw_app_unavailable":{"message":"\u0910\u092a\u094d\u0932\u093f\u0915\u0947\u0936\u0928 \u0907\u0938 \u0938\u092e\u092f \u0909\u092a\u0932\u092c\u094d\u0927 \u0928\u0939\u0940\u0902 \u0939\u0948."},"craw_connect_to_network":{"message":"\u0915\u0943\u092a\u092f\u093e \u0928\u0947\u091f\u0935\u0930\u094d\u0915 \u0938\u0947 \u0915\u0928\u0947\u0915\u094d\u091f \u0915\u0930\u0947\u0902."},"app_name":{"message":"Chrome \u0935\u0947\u092c \u0938\u094d\u091f\u094b\u0930 \u092d\u0941\u0917\u0924\u093e\u0928"},"app_description":{"message":"Chrome \u0935\u0947\u092c \u0938\u094d\u091f\u094b\u0930 \u092d\u0941\u0917\u0924\u093e\u0928"},"iap_unavailable":{"message":"\u0907\u0928-\u0910\u092a \u092d\u0941\u0917\u0924\u093e\u0928 \u0905\u092d\u0940 \u0909\u092a\u0932\u092c\u094d\u0927 \u0928\u0939\u0940\u0902 \u0939\u0948."},"please_sign_in":{"message":"\u0915\u0943\u092a\u092f\u093e Chrome \u092e\u0947\u0902 \u0938\u093e\u0907\u0928 \u0907\u0928 \u0915\u0930\u0947\u0902."},"jwt_retrieve_failed":
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\hr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):503
                                                    Entropy (8bit):4.819520019697578
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"craw_app_unavailable":{"message":"Aplikacija trenuta\u010dno nije dostupna."},"craw_connect_to_network":{"message":"Pove\u017eite se s mre\u017eom."},"app_name":{"message":"Pla\u0107anja u web-trgovini Chrome"},"app_description":{"message":"Pla\u0107anja u web-trgovini Chrome"},"iap_unavailable":{"message":"Pla\u0107anje u aplikaciji trenuta\u010dno nije dostupno."},"please_sign_in":{"message":"Prijavite se na Chrome."},"jwt_retrieve_failed":{"message":"The transaction could not be completed."}}.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\th\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):945
                                                    Entropy (8bit):4.801079428724355
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "............... Chrome .........".. },.. "app_name": {.. "message": "............... Chrome .........".. },.. "craw_app_unavailable": {.. "message": ".............................".. },.. "craw_connect_to_network": {.. "message": ".........................".. },.. "iap_unavailable": {.. "message": "...............................................".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "................. Chrome".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\tr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):631
                                                    Entropy (8bit):4.710869622361971
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome Web Ma.azas. .demeleri".. },.. "app_name": {.. "message": "Chrome Web Ma.azas. .demeleri".. },.. "craw_app_unavailable": {.. "message": "Uygulama .u anda kullan.lam.yor.".. },.. "craw_connect_to_network": {.. "message": "L.tfen bir a.a ba.lan.n.".. },.. "iap_unavailable": {.. "message": "Uygulama ..i .demeler .u anda kullan.lamaz.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "L.tfen Chrome'da oturum a..n.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\uk\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):720
                                                    Entropy (8bit):4.977397623063544
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "....... ...-........ Chrome".. },.. "app_name": {.. "message": "....... ...-........ Chrome".. },.. "craw_app_unavailable": {.. "message": "........ ......... ...........".. },.. "craw_connect_to_network": {.. "message": "............. .. .......".. },.. "iap_unavailable": {.. "message": "....... ..... ........ ..... .. .........".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "........ . Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\vi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):695
                                                    Entropy (8bit):4.855375139026009
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Thanh to.n tr.n c.a h.ng Chrome tr.c tuy.n".. },.. "app_name": {.. "message": "Thanh to.n tr.n c.a h.ng Chrome tr.c tuy.n".. },.. "craw_app_unavailable": {.. "message": ".ng d.ng hi.n kh.ng kh. d.ng.".. },.. "craw_connect_to_network": {.. "message": "Vui l.ng k.t n.i v.i m.ng.".. },.. "iap_unavailable": {.. "message": "Thanh to.n trong .ng d.ng hi.n kh.ng kh. d.ng.".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "Vui l.ng ..ng nh.p v.o Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\zh_CN\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):595
                                                    Entropy (8bit):5.210259193489374
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome .........".. },.. "app_name": {.. "message": "Chrome .........".. },.. "craw_app_unavailable": {.. "message": ".........".. },.. "craw_connect_to_network": {.. "message": ".......".. },.. "iap_unavailable": {.. "message": "............".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "... Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_locales\zh_TW\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):634
                                                    Entropy (8bit):5.386215984611281
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app_description": {.. "message": "Chrome ............".. },.. "app_name": {.. "message": "Chrome ............".. },.. "craw_app_unavailable": {.. "message": ".............".. },.. "craw_connect_to_network": {.. "message": "......".. },.. "iap_unavailable": {.. "message": "................".. },.. "jwt_retrieve_failed": {.. "message": "The transaction could not be completed.".. },.. "please_sign_in": {.. "message": "... Chrome.".. }..}..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\_metadata\verified_contents.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):7780
                                                    Entropy (8bit):5.791315351651491
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: [{"description":"treehash per file","signed_content":{"payload":"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
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\craw_window.js
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):261316
                                                    Entropy (8bit):5.444466092380538
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: /*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var b,k=k||{};k.scope={};k.createTemplateTagFirstArg=function(a){return a.raw=a};k.createTemplateTagFirstArgWithRaw=function(a,c){a.raw=c;return a};k.arrayIteratorImpl=function(a){var c=0;return function(){return c<a.length?{done:!1,value:a[c++]}:{done:!0}}};k.arrayIterator=function(a){return{next:k.arrayIteratorImpl(a)}};k.makeIterator=function(a){var c="undefined"!=typeof Symbol&&Symbol.iterator&&a[Symbol.iterator];return c?c.call(a):k.arrayIterator(a)};.k.arrayFromIterator=function(a){for(var c,d=[];!(c=a.next()).done;)d.push(c.value);return d};k.arrayFromIterable=function(a){return a instanceof Array?a:k.arrayFromIterator(k.makeIterator(a))};k.ASSUME_ES5=!1;k.ASSUME_NO_NATIVE_MAP=!1;k.ASSUME_NO_NATIVE_SET=!1;k.SIMPLE_FROUND_POLYFILL=!1;k.ISOLATE_POLYFILLS=!1;k.FORCE_POLYFILL_PROMISE=!1;k.FORCE_POLYFILL_PROMISE_WHEN_NO_UNHANDLED_REJECTION=!1;.k.objectCreate=k.ASSUME_ES5||"function"==typeof Object.cre
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\css\craw_window.css
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text
                                                    Category:dropped
                                                    Size (bytes):1741
                                                    Entropy (8bit):4.912380256743454
