Windows Analysis Report
BreakTimer.exe

Overview

General Information

Sample name: BreakTimer.exe
Analysis ID: 1532862
MD5: a86aa82eff1c7e6872a16295ee4d1073
SHA1: f0c14ff7c94756b8e3b72b31aca01f14cf40a685
SHA256: fdadda85a982743f57f65c8a76a95b067d10c8c85f6fc8ac520cf84d8a86ad8f
Infos:

Detection

Score: 8
Range: 0 - 100
Whitelisted: false
Confidence: 0%

Signatures

Creates a process in suspended mode (likely to inject code)
Drops PE files
Enables security privileges
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
Found dropped PE file which has not been started or loaded
IP address seen in connection with other malware
Installs a raw input device (often for capturing keystrokes)
Monitors certain registry keys / values for changes (often done to protect autostart functionality)
Queries keyboard layouts
Queries the volume information (name, serial number etc) of a device
Sample file is different than original file name gathered from version info
Sigma detected: CurrentVersion Autorun Keys Modification
Sigma detected: Direct Autorun Keys Modification
Sigma detected: Potential Persistence Attempt Via Run Keys Using Reg.EXE
Uses 32bit PE files
Uses reg.exe to modify the Windows registry
Very long cmdline option found, this is very uncommon (may be encrypted or packed)

Classification

Source: BreakTimer.exe Static PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Programs\breaktimer\LICENSE.electron.txt Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\dist\renderer.prod.js.LICENSE.txt Jump to behavior
Source: BreakTimer.exe Static PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: ffmpeg.dll.pdb source: BreakTimer.exe, 00000000.00000003.3116603222.0000000002F03000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdb source: BreakTimer.exe, 00000000.00000003.3115317600.0000000002F01000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: vulkan-1.dll.pdb source: BreakTimer.exe, 00000000.00000003.3071349995.0000000005B20000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3061904095.0000000004F90000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3061157968.0000000002FD0000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdbGCTL source: BreakTimer.exe, 00000000.00000003.3115317600.0000000002F01000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: electron.exe.pdb source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: libGLESv2.dll.pdb source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: vk_swiftshader.dll.pdb source: BreakTimer.exe, 00000000.00000003.3071349995.0000000005E98000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3130419193.0000000002F08000.00000004.00000020.00020000.00000000.sdmp
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\locales Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app\main Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app\main\dist Jump to behavior
Source: Joe Sandbox View IP Address: 162.159.61.3 162.159.61.3
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: BreakTimer.exe, 00000005.00000000.3610942609.00007FF6D9F45000.00000002.00000001.01000000.0000000D.sdmp String found in binary or memory: V8.MemoryHeapUsedV8.MemoryHeapCommittedmail.google.com.gmaildrive.google.com.docsplus.google.com.plusinbox.google.com.inboxcalendar.google.com.calendarwww.youtube.com.youtube.top10sina.com.cnfacebook.combaidu.comqq.comtwitter.comtaobao.comlive.com equals www.youtube.com (Youtube)
Source: BreakTimer.exe, 00000005.00000000.3610942609.00007FF6D9F45000.00000002.00000001.01000000.0000000D.sdmp String found in binary or memory: www.youtube.com equals www.youtube.com (Youtube)
Source: global traffic DNS traffic detected: DNS query: chrome.cloudflare-dns.com
Source: unknown HTTP traffic detected: POST /dns-query HTTP/1.1Host: chrome.cloudflare-dns.comConnection: keep-aliveContent-Length: 128Accept: application/dns-messageAccept-Language: *User-Agent: ChromeAccept-Encoding: identityContent-Type: application/dns-message
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1085
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1452
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1452expand_integer_pow_expressionsThe
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1512
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1637
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/1936
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/2046
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/2152
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/2152skip_vs_constant_register_zeroIn
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/2273
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/2978
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3027
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3045
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3246
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3246allow_clear_for_robust_resource_initSome
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3682
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3682allowES3OnFL10_0Allow
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3729
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/3997
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/4214
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/4267
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/4646
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/4722
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/4722forceRobustResourceInitForce-enable
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/482
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5007
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5007disable_anisotropic_filteringDisable
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5469
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5658
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5658GPU.ANGLE.DisplayInitializeMSFrontend
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5750
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/5750enableCompressingPipelineCacheInThreadPoolEnable
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/6041
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://anglebug.com/6041forceInitShaderVariablesForce-enable
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://cgit.freedesktop.org/xorg/xserver/tree/COPYING
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://cldr.unicode.org/index/downloads
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://code.google.com/p/smhasher/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://code.google.com/p/v8
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/1094869
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/110263
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/1165751
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/1165751Disable
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/1171371
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/308366
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/403957
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/550292
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/565179
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/642227
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/642605
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/644669
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/650547
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/672380
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/709351
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/797243
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/809422
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/830046
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/849576
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/883276
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/927470
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/941620
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://crbug.com/941620allow_translate_uniform_block_to_structured_bufferThere
Source: BreakTimer.exe, 00000000.00000003.3433132625.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://dev.w3.org/html5/spec-author-view/spec.html#mediaerror).
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://devel.freebsoft.org/speechd
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://developer.android.com/tools/extras/support-library.html
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://developers.google.com/speed/webp
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://docs.closure-library.googlecode.com/git/closure_goog_date_date.js.source.html
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ecma-international.org/ecma-262/7.0/#sec-ecmascript-function-objects-call-thisargument-argume
Source: BreakTimer.exe, 00000000.00000003.3497951124.000000000595C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497799397.0000000005944000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3499489836.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508281652.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ecma-international.org/ecma-262/7.0/#sec-object.keys)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ecma-international.org/ecma-262/7.0/#sec-properties-of-the-map-prototype-object)
Source: BreakTimer.exe, 00000000.00000003.3497951124.000000000595C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497799397.0000000005944000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ecma-international.org/ecma-262/7.0/#sec-samevaluezero)
Source: BreakTimer.exe, 00000000.00000003.3497951124.000000000595C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497799397.0000000005944000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ecma-international.org/ecma-262/7.0/#sec-tolength).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://ejohn.org/blog/javascript-micro-templating/)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://exslt.org/common
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://exslt.org/commonnode-set../../third_party/blink/renderer/core/xml/xslt_extensions.ccxsltNewSe
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3534363954.0000000005AB2000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://fb.me/prop-types-in-prod
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://fb.me/use-check-prop-types
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://fedorahosted.org/lohit>
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://git.linuxtv.org/v4l-utils.git
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://github.com/garycourt/murmurhash-js
Source: BreakTimer.exe, 00000000.00000003.3559066290.000000000594A000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://github.com/garycourt/uri-js
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://github.com/homebrewing/brauhaus-diff
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://google.github.io/snappy/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://icl.com/saxon
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://icl.com/saxonorg.apache.xalan.xslt.extensions.RedirectxsltDocumentElem:
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://id.wikisource.org/wiki/Pedoman_Umum_Ejaan_Bahasa_Indonesia_yang_Disempurnakan
Source: BreakTimer.exe, 00000000.00000003.3137168481.000000000592C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136866197.0000000005921000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136265028.0000000005928000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://int3.de/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://labs.creativecommons.org/licenses/zero-waive/1.0/us/legalcode>
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/add-inverted-param/
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/define-locale/
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/dst-shifted/
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3522265865.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516608711.0000000005945000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/js-date/
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/min-max/
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://momentjs.com/guides/#/warnings/zone/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://mxr.mozilla.org/comm-central/source/mozilla/netwerk/base/src/nsURLParsers.cpp
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508368633.0000000005966000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3507872099.0000000005AAE000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://new.gramota.ru/spravka/buro/search-answer?s=242637
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508368633.0000000005966000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3507872099.0000000005AAE000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://new.gramota.ru/spravka/rules/139-prop
Source: BreakTimer.exe, 00000000.00000000.2049949378.000000000040A000.00000008.00000001.01000000.00000003.sdmp String found in binary or memory: http://nsis.sf.net/NSIS_ErrorError
Source: BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553689635.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553689635.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://opensource.org/licenses/BSD-3-Clause
Source: BreakTimer.exe, 00000000.00000003.3522265865.0000000005950000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://opensource.org/licenses/MIT).