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: html, body {. margin: 0;. overflow: hidden;.}..webview {. width: 100%;. height: 100%;. min-height: 100%;. position: absolute;.}...craw_overlay {. position: absolute;.. left: 0;. top: 0;. right: 0;. bottom: 0;.. background-color: white;.. -webkit-transition: opacity 250ms linear;.. display: -webkit-flex;. -webkit-flex-direction: column;. -webkit-flex: 1 0%;. -webkit-align-items: center;. -webkit-justify-content: center;.. -webkit-app-region: drag;.}...craw_overlay img {. margin: 16px;.}..#loading_overlay {. opacity: 1;.}..#offline_overlay {. opacity: 0;. display: none;.}..#offline_overlay > img {. -webkit-filter: saturate(0%);.}..#offline_overlay > span {. font-family: 'Open Sans', 'Deja Vu Sans', Arial, sans-serif;. font-size: 15px;. line-height: 21px;. color: #8d8d8d;. display: block;.}..#loading_splash {. width: 128px;. height: 128px;.}..#drag_overlay {. position: absolute;. left: 0;. top: 0;. right: 0;. bottom: 0;. pointer-events: none;. -webkit
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\html\craw_window.html
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:HTML document, ASCII text
                                                    Category:dropped
                                                    Size (bytes):810
                                                    Entropy (8bit):4.723481385335562
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: <!DOCTYPE html>.<html>. <head>. <link href="/css/craw_window.css" rel="stylesheet">. <script src="/craw_window.js"></script>. </head>. <body>. <webview></webview>. <div class="craw_overlay" id="loading_overlay">. <img src="/images/icon_128.png" />. <img src="/images/flapper.gif" />. </div>. <div class="craw_overlay" id="offline_overlay">. <img src="/images/icon_128.png" />. <span id="app_unavailable"></span>. <span id="connect_to_network"></span>. </div>. <div id="drag_overlay"></div>. <div id="top_bar">. <div id='close_button'>. <img src='/images/topbar_floating_button_close.png'/>. </div>. <div id='maximize_button'>. <img src='/images/topbar_floating_button_maximize.png'/>. </div>. </div>. </body>.</html>.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\flapper.gif
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:GIF image data, version 89a, 30 x 30
                                                    Category:dropped
                                                    Size (bytes):70364
                                                    Entropy (8bit):7.119902236613185
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: GIF89a.......................................................!.......!..NETSCAPE2.0.....,.............9.:.h0.bT(6.!l.&..("g*k..JL1.[....o. .(:..B(.6."...Z.CUyh0.....j.C.z8..S....2.T'...Q..4 g|]$ueW.NyQ.IoL!AoF#9h>7.0t..%..,.@.m4..7..!.......,.............9.:.h0.bT(6.!l.&..("g*k..JL1.[....o. .(:..B(.6."...Z.CUyh0.....j.C.z8..S....2.T'...Q..4 g|]$ueW.NyQ.IoL!AoF#9h>7.0t..%..,.@.m4..7..!.......,............................................................................................................'..w=.....\.)._6.k..OF...n.#\~"....2b3..I.)..eu.Q.`.e......gr.?>.s.I0.....@.~.Tr.[8.+.,.;..EE....S.*f.....,.....B8/D..;.9.q......ukC...r.I.....j......BGY...o2J....+O4....X4.....cH%7....I.....0H!.!.....!.,.............................................................................................................................................................................................................p8.a$....hh@.4....X,A.0L..(....JX.j...,..........z.X.Q....jB.d....B..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\icon_128.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):4364
                                                    Entropy (8bit):7.915848007375225
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR..............>a.....IDATx..yp.....gF#.:,[H.l.l..8...`/.k....,!a7Km...E...Te..T.....J...p....%.(....+...3....eY.e...L.o...5....h4...\....{?....~.u.`0.....`0.....`0.....`.Y......[(.......).4....ai..w38.+....Bf././..]...{......8...3.....3W~OJ.. /...u6V.C..U.0.+._=.c..9.X.?....L....S@.L...m.0..>.C...L|TF.p5..f4M.,.V....8..a.<...RP..@)E,..E"...h.....!...-....,I..T..........m..._[[{w{{....{*.^......M.x..h4.h.....\.R.E....j).7.....h4.A.E....,. ...iii.Vj?2...=/.B.FK9P..@)=Rj..D".Y...2.B..x.}0...&J...2.......f.O..e.H.....!.J)'I..R....B............QJ;K..L...L.l".L~mhh.R.@).FFF~.L&...~.B.......u.........}.....~.....f..yUU...........^M...6......].,w.e..~.!$.C.R.....E(%e9.,....k..@...W8.........@...........O..@%.~..@.S..P.....`Tp...."...?ME..c......s...`..S1...7.b..aNE..k...3.yP.}.Ch.}......B..........IPE..C.<....T....k......Z..o_......g........P..A=y.J.)h..@.q.-.*].AU.4...F.M.....y%B]+ .\.~..9......:..=...r.....E].o...F..P........i...|....
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\icon_16.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):558
                                                    Entropy (8bit):7.505638146035601
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR................a....IDAT8...Mk.Q...;... .....F..QW.....F....J.?.w..7~......'.Q..B]... .QS...M&_w..b&.|`......p...f.?.D$.y^..........y*...\..Z..t6..oRj.@&.u..G.qN).t.-V*.>(.N.Ep]wFk.60o.]0.`Y..cT..Y.Tb.`DF.d..s.Z..E..9.4._C.._...%..*.^....4.l...Y..X..R..../...Wj+w0[.].._B.k.${.\.>.%...........lz .w.ALxo.2;..a...".p..S..&..uXS...<..6..[..zD.._.N+w.WbM7ye6X<...'(,=.r}........$f..5..P....k..."..8.s.<zgSm@.....).Y.....:e..|.....F...I..A$.....T?.....m....8.........N...z.....V..vd.h'....C.?.....H.;]..C.M.....9.b......IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\topbar_floating_button.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):160
                                                    Entropy (8bit):5.475799237015411
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR... ... .....szz.....tEXtSoftware.Adobe ImageReadyq.e<...BIDATx...Q..0......2...(p...~Z.}'.>I%O...V!s..................../...`.<..`.....IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\topbar_floating_button_close.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):252
                                                    Entropy (8bit):6.512071394066515
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR... ... .....szz.....tEXtSoftware.Adobe ImageReadyq.e<....IDATx...... ..Pp.X....H...b@...|.^LC_.E.BP+......X.P..........q..~..p/. ..s.....%D^...$......@.!...<...).?.4{.k.G3...4..[cH..0..l.8.!r..m.R..{..........`.f...#.x.....IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\topbar_floating_button_hover.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):160
                                                    Entropy (8bit):5.423186859407619
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR... ... .....szz.....tEXtSoftware.Adobe ImageReadyq.e<...BIDATx...A..0...+B.z.s...*.....$.<u..[...................h.......C.CA).....IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\topbar_floating_button_maximize.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):166
                                                    Entropy (8bit):5.8155898293424775
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR... ... .....szz.....tEXtSoftware.Adobe ImageReadyq.e<...HIDATx......0.CQS.......~..."..........m.v+Sq....<!...M8m...'...@$..0....E........IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\images\topbar_floating_button_pressed.png
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                                    Category:dropped
                                                    Size (bytes):160
                                                    Entropy (8bit):5.46068685940762
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: .PNG........IHDR... ... .....szz.....tEXtSoftware.Adobe ImageReadyq.e<...BIDATx...A..0...+B..@wu...*.....$.<u..[...................h.........M..x(....IEND.B`.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1536688842\CRX_INSTALL\manifest.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):1322
                                                    Entropy (8bit):5.449026004350873
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "app": {.. "background": {.. "scripts": [ "craw_background.js" ].. }.. },.. "default_locale": "en",.. "description": "__MSG_APP_DESCRIPTION__",.. "display_in_launcher": false,.. "display_in_new_tab_page": false,.. "icons": {.. "128": "images/icon_128.png",.. "16": "images/icon_16.png".. },.. "key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrKfMnLqViEyokd1wk57FxJtW2XXpGXzIHBzv9vQI/01UsuP0IV5/lj0wx7zJ/xcibUgDeIxobvv9XD+zO1MdjMWuqJFcKuSS4Suqkje6u+pMrTSGOSHq1bmBVh0kpToN8YoJs/P/yrRd7FEtAXTaFTGxQL4C385MeXSjaQfiRiQIDAQAB",.. "manifest_version": 2,.. "minimum_chrome_version": "29",.. "name": "__MSG_APP_NAME__",.. "oauth2": {.. "auto_approve": true,.. "client_id": "203784468217.apps.googleusercontent.com",.. "scopes": [ "https://www.googleapis.com/auth/sierra", "https://www.googleapis.com/auth/sierrasandbox", "https://www.googleapis.com/auth/chromewebstore", "https://www.googleapis.com/auth/chromewebstore.readonly" ].. },.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\am\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:HTML document, ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):18473
                                                    Entropy (8bit):4.9869434152242516
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"1018984561488520517": {"message": "\u12ed\u1273\u1230\u122b\u120d"}, "1213957982723875920": {"message": "\u12a8\u121a\u12a8\u1270\u1209\u1275 \u12cd\u1235\u1325 \u12e8\u1275\u129b\u12cd\u1295 \u1290\u12cd \u12e8\u12a5\u122d\u1235\u12ce\u1295 \u12a0\u12cd\u1273\u1228 \u1218\u1228\u1265 \u1260\u12f0\u1295\u1265 \u12e8\u121a\u1308\u120d\u1338\u12cd?"}, "128276876460319075": {"message": "\u12e8\u1218\u1223\u122a\u12eb \u130d\u129d\u1275"}, "1428448869078126731": {"message": "\u12e8\u126a\u12f2\u12ee \u1208\u1235\u120b\u1233\u1290\u1275"}, "1522140683318860351": {"message": "\u130d\u1295\u1299\u1290\u1275 \u12a0\u120d\u1270\u1233\u12ab\u121d\u1362 \u12a5\u1263\u12ad\u12ce \u12a5\u1295\u12f0\u1308\u1293 \u12ed\u121e\u12ad\u1229\u1362"}, "1550904064710828958": {"message": "\u1208\u1235\u120b\u1233"}, "1636686747687494376": {"message": "\u1260\u1323\u121d \u12a0\u122a\u134d"}, "1802762746589457177": {"message": "\u12f5\u121d\u133d"}, "1850397500312020388": {"message": "\u1260$START_LINK$Goog
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ar\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:HTML document, ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):21121
                                                    Entropy (8bit):4.796131094067549
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"1018984561488520517": {"message": "\u064a\u062a\u0648\u0642\u0641"}, "1213957982723875920": {"message": "\u0623\u064a \u0645\u0646 \u0627\u0644\u0639\u0628\u0627\u0631\u0627\u062a \u0627\u0644\u062a\u0627\u0644\u064a\u0629 \u062a\u0645\u062b\u0644 \u0623\u0641\u0636\u0644 \u0648\u0635\u0641 \u0644\u0634\u0628\u0643\u062a\u0643\u061f"}, "128276876460319075": {"message": "\u0627\u0643\u062a\u0634\u0627\u0641 \u0627\u0644\u0623\u062c\u0647\u0632\u0629"}, "1428448869078126731": {"message": "\u0633\u0644\u0627\u0633\u0629 \u0627\u0644\u0641\u064a\u062f\u064a\u0648"}, "1522140683318860351": {"message": "\u062a\u0639\u0630\u0651\u0631 \u0627\u0644\u0627\u062a\u0635\u0627\u0644. \u064a\u0631\u062c\u0649 \u0627\u0644\u0645\u062d\u0627\u0648\u0644\u0629 \u0645\u0631\u0629 \u0623\u062e\u0631\u0649."}, "1550904064710828958": {"message": "\u0633\u0644\u0633"}, "1636686747687494376": {"message": "\u0645\u0645\u062a\u0627\u0632\u0629"}, "1802762746589457177": {"message": "\u0645\u0633\u062a\u0648\u
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\bg\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):18086
                                                    Entropy (8bit):5.408731329060678
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".......".. },.. "1213957982723875920": {.. "message": "... .. ........ ......... ...... ...-..... ....... ..?".. },.. "128276876460319075": {.. "message": "......... .. ..........".. },.. "1428448869078126731": {.. "message": "........ .. .........".. },.. "1522140683318860351": {.. "message": "........... .. .. ........ ...., ........ .......".. },.. "1550904064710828958": {.. "message": "......".. },.. "1636686747687494376": {.. "message": ".......".. },.. "1802762746589457177": {.. "message": ".... .. .....".. },.. "1850397500312020388": {.. "message": "....... .. ............ .. Chromecast . $START_LINK$............ Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "p
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\bn\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):19695
                                                    Entropy (8bit):5.315564774032776
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".... ...".. },.. "1213957982723875920": {.. "message": "..... ....... ..... ........... ...... ....... ...... ...?".. },.. "128276876460319075": {.. "message": "...... ........".. },.. "1428448869078126731": {.. "message": "...... ......... ...".. },.. "1522140683318860351": {.. "message": "..... .... ...... ....... ... ... .... ...... .....".. },.. "1550904064710828958": {.. "message": ".........".. },.. "1636686747687494376": {.. "message": "......".. },.. "1802762746589457177": {.. "message": ".....".. },.. "1850397500312020388": {.. "message": "$START_LINK$ Google
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ca\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15504
                                                    Entropy (8bit):5.242147131052711
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Es congela".. },.. "1213957982723875920": {.. "message": "Quina de les opcions.seg.ents descriu millor la vostra xarxa?".. },.. "128276876460319075": {.. "message": "Detecci. de dispositius".. },.. "1428448869078126731": {.. "message": "Flu.desa del v.deo".. },.. "1522140683318860351": {.. "message": "S'ha produ.t un error en la connexi.. Torneu-ho a provar.".. },.. "1550904064710828958": {.. "message": "Correcta".. },.. "1636686747687494376": {.. "message": "Perfecta".. },.. "1802762746589457177": {.. "message": "Volum".. },.. "1850397500312020388": {.. "message": "Pots veure el Chromecast a l'$START_LINK$aplicaci. Google.Home$END_LINK$?$START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\cs\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15552
                                                    Entropy (8bit):5.406413558584244
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Video zamrz.".. },.. "1213957982723875920": {.. "message": "Kter. popis nejl.pe vystihuje va.i s..?".. },.. "128276876460319075": {.. "message": "Zji..ov.n. za..zen.".. },.. "1428448869078126731": {.. "message": "Plynulost videa".. },.. "1522140683318860351": {.. "message": "P.ipojen. se nezda.ilo. Zkuste to pros.m znovu.".. },.. "1550904064710828958": {.. "message": "Plynul.".. },.. "1636686747687494376": {.. "message": "Perfektn.".. },.. "1802762746589457177": {.. "message": "Hlasitost".. },.. "1850397500312020388": {.. "message": "Vid.te sv.j Chromecast v.$START_LINK$aplikaci Google Home $END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\da\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15340
                                                    Entropy (8bit):5.2479291792849105