Source: BreakTimer.exe, 00000000.00000003.3220730641.0000000005AD5000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136101106.000000000594C000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://palantir.com/
Source: BreakTimer.exe, 00000000.00000003.3220730641.0000000005AD5000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136101106.000000000594C000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://palantir.com/http://palantir.com/http://palantir.com/http://palantir.com/Palantir
Source: BreakTimer.exe, 00000000.00000003.3433132625.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://paulbakaus.com/tutorials/html5/web-audio-on-ios/
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://peter.michaux.ca/articles/lazy-function-definition-pattern)
Source: BreakTimer.exe, 00000000.00000003.3433280026.000000000595D000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://placehold.it/32x32
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://scripts.sil.org/OFL
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://sites.google.com/site/murmurhash/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://source.android.com/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://source.android.com/compatibility)
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://src.chromium.org/viewvc/chrome/trunk/deps/third_party/xz/COPYING
Source: BreakTimer.exe, 00000000.00000003.3497799397.000000000592C000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://stackoverflow.com/a/1068308/13216
Source: BreakTimer.exe, 00000000.00000003.3433132625.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://stackoverflow.com/questions/24119684
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://tukaani.org/xz/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://valgrind.org
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://webkit.org/
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://wonko.com/post/html-escaping)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://wpad/wpad.dat
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://wpad/wpad.dat../../net/proxy_resolution/pac_file_decider.ccDoWaitDoQuickCheck../../net/proxy_
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://wpad/wpad.dat../../net/proxy_resolution/win/proxy_config_service_win.cc~ProxyConfigServiceWin
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.apache.org/licenses/
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3399179573.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3250096848.000000000593D000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3252842803.000000000593D000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3211625560.0000000004D14000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3239286741.0000000005928000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3218244583.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3266383213.000000000593D000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3238941576.000000000594A000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3239013551.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3238670788.0000000005AD1000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3217753360.0000000005935000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3239105603.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3266916432.0000000004D66000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3197870997.0000000004D14000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3271025047.0000000005921000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3252916475.000000000594D000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3263817932.000000000593D000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3218482309.0000000005955000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.chromium.org
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/5.1/#sec-9.10
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/5.1/#sec-9.12
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/7.0/#sec-ecmascript-language-types)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/7.0/#sec-function.prototype.apply).
Source: BreakTimer.exe, 00000000.00000003.3497951124.000000000595C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3497799397.0000000005944000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/7.0/#sec-regexp.prototype.tostring
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.ecma-international.org/ecma-262/7.0/#sec-tointeger).
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.freedesktop.org/wiki/Software/xdg-user-dirs
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.gutenberg.org/ebooks/53).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.html5rocks.com/en/tutorials/developertools/sourcemaps/#toc-sourceurl)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd-//W3C//DTD
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.jclark.com/xt
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.linux-usb.org/usb-ids.html
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.mozilla.org/MPL/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.nongnu.org/freebangfont/downloads.html#mukti
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.ploscompbiol.org/static/license
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.strongtalk.org/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.suitable.com
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.suitable.com/tools/smslib.html
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.suitable.com/tools/smslib.html>
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508368633.0000000005966000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3507872099.0000000005AAE000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: http://www.unicode.org/cldr/charts/28/summary/ru.html#1753
Source: BreakTimer.exe, 00000000.00000003.2995821665.0000000005B20000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.unicode.org/copyright.html
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.webmproject.org/code/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://www.webrtc.org
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://xmlsoft.org/XSLT/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://xmlsoft.org/XSLT/namespace
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://xmlsoft.org/XSLT/namespacehttp://www.jclark.com/xtxsl:key
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://xmlsoft.org/XSLT/xsltNewExtDef
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: http://zlib.net/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://android.com/pay
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://android.googlesource.com/platform/external/setupdesign/
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://anglebug.com/4674
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://anglebug.com/4849
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://anglebug.com/5140
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons.gcp.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons.gcp.gvt2.com/domainreliability/uploadhttps://beacons.gvt2.com/domainreliability/uplo
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons2.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons3.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons4.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons5.gvt2.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://beacons5.gvt3.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://bit.ly/3rpDuEX.
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://bit.ly/3rpDuEX.WebBundleURLLoaderFactory::OnResponseParsedInvalid
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://bit.ly/audio-worklet)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://bit.ly/audio-worklet)ScriptProcessorHandler::ProcessScriptProcessorHandler::Process
Source: BreakTimer.exe, 00000000.00000003.3541185532.0000000005AAE000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://bugs.cGY
Source: BreakTimer.exe, 00000000.00000003.3541185532.0000000005AAE000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://bugs.ch=Y
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=3056
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=4118
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=8538
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553562792.0000000005AB2000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=885597.
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.android.clients.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.bigcache.googleapis.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.doc-0-0-sj.sj.googleusercontent.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.docs.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.drive.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.googlesyndication.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.pack.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.play.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://c.youtube.com/
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://chromium.googlesource.com/angle/angle/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://chromium.googlesource.com/chromium/src/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://chromium.googlesource.com/vulkan-deps/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://clients2.google.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://clients2.google.com/domainreliability/upload
Source: BreakTimer.exe, 00000000.00000003.3554450246.0000000005967000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553689635.0000000005965000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://code.google.com/p/closure-compiler/source/browse/trunk/src/com/google/debugging/sourcemap/Ba
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1042393
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1046462
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1091824
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1137851
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1144908
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1144908.
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1144908.The
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1144908Changing
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/1154140
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/593024
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/593024select_view_in_geometry_shaderThe
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/650547
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/650547call_clear_twiceUsing
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/655534
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/655534use_system_memory_for_constant_buffersCopying
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/705865
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/710443
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/811661
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/824383
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/824647
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/848952
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/927119
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://crbug.com/927119../../third_party/blink/renderer/core/script/script_loader.ccPrepareScriptEx
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://creativecommons.org/licenses/by/3.0/
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://css-tricks.com/debouncing-throttling-explained-examples/)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://datatracker.ietf.org/doc/draft-ietf-rtcweb-ip-handling.
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://dejavu-fonts.github.io/Download.html
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://developer.chrome.com/extensions/sandboxingEval).
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Object/is
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://developers.google.com/android/guides/setup
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://docs.google.com/
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553562792.0000000005AB2000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://docs.google.com/document/d/1U1RGAehQwRypUTovF1KRlpiOFze0b-_2gc6fAH0KY0k/edit#heading=h.535es
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553562792.0000000005AB2000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://docs.google.com/document/d/1U1RGAehQwRypUTovF1KRlpiOFze0b-_2gc6fAH0KY0k/edit?pli=1#
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://ecma-international.org/ecma-262/5.1/#sec-15.9.1.10
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://ecma-international.org/ecma-262/6.0/#sec-get-o-p
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://ecma-international.org/ecma-262/6.0/#sec-iteratorclose
Source: BreakTimer.exe, 00000000.00000003.3433280026.000000000595D000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://ecma-international.org/ecma-262/6.0/#sec-todatestring
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://ecma-international.org/ecma-262/9.0/#sec-promise-resolve
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://es5.github.io/#x13.2.2
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://es5.github.io/#x15.1.2.2)
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://example.org
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://example.orgExpired
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-devtools
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-devtools-faq
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-mock-scheduler
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-polyfills
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-strict-mode-find-node%s
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-warning-dont-call-proptypes
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/react-wrap-tests-with-act
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://fb.me/setstate-in-render
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gcp.gvt2.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gcp.gvt6.com/
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/B0k0
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/BYK
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/Cyan4973/xxHash
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/DevelopmentIL
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/GPUOpen-LibrariesAndSDKs/VulkanMemoryAllocator
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/GoogleChromeLabs/text-fragments-polyfill
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/JanisE
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/KhronosGroup/SPIRV-Cross
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/KhronosGroup/SPIRV-Headers.git
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/KhronosGroup/SPIRV-Tools.git
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/KhronosGroup/Vulkan-Headers
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/KhronosGroup/Vulkan-Loader
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/Manfre98
Source: BreakTimer.exe, 00000000.00000003.3239286741.0000000005928000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3218244583.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3221169977.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3222739346.0000000005929000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Microsoft/tslib.git
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Modernizr/Modernizr/blob/master/LICENSE
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Modernizr/Modernizr/blob/master/feature-detects/history.js
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508443062.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Oire
Source: BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Polymer/polymer-bundler/pull/519
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/Quenty31
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/ReactTraining/history/pull/289
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/ShahramMebashar
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/TalAter
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508443062.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/Viktorminator
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/WebBluetoothCG/web-bluetooth/blob/main/implementation-status.md
Source: BreakTimer.exe, 00000000.00000003.3537175346.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3554244139.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/WebReflection/get-own-property-symbols/issues/4
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/WikiDiscoverer
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/ZackVision
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/aawc/unrar.git
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/abdelsaid
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/adambrunner
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/aliem
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/amaranthrose
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516989471.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508281652.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/andela-batolagbe
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/andrewhood125
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/anthonylau
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/armendarabyan
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/askpt
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/atamyratabdy
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/avaly
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/bangnk
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/baryon
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/ben-lin
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/bkyceh
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/bmarkovic
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/boyaq
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/caio-ribeiro-pereira
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/cepem
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/chienkira
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/chyngyz
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516830336.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/crnjakovic
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/dordille/moment-isoduration/blob/master/moment.isoduration.js
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/erhangundogan
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/evoL
Source: BreakTimer.exe, 00000000.00000003.3543221379.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/facebook/react.git
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/facebook/react/issues/12502
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/facebook/react/issues/14365
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/facebook/react/issues/3877
Source: BreakTimer.exe, 00000000.00000003.3554345649.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/facebook/regenerator/tree/master/packages/regenerator-runtime
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/fadsel
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/flakerimi
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/floydpink
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/gholadr
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/desugar_jdk_libs
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/diff-match-patch/tree/master/javascript
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/distributed_point_functions
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/google-api-cpp-client/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/ruy
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/shell-encryption
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/ukey2
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/woff2
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/google/wuffs-mirror-release-c
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/gurdiga
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/hagmandan
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/harpreetkhalsagtbit
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/hehachris
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/hinrik
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/ibnesayeed
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/jalex79
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/javkhaanj7
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/johnideal
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/jonashdown
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/jorisroling
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/joshbrooks
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/juanghurtado
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/k2s
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/kalehv
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/karamell
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/kcthota
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508443062.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/kruyvanna
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/kwisatz
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/kyungw00k
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/lantip
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/le0tan
Source: BreakTimer.exe, 00000000.00000003.3537175346.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3554244139.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/ljharb/object.assign/issues/17
Source: BreakTimer.exe, 00000000.00000003.3238383967.0000000005935000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/lodash/lodash/blob/4.11.2/lodash.js#L3579
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/marobo
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mathiasbynens/String.prototype.at
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/mayanksinghal
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/mechuwind
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/middagj
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516830336.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/milan-j
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/miodragnikac
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/mmozuras
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3517070960.00000000008F3000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/moment/moment/issues/1423
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/moment/moment/issues/2166
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/moment/moment/issues/2978
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/moment/moment/issues/3375
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/moment/moment/pull/1871
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553562792.0000000005AB2000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mozilla/source-map/issues/16
Source: BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553689635.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mozilla/source-map/issues/30
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mozilla/source-map/issues/333
Source: BreakTimer.exe, 00000000.00000003.3548369260.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3553689635.0000000005946000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mozilla/source-map/pull/31
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/muminoff
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/mweimerskirch
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/narainsagar
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/nostalgiaz
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/nurlan
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/oerd
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/olado/doT).