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Fryser".. },.. "1213957982723875920": {.. "message": "Hvilket af f.lgende udsagn beskriver bedst dit netv.rk?".. },.. "128276876460319075": {.. "message": "Enhedsregistrering".. },.. "1428448869078126731": {.. "message": "Videostabilitet".. },.. "1522140683318860351": {.. "message": "Forbindelsen blev afbrudt. Pr.v igen.".. },.. "1550904064710828958": {.. "message": "Problemfri".. },.. "1636686747687494376": {.. "message": "Perfekt".. },.. "1802762746589457177": {.. "message": "Lydstyrke".. },.. "1850397500312020388": {.. "message": "Kan du se din Chromecast i $START_LINK$ Google Home-appen$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },.. "STAR
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\de\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15555
                                                    Entropy (8bit):5.258022363187752
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "H.ngenbleiben".. },.. "1213957982723875920": {.. "message": "Welche dieser Aussagen beschreibt dein Netzwerk am besten?".. },.. "128276876460319075": {.. "message": "Ger.teerkennung".. },.. "1428448869078126731": {.. "message": "Videowiedergabequalit.t".. },.. "1522140683318860351": {.. "message": "Fehler beim Herstellen der Verbindung. Bitte versuche es noch einmal.".. },.. "1550904064710828958": {.. "message": "St.rungsfrei".. },.. "1636686747687494376": {.. "message": "Perfekt".. },.. "1802762746589457177": {.. "message": "Lautst.rke".. },.. "1850397500312020388": {.. "message": "Siehst du deinen Chromecast in der $START_LINK$Google Home App$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\el\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):17941
                                                    Entropy (8bit):5.465343004010711
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".......".. },.. "1213957982723875920": {.. "message": ".... ... .. ........ .......... ........ .. ...... ...;".. },.. "128276876460319075": {.. "message": ".......... ........".. },.. "1428448869078126731": {.. "message": "......... ......".. },.. "1522140683318860351": {.. "message": "........ ......... ......... .....".. },.. "1550904064710828958": {.. "message": ".....".. },.. "1636686747687494376": {.. "message": "......".. },.. "1802762746589457177": {.. "message": "...... ....".. },.. "1850397500312020388": {.. "message": "........ .. ..... .. Chromecast .... $START_LINK$........ Google Home$END_LINK$; $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\en\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):14897
                                                    Entropy (8bit):5.197356586852831
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Freezes".. },.. "1213957982723875920": {.. "message": "Which of the following best describes your network?".. },.. "128276876460319075": {.. "message": "Device Discovery".. },.. "1428448869078126731": {.. "message": "Video Smoothness".. },.. "1522140683318860351": {.. "message": "Connection failed. Please try again.".. },.. "1550904064710828958": {.. "message": "Smooth".. },.. "1636686747687494376": {.. "message": "Perfect".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Are you able to see your Chromecast in the $START_LINK$ Google Home app$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },.. "START
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\es\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15560
                                                    Entropy (8bit):5.236752363299121
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Congelaci.n de im.genes".. },.. "1213957982723875920": {.. "message": ".Cu.l de las siguientes respuestas describe mejor tu red?".. },.. "128276876460319075": {.. "message": "Detecci.n de dispositivo".. },.. "1428448869078126731": {.. "message": "Fluidez del v.deo".. },.. "1522140683318860351": {.. "message": "Error en la conexi.n. Vuelve a intentarlo.".. },.. "1550904064710828958": {.. "message": "V.deo fluido".. },.. "1636686747687494376": {.. "message": "Perfecta".. },.. "1802762746589457177": {.. "message": "Volumen".. },.. "1850397500312020388": {.. "message": ".Puedes ver tu Chromecast en la $START_LINK$aplicaci.n Google.Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\et\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15139
                                                    Entropy (8bit):5.228213017029721
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Hangub".. },.. "1213957982723875920": {.. "message": "Milline j.rgmistest v.idetest kirjeldab k.ige paremini teie v.rku?".. },.. "128276876460319075": {.. "message": "Seadme tuvastamine".. },.. "1428448869078126731": {.. "message": "Video sujuvus".. },.. "1522140683318860351": {.. "message": ".hendamine eba.nnestus. Proovige uuesti.".. },.. "1550904064710828958": {.. "message": ".htlane".. },.. "1636686747687494376": {.. "message": "T.iuslik".. },.. "1802762746589457177": {.. "message": "Helitugevus".. },.. "1850397500312020388": {.. "message": "Kas n.ete oma Chromecasti $START_LINK$rakenduses Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\fa\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):17007
                                                    Entropy (8bit):5.486206928823098
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".... ... .......".. },.. "1213957982723875920": {.. "message": ".... .. .. ..... ... .... ... .. .. ...... ... ..... .......".. },.. "128276876460319075": {.. "message": "..... ......".. },.. "1428448869078126731": {.. "message": "..... .....".. },.. "1522140683318860351": {.. "message": "..... ...... .... ..... ...... ...... .....".. },.. "1550904064710828958": {.. "message": "....".. },.. "1636686747687494376": {.. "message": "....".. },.. "1802762746589457177": {.. "message": "..... ...".. },.. "1850397500312020388": {.. "message": ".... ......... Chromecast ... .. .. $START_LINK$ ...... Google Home$END_LINK$ ....... $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\fi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15265
                                                    Entropy (8bit):5.268294112434671
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Pys.htyy".. },.. "1213957982723875920": {.. "message": "Mik. seuraavista kuvaa parhaiten verkkoasi?".. },.. "128276876460319075": {.. "message": "Laitteiden tunnistaminen".. },.. "1428448869078126731": {.. "message": "Videon tasaisuus".. },.. "1522140683318860351": {.. "message": "Yhteys ep.onnistui. Yrit. uudelleen.".. },.. "1550904064710828958": {.. "message": "Tasainen".. },.. "1636686747687494376": {.. "message": "T.ydellinen".. },.. "1802762746589457177": {.. "message": "..nenvoimakkuus".. },.. "1850397500312020388": {.. "message": "N.etk. Chromecastisi $START_LINK$Google Home .sovelluksessa$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\fil\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15570
                                                    Entropy (8bit):5.1924418176212646
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Hindi gumagalaw".. },.. "1213957982723875920": {.. "message": "Alin sa sumusunod ang pinakamahusay na naglalarawan sa iyong network?".. },.. "128276876460319075": {.. "message": "Pagtuklas ng Device".. },.. "1428448869078126731": {.. "message": "Pagka-smooth ng Video".. },.. "1522140683318860351": {.. "message": "Hindi nakakonekta. Pakisubukang muli.".. },.. "1550904064710828958": {.. "message": "Smooth".. },.. "1636686747687494376": {.. "message": "Perpekto".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Nakikita mo ba ang iyong Chromecast sa $START_LINK$ Google Home app$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\fr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15826
                                                    Entropy (8bit):5.277877116547859
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Se fige".. },.. "1213957982723875920": {.. "message": "Parmi les propositions suivantes, laquelle d.crit le mieux votre r.seau.?".. },.. "128276876460319075": {.. "message": "D.tection d'appareils".. },.. "1428448869078126731": {.. "message": "Fluidit. de la vid.o".. },.. "1522140683318860351": {.. "message": ".chec de la connexion. Veuillez r.essayer.".. },.. "1550904064710828958": {.. "message": "Fluide".. },.. "1636686747687494376": {.. "message": "Parfaite".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Votre Chromecast est-il visible dans l'$START_LINK$application Google.Home$END_LINK$.? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\gu\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):19260
                                                    Entropy (8bit):5.326067910239208
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".....".. },.. "1213957982723875920": {.. "message": "........... .... ..... .......... ....... ..... ... ..?".. },.. "128276876460319075": {.. "message": "..... ...".. },.. "1428448869078126731": {.. "message": "........ ......".. },.. "1522140683318860351": {.. "message": "....... ...... ..... .... ..... ..... ...... ....".. },.. "1550904064710828958": {.. "message": "....".. },.. "1636686747687494376": {.. "message": ".....".. },.. "1802762746589457177": {.. "message": ".......".. },.. "1850397500312020388": {.. "message": "... ... $START_LINK$ Google Home ..$END_LINK$... Chromecast..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\hi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):19387
                                                    Entropy (8bit):5.329218714975947
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".....".. },.. "1213957982723875920": {.. "message": "..... ... .. ... .... ....... .. .... ..... ..... .... ..?".. },.. "128276876460319075": {.. "message": "...... ...".. },.. "1428448869078126731": {.. "message": "...... .........".. },.. "1522140683318860351": {.. "message": "....... ..... ..... .... ...... .....".. },.. "1550904064710828958": {.. "message": ".......".. },.. "1636686747687494376": {.. "message": ".....".. },.. "1802762746589457177": {.. "message": ".....".. },.. "1850397500312020388": {.. "message": ".... .. $START_LINK$ Google Home .........$END_LINK$ ... .... Ch
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\hr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15503
                                                    Entropy (8bit):5.29020775977578
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Zamrzavanje".. },.. "1213957982723875920": {.. "message": "Koje od sljede.eg najbolje opisuje va.u mre.u?".. },.. "128276876460319075": {.. "message": "Otkrivanje ure.aja".. },.. "1428448869078126731": {.. "message": "Ujedna.enost videoreprodukcije".. },.. "1522140683318860351": {.. "message": "Povezivanje nije uspjelo. Poku.ajte ponovo.".. },.. "1550904064710828958": {.. "message": "Glatko".. },.. "1636686747687494376": {.. "message": "Savr.ena".. },.. "1802762746589457177": {.. "message": "Glasno.a".. },.. "1850397500312020388": {.. "message": "Vidite li svoj Chromecast u $START_LINK$aplikaciji Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\hu\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15682
                                                    Entropy (8bit):5.354505633120392
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Lefagy".. },.. "1213957982723875920": {.. "message": "Az al.bbiak k.z.l melyik jellemzi legjobban h.l.zat.t?".. },.. "128276876460319075": {.. "message": "Eszk.zfelfedez.s".. },.. "1428448869078126731": {.. "message": "Vide. folyamatoss.ga".. },.. "1522140683318860351": {.. "message": "Sikertelen kapcsol.d.s. K.rj.k, pr.b.lja .jra.".. },.. "1550904064710828958": {.. "message": "Folyamatos".. },.. "1636686747687494376": {.. "message": "T.k.letes".. },.. "1802762746589457177": {.. "message": "Hanger.".. },.. "1850397500312020388": {.. "message": "L.tja a Chromecastot a $START_LINK$Google Home alkalmaz.sban$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content":
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\id\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15070
                                                    Entropy (8bit):5.190057470347349
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Membeku".. },.. "1213957982723875920": {.. "message": "Dari berikut ini, manakah yang paling mendeskripsikan jaringan Anda?".. },.. "128276876460319075": {.. "message": "Penemuan Perangkat".. },.. "1428448869078126731": {.. "message": "Kelancaran Video".. },.. "1522140683318860351": {.. "message": "Sambungan gagal. Coba lagi.".. },.. "1550904064710828958": {.. "message": "Lancar".. },.. "1636686747687494376": {.. "message": "Sempurna".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Bisakah Anda melihat Chromecast di $START_LINK$aplikasi Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\it\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15256
                                                    Entropy (8bit):5.210663765771143
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Si blocca".. },.. "1213957982723875920": {.. "message": "Quale delle seguenti definizioni descrive meglio la tua rete?".. },.. "128276876460319075": {.. "message": "Rilevamento dispositivi".. },.. "1428448869078126731": {.. "message": "Uniformit. video".. },.. "1522140683318860351": {.. "message": "Connessione non riuscita. Riprova.".. },.. "1550904064710828958": {.. "message": "Fluido".. },.. "1636686747687494376": {.. "message": "Perfetta".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Riesci a vedere il tuo dispositivo Chromecast nell'$START_LINK$app Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ja\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):16519
                                                    Entropy (8bit):5.675556017051063
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "...".. },.. "1213957982723875920": {.. "message": "................................".. },.. "128276876460319075": {.. "message": "......".. },.. "1428448869078126731": {.. "message": ".......".. },.. "1522140683318860351": {.. "message": ".......................".. },.. "1550904064710828958": {.. "message": "...".. },.. "1636686747687494376": {.. "message": "....".. },.. "1802762746589457177": {.. "message": "..".. },.. "1850397500312020388": {.. "message": "$START_LINK$Google Home ...$END_LINK$. Chromecast .........$START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\kn\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):20406
                                                    Entropy (8bit):5.312117131662377
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "....... .........".. },.. "1213957982723875920": {.. "message": "...... ...... ..... ........... ..... ......... ............?".. },.. "128276876460319075": {.. "message": "..... ........".. },.. "1428448869078126731": {.. "message": "........ .......".. },.. "1522140683318860351": {.. "message": "...... ........... ........ ..... ...........".. },.. "1550904064710828958": {.. "message": ".....".. },.. "1636686747687494376": {.. "message": ".....".. },.. "1802762746589457177": {.. "message": "........".. },.. "1850397500312020388": {.. "message": ".... $
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ko\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15480
                                                    Entropy (8bit):5.617756574352461