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/orif-jr
Source: BreakTimer.exe, 00000000.00000003.3211550716.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3218244583.0000000005924000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/palantir/blueprint/issues/4165
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/passatgt
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/petrbela
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3543557660.0000000005967000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/pillarjs/path-to-regexp/blob/master/index.js#L202
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/rajeevnaikte
Source: BreakTimer.exe, 00000000.00000003.3542876454.0000000005AB6000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/reactjs/react-router/issues/586
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/rexxars
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/robin0van0der0v
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/rollup/rollup/issues/1771
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/ryanhart2
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/sampathsris
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/sedovsek
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/sigurdga
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/simplejson/simplejson
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/sirn
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/skakri
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/skfd
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3516535044.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508443062.0000000005965000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.0000000005965000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/socketpair
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/soniasimoes
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/stephenramthun
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/suupic
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/suvash
Source: BreakTimer.exe, 00000000.00000003.3341409946.0000000005925000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/tc39/proposal-collection-methods
Source: BreakTimer.exe, 00000000.00000003.3341471203.0000000004D91000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3399092891.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/tc39/proposal-iterator-helpers
Source: BreakTimer.exe, 00000000.00000003.3341409946.0000000005925000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3549913062.00000000051A9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3559738846.00000000051A9000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/tc39/proposal-object-iteration
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/tc39/proposal-seeded-random
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/tc39/proposal-seeded-random/blob/78b8258835b57fc2100d076151ab506bc3202ae6/demo.ht
Source: BreakTimer.exe, 00000000.00000003.3565658044.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3554345649.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/techdimension
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tensorflow/tensorflow
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tensorflow/text.git
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tensorflow/tflite-support
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/thanyawzinmin
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tk120404
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tomer
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/tyok
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/uu109
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/vnathalye
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/gamepad/pull/112
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/gamepad/pull/112Service
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/gamepad/pull/120
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/gamepad/pull/120Access
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/webappsec-permissions-policy/blob/master/features.md#sensor-features
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/w3c/webappsec-permissions-policy/blob/master/features.md#sensor-featuresDeviceOri
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/wasdk/wasmparser
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/web-animations/web-animations-js
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/xfh
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://github.com/zemlanin
Source: BreakTimer.exe, 00000000.00000003.2995547292.0000000005210000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/zenozeng
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/zloirock/core-js/issues/674
Source: BreakTimer.exe, 00000000.00000003.3399393059.000000000629D000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://github.com/zloirock/core-js/tree/v3#web-standards)
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gitlab.freedesktop.org/wayland/weston
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gitlab.freedesktop.org/xdg/xdgmime
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gitlab.freedesktop.org/xorg/proto/xproto/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/4NeimX
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/7K7WLu
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/7K7WLuThe
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/7K7WLuWebAudio.AutoplayWebAudio.Autoplay.CrossOriginWebAudio.Autoplay.UnlockType../..
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/EuHzyv
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/HxfxSQ
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/J6ASzs
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E5C000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/rStTGz
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/xX8pDD
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/xX8pDDplay()
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/ximf56
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://goo.gl/ximf56Iframe
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://google-analytics.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://google.com/pay
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://google.com/payhttps://android.com/paysecure-payment-confirmationAppStoreBillingPlaceHolderZZ
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://googlevideo.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gvt1.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gvt2.com/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://gvt6.com/
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://lodash.com/
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://lodash.com/)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://lodash.com/custom-builds).
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://lodash.com/icon.svg
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mathiasbynens.be/notes/ambiguous-ampersands)
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mathiasbynens.be/notes/javascript-unicode).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Number/isFinite).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Number/isInteger).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Number/isNaN)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Number/isSafeInteger).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Object/assign).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/String/replace).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/String/split).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/Structured_clone_algorithm)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/isNaN)
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/rest_parameters).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/spread_operator).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/toLowerCase).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mdn.io/toUpperCase).
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://mths.be/he).
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://nodejs.org/dist/latest/docs/api/util.html#util_custom_inspect_function_on_objects
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://pagure.io/lohit
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://play.google.com/billing
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://play.google.com/billingQuota
Source: BreakTimer.exe, 00000000.00000003.3543221379.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://reactjs.org/
Source: BreakTimer.exe, 00000000.00000003.3341471203.0000000004D91000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://rwaldron.github.io/proposal-math-extensions/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://sites.google.com/site/gaviotachessengine/Home/endgame-tablebases-1
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://skia.org/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://sourceforge.net/projects/wtl/files/WTL%2010/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://sqlite.org/
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://ssl.gstatic.com/
Source: BreakTimer.exe, 00000000.00000003.3137223777.0000000005938000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3137168481.000000000592C000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136866197.0000000005921000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3136265028.0000000005928000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://support.google.com/chrome/answer/6098869
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://swiftshader.googlesource.com/SwiftShader
Source: BreakTimer.exe, 00000000.00000003.3399092891.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://tc39.github.io/ecma262/#sec-date.prototype.toisostring
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://tc39.github.io/ecma262/#sec-math.clz32
Source: BreakTimer.exe, 00000000.00000003.3341471203.0000000004D91000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3399092891.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://tc39.github.io/ecma262/#sec-math.tanh
Source: BreakTimer.exe, 00000000.00000003.3341471203.0000000004D91000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://tc39.github.io/ecma262/#sec-object.prototype.tostring
Source: BreakTimer.exe, 00000000.00000003.3498607977.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://tools.ietf.org/html/rfc2822#section-3.3
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-append
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-delete
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-get
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-getall
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-has
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-set
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#dom-urlsearchparams-sort
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#interface-urlsearchparams
Source: BreakTimer.exe, 00000000.00000003.3399008268.0000000005930000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://url.spec.whatwg.org/#urlsearchparams-stringification-behavior
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://w3c.github.io/manifest/#installability-signals
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.bluetooth.com/specifications/gatt/characteristics
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.bluetooth.com/specifications/gatt/descriptors
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.bluetooth.com/specifications/gatt/services
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/4664843055398912
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E5C000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5093566007214080
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E5C000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5093566007214080Hyphenation.Openen-ASen-GUen-MHen-MPen-PRen-UMe
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E5C000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5636954674692096
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5644273861001216.
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5682658461876224.
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/5718547946799104
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/6662647093133312
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.chromestatus.com/feature/6662647093133312InputDeviceCapabilities
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3434128016.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.ecma-international.org/ecma-262/5.1/#sec-11.9.6
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.ecma-international.org/ecma-262/6.0/#sec-isaccessordescriptor
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.ecma-international.org/ecma-262/6.0/#sec-tointeger
Source: BreakTimer.exe, 00000000.00000003.3136918055.00000000061BC000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.electronjs.org/docs/tutorial/context-isolation
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006E10000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.google.com/
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.npmjs.com/package/babel-polyfill)
Source: BreakTimer.exe, 00000000.00000003.3239286741.0000000005928000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3218244583.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3221169977.0000000005924000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3222739346.0000000005929000.00000004.00000020.00020000.00000000.sdmp String found in binary or memory: https://www.typescriptlang.org/
Source: BreakTimer.exe, 00000000.00000003.3125350973.0000000002F04000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.2090335857.0000000005610000.00000004.00001000.00020000.00000000.sdmp String found in binary or memory: https://www.unicode.org/copyright.html.