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "...".. },.. "1213957982723875920": {.. "message": ".. . .. .. ..... .. . .... ... .....?".. },.. "128276876460319075": {.. "message": ".. ..".. },.. "1428448869078126731": {.. "message": "... ..".. },.. "1522140683318860351": {.. "message": ".... ...... .. ... ....".. },.. "1550904064710828958": {.. "message": "...".. },.. "1636686747687494376": {.. "message": "...".. },.. "1802762746589457177": {.. "message": "..".. },.. "1850397500312020388": {.. "message": "$START_LINK$Google Home .$END_LINK$. Chromecast. .....? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\lt\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15802
                                                    Entropy (8bit):5.354550839818046
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Stringa".. },.. "1213957982723875920": {.. "message": "Kuris i. toliau pateikt. teigini. geriausiai apib.dina j.s. tinkl.?".. },.. "128276876460319075": {.. "message": ".renginio suradimas".. },.. "1428448869078126731": {.. "message": "Vaizdo .ra.o sklandumas".. },.. "1522140683318860351": {.. "message": ".vyko ry.io klaida. Bandykite dar kart..".. },.. "1550904064710828958": {.. "message": "Leid.iama skland.iai".. },.. "1636686747687494376": {.. "message": "Puiki".. },.. "1802762746589457177": {.. "message": "Garsumas".. },.. "1850397500312020388": {.. "message": "Ar .Chromecast. rodomas $START_LINK$programoje .Google Home.$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\lv\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15891
                                                    Entropy (8bit):5.36794040601742
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".Iesald.ts. att.ls".. },.. "1213957982723875920": {.. "message": "Kur. no t.l.k min.tajiem apgalvojumiem vislab.k raksturo j.su t.klu?".. },.. "128276876460319075": {.. "message": "Ier.ces atra.ana".. },.. "1428448869078126731": {.. "message": "Video vienm.r.ba".. },.. "1522140683318860351": {.. "message": "Neizdev.s izveidot savienojumu. L.dzu, m..iniet v.lreiz.".. },.. "1550904064710828958": {.. "message": "Vienm.r.gs att.ls".. },.. "1636686747687494376": {.. "message": "Nevainojama".. },.. "1802762746589457177": {.. "message": "Ska.ums".. },.. "1850397500312020388": {.. "message": "Vai j.su Chromecast ier.ce ir redzama $START_LINK$lietotn. Google.Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ml\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):20995
                                                    Entropy (8bit):5.346788032166745
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "...........".. },.. "1213957982723875920": {.. "message": "................ ..... ....... ...... ....... ......... ............. .................?".. },.. "128276876460319075": {.. "message": "...... .........".. },.. "1428448869078126731": {.. "message": "...... ...............".. },.. "1522140683318860351": {.. "message": "...... .............. ....... ...........".. },.. "1550904064710828958": {.. "message": ".........".. },.. "1636686747687494376": {.. "message": "........".. },.. "1802762746589457177": {.. "message"
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\mr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):19625
                                                    Entropy (8bit):5.311040089989635
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "......".. },.. "1213957982723875920": {.. "message": "......... ..... ...... ......... ............ ..... ....?".. },.. "128276876460319075": {.. "message": "........ ...".. },.. "1428448869078126731": {.. "message": "....... .......".. },.. "1522140683318860351": {.. "message": "....... ....... ..... ..... ...... ....... ....".. },.. "1550904064710828958": {.. "message": ".... ..... .....".. },.. "1636686747687494376": {.. "message": "....".. },.. "1802762746589457177": {.. "message": ".........".. },.. "1850397500312020388": {.. "message": "...... $START_LINK$ Goo
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ms\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15330
                                                    Entropy (8bit):5.193447909498091
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Tidak bergerak".. },.. "1213957982723875920": {.. "message": "Antara yang berikut, manakah yang terbaik menggambarkan rangkaian anda?".. },.. "128276876460319075": {.. "message": "Penemuan Peranti".. },.. "1428448869078126731": {.. "message": "Kelancaran Video".. },.. "1522140683318860351": {.. "message": "Sambungan gagal. Sila cuba lagi.".. },.. "1550904064710828958": {.. "message": "Lancar".. },.. "1636686747687494376": {.. "message": "Sempurna".. },.. "1802762746589457177": {.. "message": "Kelantangan".. },.. "1850397500312020388": {.. "message": "Adakah anda dapat melihat Chromecast anda dalam $START_LINK$ apl Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content":
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\nb\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:HTML document, ASCII text, with very long lines, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):12194
                                                    Entropy (8bit):5.525086072392163
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {"1018984561488520517": {"message": "Fryser"}, "1213957982723875920": {"message": "Hvilket av f\u00f8lgende eksempler beskriver nettverket ditt best?"}, "128276876460319075": {"message": "Enhetsgjenkjenning"}, "1428448869078126731": {"message": "Videojevnhet"}, "1522140683318860351": {"message": "Tilkoblingen mislyktes. Pr\u00f8v p\u00e5 nytt."}, "1550904064710828958": {"message": "Jevn"}, "1636686747687494376": {"message": "Perfekt"}, "1802762746589457177": {"message": "Volum"}, "1850397500312020388": {"message": "Ser du Chromecasten din i $START_LINK$Google Home-appen$END_LINK$? $START_SPAN$*$END_SPAN$", "placeholders": {"END_LINK": {"content": "$1"}, "END_SPAN": {"content": "$2"}, "START_LINK": {"content": "$3"}, "START_SPAN": {"content": "$4"}}}, "1850397500312020388_ph": {"message": "</a>\ue000</span>\ue000<a href=\"https://support.google.com/chromecast/answer/2998456\" target=\"_blank\">\ue000<span class=\"required-message\" ng-show=\"!top.sufficientFeedback\">"}, "21457524299732
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\nl\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15321
                                                    Entropy (8bit):5.221228928144735
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Loopt vast".. },.. "1213957982723875920": {.. "message": "Welke beschrijving past het beste bij je netwerk?".. },.. "128276876460319075": {.. "message": "Apparaatdetectie".. },.. "1428448869078126731": {.. "message": "Vloeiendheid van de video".. },.. "1522140683318860351": {.. "message": "Kan geen verbinding maken. Probeer het opnieuw.".. },.. "1550904064710828958": {.. "message": "Vloeiend".. },.. "1636686747687494376": {.. "message": "Perfect".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": "Zie je je Chromecast in de $START_LINK$Google Home app$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\pl\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15418
                                                    Entropy (8bit):5.346020722930065
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Zatrzymuje si.".. },.. "1213957982723875920": {.. "message": "Kt.ra z tych opcji najlepiej opisuje Twoj. sie.?".. },.. "128276876460319075": {.. "message": "Wykrywanie urz.dze.".. },.. "1428448869078126731": {.. "message": "P.ynno.. obrazu".. },.. "1522140683318860351": {.. "message": "Nie uda.o si. nawi.za. po..czenia. Spr.buj ponownie.".. },.. "1550904064710828958": {.. "message": "P.ynna".. },.. "1636686747687494376": {.. "message": "Idealna".. },.. "1802762746589457177": {.. "message": "G.o.no..".. },.. "1850397500312020388": {.. "message": "Czy Chromecasta wida. w.$START_LINK$aplikacji Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\pt\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15475