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49985
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49984
Source: unknown Network traffic detected: HTTP traffic on port 49985 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49984 -> 443
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: GetRawInputData memstr_b56ade71-5
Source: C:\Users\user\Desktop\BreakTimer.exe Process token adjusted: Security
Source: BreakTimer.exe, 00000000.00000003.3130419193.0000000002F08000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenamevk_swiftshader.dll, vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3115317600.0000000002F01000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenamed3dcompiler_47.dllj% vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3073198391.0000000007310000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: OriginalFilename6 vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: OriginalFilenamevk_swiftshader.dll, vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: OriginalFilenamelibGLESv2.dllb! vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3120633699.0000000002F08000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenamelibGLESv2.dllb! vs BreakTimer.exe
Source: BreakTimer.exe, 00000000.00000003.3083012832.0000000002F0C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilename6 vs BreakTimer.exe
Source: BreakTimer.exe Static PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Windows\System32\reg.exe C:\Windows\system32\reg.exe ADD HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v BreakTimer /t REG_SZ /d "\"C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe\"" /f
Source: classification engine Classification label: clean8.winEXE@17/1061@1/1
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Programs Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Mutant created: \Sessions\1\BaseNamedObjects\2c4abae5-a54b-5eb0-83f9-4e155c414a68
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Mutant created: NULL
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Mutant created: \Sessions\1\BaseNamedObjects\Local\BreakTimerProcessSingletonStartup
Source: C:\Windows\System32\conhost.exe Mutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7004:120:WilError_03
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Temp\nsh1BE5.tmp Jump to behavior
Source: BreakTimer.exe Static PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
Source: C:\Users\user\Desktop\BreakTimer.exe File read: C:\Users\desktop.ini Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Key opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File read: C:\Windows\System32\drivers\etc\hosts
Source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: SELECT name FROM sqlite_master WHERE type='table';
Source: C:\Users\user\Desktop\BreakTimer.exe File read: C:\Users\user\Desktop\BreakTimer.exe Jump to behavior
Source: unknown Process created: C:\Users\user\Desktop\BreakTimer.exe "C:\Users\user\Desktop\BreakTimer.exe"
Source: unknown Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe"
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1632 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Windows\System32\reg.exe C:\Windows\system32\reg.exe ADD HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v BreakTimer /t REG_SZ /d "\"C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe\"" /f
Source: C:\Windows\System32\reg.exe Process created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --mojo-platform-channel-handle=2080 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
Source: C:\Windows\explorer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe"
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=7059029544 --mojo-platform-channel-handle=2328 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --disable-gpu-compositing --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7060022768 --mojo-platform-channel-handle=2756 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Windows\explorer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe"
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1632 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Windows\System32\reg.exe C:\Windows\system32\reg.exe ADD HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v BreakTimer /t REG_SZ /d "\"C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe\"" /f
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --mojo-platform-channel-handle=2080 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=7059029544 --mojo-platform-channel-handle=2328 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --disable-gpu-compositing --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7060022768 --mojo-platform-channel-handle=2756 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Windows\explorer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe"
Source: C:\Windows\explorer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe"
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: uxtheme.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: userenv.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: apphelp.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: propsys.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: dwmapi.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: cryptbase.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: oleacc.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: ntmarta.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: version.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: shfolder.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: kernel.appcore.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: windows.storage.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: wldp.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: iconcodecservice.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: windowscodecs.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: profapi.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: riched20.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: usp10.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: msls31.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: textshaping.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: textinputframework.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: coreuicomponents.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: coremessaging.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: coremessaging.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: wintypes.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: wintypes.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: wintypes.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: windows.staterepositoryps.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: windows.fileexplorer.common.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: iertutil.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: onecoreuapcommonproxystub.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: ntshrui.dll Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe Section loaded: sspicli.dll Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kbdus.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wldp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: nlaapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc6.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dnsapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: textinputframework.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: coreuicomponents.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: coremessaging.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windows.ui.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windowmanagementapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: inputhost.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: twinapi.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: twinapi.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: profapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wtsapi32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winsta.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mscms.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: coloradapterclient.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mmdevapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: devobj.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wpnapps.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: rmclient.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: xmllite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: usermgrcli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: onecoreuapcommonproxystub.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msxml6.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iconcodecservice.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windowscodecs.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dataexchange.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: d3d11.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dcomp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dxgi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwmapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windows.globalization.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: bcp47langs.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: bcp47mrm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msspellcheckingfacility.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: twinapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: explorerframe.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: atlthunk.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: oleacc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: directmanipulation.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msasn1.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptsp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: rsaenh.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: gpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptnet.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dxgi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: resourcepolicyclient.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mf.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mfplat.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: rtworkq.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msmpeg2vdec.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mfperfhelper.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptsp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dxva2.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msvproc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwmapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dcomp.dll
Source: C:\Windows\explorer.exe Section loaded: cdprt.dll
Source: C:\Windows\explorer.exe Section loaded: smartscreenps.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kbdus.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: nlaapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc6.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dnsapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: rasadhlp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: fwpuclnt.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kbdus.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wldp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: msimg32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kbdus.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Section loaded: wldp.dll
Source: C:\Users\user\Desktop\BreakTimer.exe Key value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32
Source: Window Recorder Window detected: More than 3 window changes detected
Source: BreakTimer.exe Static file information: File size 76936965 > 1048576
Source: BreakTimer.exe Static PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: ffmpeg.dll.pdb source: BreakTimer.exe, 00000000.00000003.3116603222.0000000002F03000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdb source: BreakTimer.exe, 00000000.00000003.3115317600.0000000002F01000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: vulkan-1.dll.pdb source: BreakTimer.exe, 00000000.00000003.3071349995.0000000005B20000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3061904095.0000000004F90000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3061157968.0000000002FD0000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdbGCTL source: BreakTimer.exe, 00000000.00000003.3115317600.0000000002F01000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: electron.exe.pdb source: BreakTimer.exe, 00000000.00000003.3072619505.0000000006EA5000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: libGLESv2.dll.pdb source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: vk_swiftshader.dll.pdb source: BreakTimer.exe, 00000000.00000003.3071349995.0000000005E98000.00000004.00001000.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3130419193.0000000002F08000.00000004.00000020.00020000.00000000.sdmp
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\SpiderBanner.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\nsis7z.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\System.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\StdUtils.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Programs\breaktimer\LICENSE.electron.txt Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File created: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\dist\renderer.prod.js.LICENSE.txt Jump to behavior
Source: C:\Windows\System32\reg.exe Registry value created or modified: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run BreakTimer
Source: C:\Windows\System32\reg.exe Registry value created or modified: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run BreakTimer
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Registry key monitored for changes: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Spelling
Source: C:\Users\user\Desktop\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process information set: NOOPENFILEERRORBOX
Source: C:\Windows\explorer.exe Window / User API: foregroundWindowGot 549
Source: C:\Windows\explorer.exe Window / User API: foregroundWindowGot 526
Source: C:\Users\user\Desktop\BreakTimer.exe Dropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\SpiderBanner.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe Dropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\nsis7z.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe Dropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\System.dll Jump to dropped file