                                                    Entropy (8bit):5.239856689212255
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Congela".. },.. "1213957982723875920": {.. "message": "Qual das seguintes alternativas melhor descreve sua rede?".. },.. "128276876460319075": {.. "message": "Detec..o de dispositivos".. },.. "1428448869078126731": {.. "message": "Suavidade da reprodu..o do v.deo".. },.. "1522140683318860351": {.. "message": "Falha na conex.o. Tente novamente.".. },.. "1550904064710828958": {.. "message": "Suave".. },.. "1636686747687494376": {.. "message": "Perfeita".. },.. "1802762746589457177": {.. "message": "Volume".. },.. "1850397500312020388": {.. "message": ". poss.vel encontrar seu Chromecast no $START_LINK$app Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ro\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15655
                                                    Entropy (8bit):5.288239072087021
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Redare cu bloc.ri".. },.. "1213957982723875920": {.. "message": "Care dintre urm.toarele descrie cel mai bine re.eaua ta?".. },.. "128276876460319075": {.. "message": "Descoperirea dispozitivelor".. },.. "1428448869078126731": {.. "message": "Calitatea red.rii videoclipului".. },.. "1522140683318860351": {.. "message": "Conexiunea nu s-a stabilit. .ncerca.i din nou.".. },.. "1550904064710828958": {.. "message": "Redare lin.".. },.. "1636686747687494376": {.. "message": "Redare perfect.".. },.. "1802762746589457177": {.. "message": "Volum".. },.. "1850397500312020388": {.. "message": "Chromecastul dvs. apare .n $START_LINK$ aplica.ia Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ru\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):17686
                                                    Entropy (8bit):5.471928545648783
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".........".. },.. "1213957982723875920": {.. "message": "..... .. ......... .... ........ ............. ..... ....?".. },.. "128276876460319075": {.. "message": "........ . ............ .........".. },.. "1428448869078126731": {.. "message": "............... .....".. },.. "1522140683318860351": {.. "message": ".. ....... .......... ........... ......... ........".. },.. "1550904064710828958": {.. "message": "....... ...............".. },.. "1636686747687494376": {.. "message": "........".. },.. "1802762746589457177": {.. "message": ".........".. },.. "1850397500312020388": {.. "message": ".. ...... .... .......... Chromecast . $START_LINK$........
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\sk\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15733
                                                    Entropy (8bit):5.409011445299871
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Zam.za".. },.. "1213957982723875920": {.. "message": "Ktor. z nasleduj.cich skuto.nost. najlep.ie popisuj. va.u sie.?".. },.. "128276876460319075": {.. "message": "Vyh.ad.vanie zariaden.".. },.. "1428448869078126731": {.. "message": "Plynulos. videa".. },.. "1522140683318860351": {.. "message": "Pripojenie zlyhalo. Sk.ste to znova.".. },.. "1550904064710828958": {.. "message": "Plynul.".. },.. "1636686747687494376": {.. "message": "V.born.".. },.. "1802762746589457177": {.. "message": "Hlasitos.".. },.. "1850397500312020388": {.. "message": "Vid.te svoj Chromecast v.$START_LINK$aplik.cii Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3"..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\sl\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15628
                                                    Entropy (8bit):5.292871661441512
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Zamrzne".. },.. "1213957982723875920": {.. "message": "Kaj od tega najbolje opi.e va.e omre.je?".. },.. "128276876460319075": {.. "message": "Odkrivanje naprav".. },.. "1428448869078126731": {.. "message": "Teko.e predvajanje videoposnetka".. },.. "1522140683318860351": {.. "message": "Vzpostavitev povezave ni uspela. Poskusite znova.".. },.. "1550904064710828958": {.. "message": "Teko.e".. },.. "1636686747687494376": {.. "message": "Odli.no".. },.. "1802762746589457177": {.. "message": "Glasnost".. },.. "1850397500312020388": {.. "message": "Ali je Chromecast viden v $START_LINK$aplikaciji Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\sr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):17766
                                                    Entropy (8bit):5.432888569680161
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "......... ..".. },.. "1213957982723875920": {.. "message": ".... .. ........ ...... ....... ....... .....?".. },.. "128276876460319075": {.. "message": "......... .......".. },.. "1428448869078126731": {.. "message": "........ ............ ..... ......".. },.. "1522140683318860351": {.. "message": ".......... .... ....... ........ .......".. },.. "1550904064710828958": {.. "message": "... .......".. },.. "1636686747687494376": {.. "message": ".......".. },.. "1802762746589457177": {.. "message": "...... .....".. },.. "1850397500312020388": {.. "message": "...... .. .. ...... Chromecast . $START_LINK$.......... Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\sv\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15135
                                                    Entropy (8bit):5.258962752997426
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Fastnar tillf.lligt".. },.. "1213957982723875920": {.. "message": "Vilket av f.ljande beskriver ditt n.tverk b.st?".. },.. "128276876460319075": {.. "message": "Enhetsidentifiering".. },.. "1428448869078126731": {.. "message": "J.mn videouppspelning".. },.. "1522140683318860351": {.. "message": "Det gick inte att ansluta. F.rs.k igen.".. },.. "1550904064710828958": {.. "message": "Flyter p.".. },.. "1636686747687494376": {.. "message": "Perfekt".. },.. "1802762746589457177": {.. "message": "Volym".. },.. "1850397500312020388": {.. "message": "Visas din Chromecast i $START_LINK$ Google Home-appen$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\sw\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15156
                                                    Entropy (8bit):5.216902945207334
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Inasita kucheza".. },.. "1213957982723875920": {.. "message": "Ni gani kati ya zifuatazo inaelezea mtandao wako vizuri?".. },.. "128276876460319075": {.. "message": "Kupata Kifaa".. },.. "1428448869078126731": {.. "message": "Ulaini wa Kutiririsha Video".. },.. "1522140683318860351": {.. "message": "Imeshindwa kuunganisha. Tafadhali jaribu tena.".. },.. "1550904064710828958": {.. "message": "Laini".. },.. "1636686747687494376": {.. "message": "Bora".. },.. "1802762746589457177": {.. "message": "Sauti".. },.. "1850397500312020388": {.. "message": "Je, unaweza kuona Chromecast yako katika $START_LINK$ programu ya Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\ta\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):20531
                                                    Entropy (8bit):5.2537196877590056
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "....... .........".. },.. "1213957982723875920": {.. "message": "................ ... ...... .............. ...... ........ ...........?".. },.. "128276876460319075": {.. "message": "...... .............".. },.. "1428448869078126731": {.. "message": ".......... ..... .....".. },.. "1522140683318860351": {.. "message": "...... ............ ........ .........".. },.. "1550904064710828958": {.. "message": "..... ......".. },.. "1636686747687494376": {.. "message": "........".. },.. "1802762746589457177": {.. "message": "......."