Source: C:\Users\user\Desktop\BreakTimer.exe Dropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\StdUtils.dll Jump to dropped file
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Key opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Key opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Key opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Key opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Users\user\Desktop\BreakTimer.exe File Volume queried: C:\ FullSizeInformation Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File Volume queried: C:\Users\user\AppData\Roaming\BreakTimer\Code Cache\wasm FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File Volume queried: C:\Users\user\AppData\Roaming\BreakTimer\Code Cache\js FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File Volume queried: C:\Users\user\AppData\Roaming\BreakTimer\blob_storage\1755c74a-1a90-4f6b-9f39-cfdfaecb1e56 FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe File Volume queried: C:\Users\user\AppData\Roaming\BreakTimer\Cache\Cache_Data FullSizeInformation
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\locales Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app\main Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app Jump to behavior
Source: C:\Users\user\Desktop\BreakTimer.exe File opened: C:\Users\user\AppData\Local\Temp\nsi1D1F.tmp\7z-out\resources\app\app\main\dist Jump to behavior
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 5c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3222073370.0000000005ACA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}lib
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}qstvxy]/
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}T2
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{5 I
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: me#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f56t
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b} va
Source: BreakTimer.exe, 00000000.00000003.3220884169.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}iconSvgPaths.js
Source: BreakTimer.exe, 00000000.00000003.3536805047.000000000595F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: E#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}dID);a=b.child;
Source: BreakTimer.exe, 00000000.00000003.3305531065.0000000005AC6000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ata
Source: BreakTimer.exe, 00000000.00000003.3199665712.000000000595C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}sJ
Source: BreakTimer.exe, 00000000.00000003.3239105603.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}enus
Source: BreakTimer.exe, 00000000.00000003.3218706655.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}AK,MAAM,CAAC,IAAI,MAAM,CAAC,IAAI,CAAC,OAAO,CAAC,G
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}params.next[i]);
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}.TextHighlightRules;
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 8-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ORAGE#Volume#{a33c735c-61c
Source: BreakTimer.exe, 00000000.00000003.3264003518.000000000592E000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-0TU
Source: BreakTimer.exe, 00000000.00000003.3199665712.000000000595C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}s<
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}uaN"{
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 3c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA
Source: BreakTimer.exe, 00000000.00000003.3553689635.0000000005946000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}10
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROwJ#
Source: BreakTimer.exe, 00000000.00000003.3270842434.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bft|
Source: BreakTimer.exe, 00000000.00000003.3516608711.0000000005945000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 5c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}WSlNYv
Source: BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 4f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}= @l=e
Source: BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}mpH
Source: BreakTimer.exe, 00000000.00000003.3433425881.0000000005921000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}b}
Source: BreakTimer.exe, 00000000.00000003.3264748265.00000000061BE000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 07500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}W
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 3c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0$"Q
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: #{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}Mw
Source: BreakTimer.exe, 00000000.00000003.3251815826.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}utton.type = "button";
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}00
Source: BreakTimer.exe, 00000000.00000003.3198138806.0000000005953000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}pp
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: War&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}gn
Source: BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}WSlNYx
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}egex.start)
Source: BreakTimer.exe, 00000000.00000003.3251391079.0000000005965000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: "StackOverflowError|OutOfMemoryError|VirtualMachineError|"+
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}x) {
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 8-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}e = 6g
Source: BreakTimer.exe, 00000000.00000003.3433280026.000000000595D000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 00#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSU
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ou3G
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}_c
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}lfon
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 07500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}s
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}rs
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: }#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCS
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}a-
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}-e
Source: BreakTimer.exe, 00000000.00000003.3563803021.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: }\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}.getFoldWidgetRange(session, "all", row);
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: f-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3247816458.0000000005956000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}4fw
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}NYs
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&00000
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}?5
Source: BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ac_
Source: BreakTimer.exe, 00000000.00000003.3559304214.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bfaG
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ntin
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}/,
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}}
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 3c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}^g
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: (IsLinux() && isVMWare) || (IsAndroid() && isNvidia) || (IsAndroid() && GetAndroidSdkLevel() < 27 && IsAdreno5xxOrOlder(functions)) || (IsAndroid() && IsMaliT8xxOrOlder(functions)) || (IsAndroid() && IsMaliG31OrOlder(functions))
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 8-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}d-
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ctHa
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}sBa
Source: BreakTimer.exe, 00000000.00000003.3554151294.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}map-generator.js&V@
Source: BreakTimer.exe, 00000000.00000003.3248143384.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}node_modules
Source: BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}app
Source: BreakTimer.exe, 00000000.00000003.3433425881.0000000005947000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: &Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94R
Source: BreakTimer.exe, 00000000.00000003.3398777903.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: &Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94Q
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: lume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}lfon
Source: BreakTimer.exe, 00000000.00000003.3266835275.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0X
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: }\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ProK
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}N1
Source: BreakTimer.exe, 00000000.00000003.3211328928.000000000594A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}K
Source: BreakTimer.exe, 00000000.00000003.3534657376.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0
Source: BreakTimer.exe, 00000000.00000003.3266835275.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: #{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}tch.index;
Source: BreakTimer.exe, 00000000.00000003.3498973216.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}G
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}yg
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}H
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}E
Source: BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: -94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}mpH
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}C
Source: BreakTimer.exe, 00000000.00000003.3398557843.0000000005AB8000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}?
Source: BreakTimer.exe, 00000000.00000003.3136265028.0000000005928000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f56
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}>
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtua
Source: BreakTimer.exe, 00000000.00000003.3559148492.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\
Source: BreakTimer.exe, 00000000.00000003.3305531065.0000000005AC6000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}Y
Source: BreakTimer.exe, 00000000.00000003.3270383861.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}Z
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}V
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c
Source: BreakTimer.exe, 00000000.00000003.3270462170.0000000005945000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: &Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94=
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}Q
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4at
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}N
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}the !
Source: BreakTimer.exe, 00000000.00000003.3548512356.0000000005946000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}i
Source: BreakTimer.exe, 00000000.00000003.3199665712.000000000595C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}J~
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}h
Source: BreakTimer.exe, 00000000.00000003.3559304214.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}s
Source: BreakTimer.exe, 00000000.00000003.3220884169.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}e_modules
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}f
Source: BreakTimer.exe, 00000000.00000003.3499400174.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: f-11d0-94f2-00a0c91efb8b}\\ESTORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}C
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}{
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}e.js
Source: BreakTimer.exe, 00000000.00000003.3266835275.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b} token : "invalid.illegal.csound",
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}.mat:
Source: BreakTimer.exe, 00000000.00000003.3248143384.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}s
Source: BreakTimer.exe, 00000000.00000003.3198138806.0000000005953000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}t
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}r
Source: BreakTimer.exe, 00000000.00000003.3116603222.0000000002F03000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: VMware Screen Codec / VMware Video
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}m
Source: BreakTimer.exe, 00000000.00000003.3541361713.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}("../lib/oop");
Source: BreakTimer.exe, 00000000.00000003.3497799397.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: }\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}A
Source: BreakTimer.exe, 00000000.00000003.3247816458.0000000005956000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}node_modules
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}tch.index;
Source: BreakTimer.exe, 00000000.00000003.3534492926.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}s
Source: BreakTimer.exe, 00000000.00000003.3211404925.000000000595C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}UEP~~
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}res
Source: BreakTimer.exe, 00000000.00000003.3433280026.000000000595D000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_ViR
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: -94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}0c91efb8b}\\?\SCSI#CdRom&
Source: BreakTimer.exe, 00000000.00000003.3305531065.0000000005AC6000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}l32.dll,-21813
Source: BreakTimer.exe, 00000000.00000003.3217753360.0000000005955000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#Cd
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b})
Source: BreakTimer.exe, 00000000.00000003.3247898712.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCS
Source: BreakTimer.exe, 00000000.00000003.3222073370.0000000005ACA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}icons-16.woff
Source: BreakTimer.exe, 00000000.00000003.3559148492.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}Yy
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}!