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\te\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):20496
                                                    Entropy (8bit):5.301173454436774
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "........".. },.. "1213957982723875920": {.. "message": "..... .......... ... .. ........... ....... ........ ............?".. },.. "128276876460319075": {.. "message": "..... ..... ....".. },.. "1428448869078126731": {.. "message": "...... ...... ......".. },.. "1522140683318860351": {.. "message": "........ .......... ...... ..... ..............".. },.. "1550904064710828958": {.. "message": ".......".. },.. "1636686747687494376": {.. "message": "......... ....".. },.. "1802762746589457177": {.. "message": "........".. },.. "185039750031202038
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\th\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):18849
                                                    Entropy (8bit):5.3815746250038305
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "....".. },.. "1213957982723875920": {.. "message": ".............................................".. },.. "128276876460319075": {.. "message": "...............".. },.. "1428448869078126731": {.. "message": "....................".. },.. "1522140683318860351": {.. "message": "................... ...............".. },.. "1550904064710828958": {.. "message": ".......".. },.. "1636686747687494376": {.. "message": "..........".. },.. "1802762746589457177": {.. "message": "..........".. },.. "1850397500312020388": {.. "message": ".......... Chromecast ..... $
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\tr\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):15542
                                                    Entropy (8bit):5.336342457334077
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "Donuyor".. },.. "1213957982723875920": {.. "message": "A..n.z. a.a..dakilerden hangisi en iyi .ekilde tan.mlar?".. },.. "128276876460319075": {.. "message": "Cihaz Bulma".. },.. "1428448869078126731": {.. "message": "Videonun D.zg.n Oynat.lmas.".. },.. "1522140683318860351": {.. "message": "Ba.lant. ba.ar.s.z oldu. L.tfen tekrar deneyin.".. },.. "1550904064710828958": {.. "message": "D.zg.n".. },.. "1636686747687494376": {.. "message": "M.kemmel".. },.. "1802762746589457177": {.. "message": "Ses d.zeyi".. },.. "1850397500312020388": {.. "message": "Chromecast'inizi $START_LINK$Google Home uygulamas.nda$END_LINK$ g.rebiliyor musunuz? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {..
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\uk\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):17539
                                                    Entropy (8bit):5.492873573147444
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": ".......".. },.. "1213957982723875920": {.. "message": ".. . ............ ..... ........ ...... .... ......?".. },.. "128276876460319075": {.. "message": "......... ........".. },.. "1428448869078126731": {.. "message": "......... ........... .....".. },.. "1522140683318860351": {.. "message": ".. ....... ............. ......... ........".. },.. "1550904064710828958": {.. "message": "...... ...........".. },.. "1636686747687494376": {.. "message": "......".. },.. "1802762746589457177": {.. "message": "........".. },.. "1850397500312020388": {.. "message": ".. ...... .. .... ........ Chromecast . $START_LINK$....... Google Home$END_LINK$? $START_SPAN$*$END_SPAN$",.. "placeho
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\vi\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with very long lines, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):16011
                                                    Entropy (8bit):5.466848470908827
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "D.ng h.nh".. },.. "1213957982723875920": {.. "message": "Tr..ng h.p n.o sau ..y m. t. ..ng nh.t m.ng c.a b.n?".. },.. "128276876460319075": {.. "message": "Kh.m ph. thi.t b.".. },.. "1428448869078126731": {.. "message": ".. m..t c.a video".. },.. "1522140683318860351": {.. "message": "K.t n.i kh.ng th.nh c.ng. Vui l.ng th. l.i.".. },.. "1550904064710828958": {.. "message": "M..t m.".. },.. "1636686747687494376": {.. "message": "Ho.n h.o".. },.. "1802762746589457177": {.. "message": ".m l..ng".. },.. "1850397500312020388": {.. "message": "B.n c. th. nh.n th.y Chromecast c.a m.nh trong $START_LINK$.ng d.ng Google Home$END_LINK$ kh.ng? $START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "conte
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\zh\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):14773
                                                    Entropy (8bit):5.670562029027517
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "..".. },.. "1213957982723875920": {.. "message": "..................".. },.. "128276876460319075": {.. "message": "....".. },.. "1428448869078126731": {.. "message": ".....".. },.. "1522140683318860351": {.. "message": ".........".. },.. "1550904064710828958": {.. "message": "..".. },.. "1636686747687494376": {.. "message": "..".. },.. "1802762746589457177": {.. "message": "..".. },.. "1850397500312020388": {.. "message": "... $START_LINK$Google Home ..$END_LINK$...... Chromecast ..$START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },.. "START_SPAN": {.
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\_locales\zh_TW\messages.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:UTF-8 Unicode text, with CRLF line terminators
                                                    Category:dropped
                                                    Size (bytes):14981
                                                    Entropy (8bit):5.7019494203747865
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {.. "1018984561488520517": {.. "message": "....".. },.. "1213957982723875920": {.. "message": "................".. },.. "128276876460319075": {.. "message": "....".. },.. "1428448869078126731": {.. "message": ".....".. },.. "1522140683318860351": {.. "message": "...........".. },.. "1550904064710828958": {.. "message": "..".. },.. "1636686747687494376": {.. "message": "..".. },.. "1802762746589457177": {.. "message": "..".. },.. "1850397500312020388": {.. "message": ".... $START_LINK$Google Home ....$END_LINK$...... Chromecast ..$START_SPAN$*$END_SPAN$",.. "placeholders": {.. "END_LINK": {.. "content": "$1".. },.. "END_SPAN": {.. "content": "$2".. },.. "START_LINK": {.. "content": "$3".. },.. "
                                                    C:\Users\alfredo\AppData\Local\Temp\scoped_dir4808_1712113858\CRX_INSTALL\manifest.json
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:ASCII text, with very long lines
                                                    Category:dropped
                                                    Size (bytes):1980
                                                    Entropy (8bit):4.855422406261543
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: {."update_url": "https://clients2.google.com/service/update2/crx",.. "background": {. "persistent": false,. "scripts": [. "common.js",. "mirroring_common.js",. "background_script.js". ]. },. "content_security_policy": "default-src 'self'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; script-src 'self' https://apis.google.com https://feedback.googleusercontent.com https://www.google.com https://www.gstatic.com; child-src https://accounts.google.com https://content.googleapis.com https://www.google.com; connect-src 'self' http://*:* https://*:*; font-src https://fonts.gstatic.com;",. "default_locale": "en",. "description": "Provider for discovery and services for mirroring of Chrome Media Router",. "externally_connectable": {. "ids": [. "idmofbkcelhplfjnmmdolenpigiiiecc",. "ggedfkijiiammpnbdadhllnehapomdge",. "njjegkblellcjnakomndbaloifhcoccg". ]. },. "manifest_version": 2,. "minimum_chrome_version": "37",. "name": "
                                                    C:\Users\alfredo\AppData\Roaming\Microsoft\Spelling\en-US\default.dic
                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                    File Type:Little-endian UTF-16 Unicode text, with no line terminators
                                                    Category:dropped
                                                    Size (bytes):2
                                                    Entropy (8bit):1.0
                                                    Encrypted:false
                                                    SSDEEP:
                                                    MD5:D41D8CD98F00B204E9800998ECF8427E
                                                    SHA1:DA39A3EE5E6B4B0D3255BFEF95601890AFD80709
                                                    SHA-256:E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855
                                                    SHA-512:CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E
                                                    Malicious:false
                                                    Reputation:low
                                                    Preview: ..

                                                    Static File Info

                                                    No static file info