Source: BreakTimer.exe, 00000000.00000003.3199665712.000000000595C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}lu
Source: BreakTimer.exe, 00000000.00000003.3251815826.0000000004DA1000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b};
Source: BreakTimer.exe, 00000000.00000003.3548794135.000000000593A000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}:
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: oDirectoryme#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{5
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}sB
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}6
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}/,
Source: BreakTimer.exe, 00000000.00000003.3198138806.0000000005953000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}1
Source: BreakTimer.exe, 00000000.00000003.3498137494.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}emver.js
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}0
Source: BreakTimer.exe, 00000000.00000003.3341409946.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: -94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}-
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}GIg
Source: BreakTimer.exe, 00000000.00000003.3248143384.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}null
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0cca
Source: BreakTimer.exe, 00000000.00000003.3563238722.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}4f4
Source: BreakTimer.exe, 00000000.00000003.3248051364.000000000629D000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 63}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4a
Source: BreakTimer.exe, 00000000.00000003.3516608711.0000000005945000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 6e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-0Z
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 00000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\?
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: &Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: War&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}on
Source: BreakTimer.exe, 00000000.00000003.3508014869.000000000593B000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 3c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtuah
Source: BreakTimer.exe, 00000000.00000003.3433901204.0000000004D14000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 6e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0?@
Source: BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: en_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3247816458.0000000005956000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?
Source: BreakTimer.exe, 00000000.00000003.3218706655.0000000004CD3000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}GV
Source: BreakTimer.exe, 00000000.00000003.3497799397.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}A<]
Source: BreakTimer.exe, 00000000.00000003.3341409946.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}.9_
Source: BreakTimer.exe, 00000000.00000003.3270842434.0000000004D9F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}A});
Source: BreakTimer.exe, 00000000.00000003.3541361713.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ics.cjs.js.J
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}}\\?\STORAGE#Volume#{a33c
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: ECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}e
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}00eb3
Source: BreakTimer.exe, 00000000.00000003.3563406430.0000000004D89000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#Cd
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCS
Source: BreakTimer.exe, 00000000.00000003.3433727332.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: #{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSq`'
Source: BreakTimer.exe, 00000000.00000003.3559148492.000000000593C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}tmp
Source: BreakTimer.exe, 00000000.00000003.3252986000.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b} token : "invalid.illegal.csound",
Source: BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}DWSl
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD0X
Source: BreakTimer.exe, 00000000.00000003.3252618910.0000000005AB9000.00000004.00000020.00020000.00000000.sdmp, BreakTimer.exe, 00000000.00000003.3251391079.0000000005965000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: "StackOverflowError|OutOfMemoryError|VirtualMachineError|"+
Source: BreakTimer.exe, 00000000.00000003.3516902229.0000000004D8F000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}sersd
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 00000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}of
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: ECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}te",5I
Source: BreakTimer.exe, 00000000.00000003.3433425881.0000000005921000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3341409946.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 3c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtuabd0
Source: BreakTimer.exe, 00000000.00000003.3264398989.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-RO
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Directory1ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3548710061.000000000592C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}shell32.dll,-21813
Source: BreakTimer.exe, 00000000.00000003.3497674114.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4a
Source: BreakTimer.exe, 00000000.00000003.3398925963.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}al:
Source: BreakTimer.exe, 00000000.00000003.3434207834.000000000593E000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 0000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&r@!
Source: BreakTimer.exe, 00000000.00000003.3116603222.0000000002F03000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: vmncVMware Screen Codec / VMware Videovp5On2 VP5vp6On2 VP6vp6fOn2 VP6 (Flash version)targaTruevision Targa imageimage/x-targaimage/x-tga"
Source: BreakTimer.exe, 00000000.00000003.3247898712.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ef
Source: BreakTimer.exe, 00000000.00000003.3559304214.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 5c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3433425881.0000000005921000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: a-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&r@!
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}year
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: VMWar&Prod_VMware_SATA_CD0
Source: BreakTimer.exe, 00000000.00000003.3516278593.0000000005AAA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\X]
Source: BreakTimer.exe, 00000000.00000003.3247816458.0000000005956000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}d-z
Source: BreakTimer.exe, 00000000.00000003.3537016216.0000000005929000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSvN"
Source: BreakTimer.exe, 00000000.00000003.3523419316.0000000005940000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}ua
Source: BreakTimer.exe, 00000000.00000003.3499190935.000000000593E000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: #{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3072201396.0000000006910000.00000004.00001000.00020000.00000000.sdmp Binary or memory string: Adreno (TM) 418Adreno (TM) 530Adreno (TM) 540GL_EXT_texture_lod_biasARB_draw_buffersGL_ARB_texture_swizzleGL_EXT_texture_swizzleGL_ARB_shader_bit_encodingGL_ARB_shading_language_packingGL_ARB_explicit_attrib_locationGL_ARB_explicit_uniform_locationGL_ARB_texture_gatherGL_ARB_texture_cube_map_arrayGL_ARB_pixel_buffer_objectGL_EXT_pixel_buffer_objectGL_EXT_draw_buffers2GL_ARB_fragment_shaderGL_ARB_shader_texture_lodGL_ARB_shader_viewport_layer_arrayGL_NV_viewport_array2GL_NV_texture_border_clampGL_ARB_robust_buffer_access_behaviorGL_EXT_framebuffer_sRGBGL_ARB_framebuffer_sRGBGL_ARB_gpu_shader5functions->standard == STANDARD_GL_DESKTOP && isAMDfunctions->standard == STANDARD_GL_DESKTOP && isIntelisIntel && !IsSandyBridge(device) && !IsIvyBridge(device) && !IsHaswell(device)IsApple() && isIntelisIntel && IsApple() && IsSkylake(device) && GetMacOSVersion() < OSVersion(10, 13, 2)isIntel || isAMDIsLinux() && functions->standard == STANDARD_GL_DESKTOP && isAMD(IsApple() && functions->standard == STANDARD_GL_DESKTOP) || (IsLinux() && isAMD)IsApple() && functions->standard == STANDARD_GL_DESKTOP && GetMacOSVersion() < OSVersion(10, 11, 0)IsApple() && isIntel && GetMacOSVersion() < OSVersion(10, 12, 0)IsApple() && isAMDIsAndroid() && isQualcommfunctions->standard == STANDARD_GL_DESKTOP && isNvidiaIsApple() || isNvidiafunctions->isAtMostGL(gl::Version(4, 1)) || (functions->standard == STANDARD_GL_DESKTOP && isAMD)isAMD || IsAndroid()IsAndroid() || isNvidia(IsAndroid() && isQualcomm) || (isIntel && IsApple())isAMD || isIntelIsNexus5X(vendor, device)IsAndroid() || (IsWindows() && isIntel)(IsWindows() && (isIntel || isAMD)) || (IsLinux() && isNvidia) || IsIOS() || IsAndroid() || IsAndroidEmulator(functions)IsAndroid() || limitMaxTextureSizeIsAndroid() || (IsApple() && (isIntel || isAMD || isNvidia))limitMaxTextureSizeIsApple()IsAndroid() || isAMD || !functions->hasExtension("GL_KHR_robust_buffer_access_behavior")IsApple() && isIntel && GetMacOSVersion() >= OSVersion(10, 12, 4)IsApple() && isIntel && GetMacOSVersion() < OSVersion(10, 12, 6)IsLinux() || (IsAndroid() && isNvidia) || (IsWindows() && isNvidia) || (IsApple() && functions->standard == STANDARD_GL_ES)IsApple() || (IsLinux() && isAMD)functions->standard == STANDARD_GL_DESKTOP && functions->isAtLeastGL(gl::Version(3, 1)) && !functions->isAtLeastGL(gl::Version(4, 3))features->emulatePrimitiveRestartFixedIndex.enabled && IsApple() && isIntelIsApple() || IsAndroid() || IsWindows()!isIntel && functions->standard == STANDARD_GL_ES && functions->isAtLeastGLES(gl::Version(3, 1)) && functions->hasGLESExtension("GL_EXT_texture_norm16")IsWindows() && isAMDIsLinux() && isAMD && isMesa && mesaVersion < (std::array<int, 3>{19, 3, 5})(IsLinux() && isVMWare) || (IsAndroid() && isNvidia) || (IsAndroid() && GetAndroidSdkLevel() < 27 && IsAdreno5xxOrOlder(functions)) || (IsAndroid() && IsMaliT8xxOrOlder(functions)) || (IsAndroid() && IsMaliG31OrOlder(functions))IsApple() && functions->standard == STANDARD_GL_ES && !(isAMD
Source: BreakTimer.exe, 00000000.00000003.3534716261.0000000005925000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}d-Bw
Source: BreakTimer.exe, 00000000.00000003.3534769376.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}OUR~X
Source: BreakTimer.exe, 00000000.00000003.3266916432.0000000004D66000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: _VMware_
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: -61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&3
Source: BreakTimer.exe, 00000000.00000003.3548900513.00000000061BC000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}
Source: BreakTimer.exe, 00000000.00000003.3433425881.0000000005921000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: _VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}b}2A
Source: BreakTimer.exe, 00000000.00000003.3222073370.0000000005ACA000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}icons-20.ttf
Source: BreakTimer.exe, 00000000.00000003.3251720550.0000000004D65000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{5P
Source: BreakTimer.exe, 00000000.00000003.3341550246.000000000594C000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: 630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#Cdj
Source: BreakTimer.exe, 00000000.00000003.3247816458.0000000005956000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}D0
Source: BreakTimer.exe, 00000000.00000003.3250248540.0000000004D63000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: \\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}CQ
Source: BreakTimer.exe, 00000000.00000003.3553689635.0000000005946000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_Msft&Prod_Virtual_DVD-ROM#2&1f4adffe&0&000001#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}i
Source: C:\Users\user\Desktop\BreakTimer.exe Process information queried: ProcessInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1632 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Windows\System32\reg.exe C:\Windows\system32\reg.exe ADD HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v BreakTimer /t REG_SZ /d "\"C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe\"" /f
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --mojo-platform-channel-handle=2080 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=7059029544 --mojo-platform-channel-handle=2328 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\BreakTimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="C:\Users\user\AppData\Local\Programs\breaktimer\resources\app" --no-sandbox --no-zygote --disable-gpu-compositing --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7060022768 --mojo-platform-channel-handle=2756 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaegaaaaaaaaasaaaaaaaaaayaaaaagaaabaaaaaaaaaagaaaaaaaaaaqaaaaaaaaaaaaaaaoaaaaeaaaaaaaaaabaaaadgaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1632 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --mojo-platform-channel-handle=2080 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="c:\users\user\appdata\local\programs\breaktimer\resources\app" --no-sandbox --no-zygote --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=7059029544 --mojo-platform-channel-handle=2328 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="c:\users\user\appdata\local\programs\breaktimer\resources\app" --no-sandbox --no-zygote --disable-gpu-compositing --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7060022768 --mojo-platform-channel-handle=2756 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaegaaaaaaaaasaaaaaaaaaayaaaaagaaabaaaaaaaaaagaaaaaaaaaaqaaaaaaaaaaaaaaaoaaaaeaaaaaaaaaabaaaadgaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1632 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --mojo-platform-channel-handle=2080 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="c:\users\user\appdata\local\programs\breaktimer\resources\app" --no-sandbox --no-zygote --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=7059029544 --mojo-platform-channel-handle=2328 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Process created: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe "c:\users\user\appdata\local\programs\breaktimer\breaktimer.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\breaktimer" --app-user-model-id=com.tomjwatson.breaktimer --app-path="c:\users\user\appdata\local\programs\breaktimer\resources\app" --no-sandbox --no-zygote --disable-gpu-compositing --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7060022768 --mojo-platform-channel-handle=2756 --field-trial-handle=1740,i,8257279866408805230,6528361591634832808,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1
Source: BreakTimer.exe, 00000005.00000000.3610942609.00007FF6DA018000.00000002.00000001.01000000.0000000D.sdmp Binary or memory string: ?@../../third_party/webrtc/modules/desktop_capture/win/cursor.ccCreateMouseCursorFromHCursorUnable to get cursor icon info. Error = Unable to get bitmap info. Error = Unable to get bitmap bits. Error = DwmIsCompositionEnabledDwmGetWindowAttribute../../third_party/webrtc/modules/desktop_capture/win/window_capture_utils.ccFail to create instance of VirtualDesktopManagerChrome_WidgetWin_Progman
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\resources\tray\icon.png VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\resources\tray\icon.png VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\logs VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\logs\main.log VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\resources\tray\icon.png VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\preload.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\preload.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\preload.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\renderer\preload.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\package.json VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Local\Programs\breaktimer\resources\app\app\main\dist\main.prod.js VolumeInformation
Source: C:\Users\user\AppData\Local\Programs\breaktimer\BreakTimer.exe Queries volume information: C:\Users\user\AppData\Roaming\BreakTimer\config.json VolumeInformation
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs