Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
http://www.kalenderpedia.de

Overview

General Information

Sample URL:http://www.kalenderpedia.de
Analysis ID:1562251
Infos:

Detection

Score:60
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

AI detected landing page (webpage, office document or email)
Allocates memory in foreign processes
Loading BitLocker PowerShell Module
Suspicious execution chain found
Writes to foreign memory regions
Allocates memory with a write watch (potentially for evading sandboxes)
Contains long sleeps (>= 3 min)
Creates a process in suspended mode (likely to inject code)
Creates files inside the system directory
Drops PE files
Enables debug privileges
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
HTML page contains hidden javascript code
HTML page contains string obfuscation
May sleep (evasive loops) to hinder dynamic analysis
Queries disk information (often used to detect virtual machines)
Queries the volume information (name, serial number etc) of a device
Searches for user specific document files
Stores files to the Windows start menu directory
Suricata IDS alerts with low severity for network traffic

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 6760 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6948 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2036 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 5288 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --mojo-platform-channel-handle=5988 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • ZipThis.exe (PID: 6596 cmdline: "C:\Users\user\Downloads\ZipThis.exe" MD5: 22A6CB7348B496600E7151A8112CBAC9)
      • powershell.exe (PID: 5696 cmdline: "powershell.exe" -ep RemoteSigned -File "C:\Users\user\AppData\Local\ZipThis\update_task_ad.ps1" MD5: 04029E121A0CFA5991749937DD22A1D9)
        • conhost.exe (PID: 2300 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • chrome.exe (PID: 5288 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5b MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
      • ZipThisApp.exe (PID: 1088 cmdline: "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe" MD5: 9AF46426A5C164310DDD6FB6E77D78C2)
        • ZipThisApp.exe (PID: 7008 cmdline: "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe" MD5: 9AF46426A5C164310DDD6FB6E77D78C2)
  • chrome.exe (PID: 6448 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.kalenderpedia.de" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • svchost.exe (PID: 5884 cmdline: C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS MD5: B7F884C1B74A263F746EE12A5F7C9F6A)
  • cleanup
No yara matches
Source: Process startedAuthor: Roberto Rodriguez @Cyb3rWard0g (rule), oscd.community (improvements): Data: Command: "powershell.exe" -ep RemoteSigned -File "C:\Users\user\AppData\Local\ZipThis\update_task_ad.ps1", CommandLine: "powershell.exe" -ep RemoteSigned -File "C:\Users\user\AppData\Local\ZipThis\update_task_ad.ps1", CommandLine|base64offset|contains: , Image: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, NewProcessName: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, OriginalFileName: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, ParentCommandLine: "C:\Users\user\Downloads\ZipThis.exe" , ParentImage: C:\Users\user\Downloads\ZipThis.exe, ParentProcessId: 6596, ParentProcessName: ZipThis.exe, ProcessCommandLine: "powershell.exe" -ep RemoteSigned -File "C:\Users\user\AppData\Local\ZipThis\update_task_ad.ps1", ProcessId: 5696, ProcessName: powershell.exe
Source: Process startedAuthor: vburov: Data: Command: C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS, CommandLine: C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS, CommandLine|base64offset|contains: , Image: C:\Windows\System32\svchost.exe, NewProcessName: C:\Windows\System32\svchost.exe, OriginalFileName: C:\Windows\System32\svchost.exe, ParentCommandLine: , ParentImage: , ParentProcessId: 656, ProcessCommandLine: C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS, ProcessId: 5884, ProcessName: svchost.exe
TimestampSIDSeverityClasstypeSource IPSource PortDestination IPDestination PortProtocol
2024-11-25T12:05:10.075663+010020221121Exploit Kit Activity Detected192.168.2.164991168.183.48.21980TCP

Click to jump to signature section

Show All Signature Results

Phishing

barindex
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlJoe Sandbox AI: Page contains button: 'Free Download' Source: '2.5.pages.csv'
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlHTTP Parser: Base64 decoded: ai=CNH_v1llEZ4DbGtO6wuIP-vS_uQTPpfy4e_PKtPHEE4qb8uCyDxABIO_x8B1gyQagAZ_6y6EoyAECqAMByAPJBKoEowJP0Bcz8ZwaN5ZiphYMi4i1n-JpZdsaUHe6D0jmwK4xIIFUjeSzgnVGo5RbqteQ9pvLQ6fHvUrvpTtnoyPedkjawXXITI-KyvNCQzRmmKS0upPtr0FMqNJG2ExUT6p3V51rRGdHDvcKV5t5PYw7F6wNfQ8bsBw47yA...
Source: https://770e87a8b147b489f22ffddfe48f7a28.safeframe.googlesyndication.com/safeframe/1-0-40/html/container.htmlHTTP Parser: Found new string: script (function() {var u = 'https://googleads.g.doubleclick.net/dbm/ad?dbm_c=AKAmf-ACtKcj67W0gEoFi6fZG4L-cFb-wJA5TbhWi6rO_RwdF61thekBXDqcNVc5ijPuI_6ZcdHYlcqdhfNGMl1-8YI2-ipI0xPs725CiqQ-s39rR6FRD3m5b13QKT8j8jOGC4NblvNS1F5LYCc5_9oBUqy67ncWzsTJqotkdwIe6DjwDPaCB39he5_wW6mERj-dz4ZfaL_u6cy9gcLUAm_c3Oiy7tXgFh_YU7oZJ24_ZQyhWaBmlsc&dbm_d=AKAmf-AR1nZ9HbPJz3DZBsq5ugCZ0f57NN7rN_3gT7lOVaavF7t98QQnmdjzu2Xww4lsWflaLAVpc9rn9Xim3Q5Eu3jn0s4d2B1IHD1eMfkRuFOvb6A73KKPJDMu0a0NtyMWTvb5mt4SfKPP3z3wQvsuOHjI__BCDCmKsxsmZ52Nj7U1fi0V8jwmQe5SQqe25Ad48U5I0ayPXSPcUAhhU8w53Hnj1z1nU5Ft86KjPZU6lZoFUlk6faSic8IsXgBQRK4QlzVpvQXLy5SKaOfvjOveyEDJqY7S3miybjXDkNbnn7G8GNO7_4jRucAMa8I63iargqZB_wPI1CTIz4wU4y2Jb6cNJ0zGzRrPC1s9Lqfq3HKnTXrx1HuF4b1fkSm7EyQs8OHgI_tt0ijXLIcgP56gvSevsGCC0-C0t_zzcGBrDPH5J8lOSUT5hCV-yTMaJwXc0sQGsjUWhXvnAT-ruOaSOFWBl1fsAeZv6ZqaPld3LH1zOODc7PY7iKyy59gXiCTyPknHz4_WgUkCEfOc36F9vf6I9XqX1x2vdn-JpqWDEjM-qWSHqNapeOtmFHEfRUdqEZuc1nFxoMQluVAeGsNlZ9cwUVjMIr9gXV2BrhE7ozfnmWb-OPhyPyEulf-H8Im2CQNjuLbfFxQypCSacIqMBaGXccgv1HoiE6Jm8-zRHFARojh3mGqQ5Jq...
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlHTTP Parser: No favicon
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlHTTP Parser: No favicon
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlHTTP Parser: No favicon
Source: https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmlHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEHTTP Parser: No favicon
Source: https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5bHTTP Parser: No favicon
Source: https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5bHTTP Parser: No favicon
Source: https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5bHTTP Parser: No favicon
Source: C:\Users\user\Downloads\ZipThis.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZipThis
Source: unknownHTTPS traffic detected: 23.218.208.109:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.218.208.109:443 -> 192.168.2.16:49746 version: TLS 1.2
Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:49749 version: TLS 1.2
Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:50019 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50026 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50031 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50068 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50067 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50078 version: TLS 1.2
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft\Windows
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft\Windows\Libraries\desktop.ini
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData

Software Vulnerabilities

barindex
Source: C:\Program Files\Google\Chrome\Application\chrome.exeChild: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
Source: Network trafficSuricata IDS: 2022112 - Severity 1 - ET EXPLOIT_KIT Possible Nuclear EK Landing Nov 17 2015 : 192.168.2.16:49911 -> 68.183.48.219:80
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.211.108
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 23.218.208.109
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: www.kalenderpedia.deConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE HTTP/1.1Host: www.zipthisapp.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global trafficDNS traffic detected: DNS query: www.kalenderpedia.de
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: cdn-a.yieldlove.com
Source: global trafficDNS traffic detected: DNS query: securepubads.g.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: cse.google.com
Source: global trafficDNS traffic detected: DNS query: googleads.g.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: cdn.jsdelivr.net
Source: global trafficDNS traffic detected: DNS query: www.statcounter.com
Source: global trafficDNS traffic detected: DNS query: www.adsensecustomsearchads.com
Source: global trafficDNS traffic detected: DNS query: scatteredstream.com
Source: global trafficDNS traffic detected: DNS query: cdn.confiant-integrations.net
Source: global trafficDNS traffic detected: DNS query: static.adsafeprotected.com
Source: global trafficDNS traffic detected: DNS query: c.statcounter.com
Source: global trafficDNS traffic detected: DNS query: fundingchoicesmessages.google.com
Source: global trafficDNS traffic detected: DNS query: syndicatedsearch.goog
Source: global trafficDNS traffic detected: DNS query: gum.criteo.com
Source: global trafficDNS traffic detected: DNS query: id5-sync.com
Source: global trafficDNS traffic detected: DNS query: hb.adscale.de
Source: global trafficDNS traffic detected: DNS query: fastlane.rubiconproject.com
Source: global trafficDNS traffic detected: DNS query: prg.smartadserver.com
Source: global trafficDNS traffic detected: DNS query: htlb.casalemedia.com
Source: global trafficDNS traffic detected: DNS query: ib.adnxs.com
Source: global trafficDNS traffic detected: DNS query: hbopenbid.pubmatic.com
Source: global trafficDNS traffic detected: DNS query: adx2.adform.net
Source: global trafficDNS traffic detected: DNS query: prod-ingestion.tracking.v2.yieldlove-ad-serving.net
Source: global trafficDNS traffic detected: DNS query: lb.eu-1-id5-sync.com
Source: global trafficDNS traffic detected: DNS query: zipthisapp.com
Source: global trafficDNS traffic detected: DNS query: js.adscale.de
Source: global trafficDNS traffic detected: DNS query: ads.pubmatic.com
Source: global trafficDNS traffic detected: DNS query: js-sec.indexww.com
Source: global trafficDNS traffic detected: DNS query: eus.rubiconproject.com
Source: global trafficDNS traffic detected: DNS query: acdn.adnxs.com
Source: global trafficDNS traffic detected: DNS query: ssum-sec.casalemedia.com
Source: global trafficDNS traffic detected: DNS query: match.adsrvr.org
Source: global trafficDNS traffic detected: DNS query: dis.criteo.com
Source: global trafficDNS traffic detected: DNS query: www.zipthisapp.com
Source: global trafficDNS traffic detected: DNS query: ad.turn.com
Source: global trafficDNS traffic detected: DNS query: widget.us.criteo.com
Source: global trafficDNS traffic detected: DNS query: cm.g.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: cs.lkqd.net
Source: global trafficDNS traffic detected: DNS query: dsum-sec.casalemedia.com
Source: global trafficDNS traffic detected: DNS query: image6.pubmatic.com
Source: global trafficDNS traffic detected: DNS query: rtb-csync.smartadserver.com
Source: global trafficDNS traffic detected: DNS query: a.nel.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: thisdwn.com
Source: global trafficDNS traffic detected: DNS query: td.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: 14918961.fls.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: ad.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: analytics.google.com
Source: global trafficDNS traffic detected: DNS query: bq.zipthisapp.com
Source: global trafficDNS traffic detected: DNS query: publickeyservice.aws.privacysandboxservices.com
Source: global trafficDNS traffic detected: DNS query: stats.g.doubleclick.net
Source: global trafficDNS traffic detected: DNS query: adservice.google.com
Source: global trafficDNS traffic detected: DNS query: apb.thisilient.com
Source: global trafficDNS traffic detected: DNS query: sts.thisilient.com
Source: global trafficDNS traffic detected: DNS query: cdnjs.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: stackpath.bootstrapcdn.com
Source: global trafficDNS traffic detected: DNS query: code.jquery.com
Source: global trafficDNS traffic detected: DNS query: api-advertiser.linkvertise.com
Source: global trafficDNS traffic detected: DNS query: can.thisilient.com
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49986
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49985
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49984
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 49932 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49898 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49875 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49857
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 50039 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49970
Source: unknownNetwork traffic detected: HTTP traffic on port 49703 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50074 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49909 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49969
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 49886 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49966
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49722
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49843
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49964
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 50015 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50040 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49966 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49989 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49760 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50073 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50028 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49838
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49959
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49837
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49958
Source: unknownNetwork traffic detected: HTTP traffic on port 49921 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49957
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49956
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49955
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49952
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49951
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49950
Source: unknownNetwork traffic detected: HTTP traffic on port 49944 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49910 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49955 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49948
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49947
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49946
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49703
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49945
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49944
Source: unknownNetwork traffic detected: HTTP traffic on port 49771 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 49945 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49782
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 50049 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50026 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49807 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49779
Source: unknownNetwork traffic detected: HTTP traffic on port 49885 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49898
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49894
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49771
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49957 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49886
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49885
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49884
Source: unknownNetwork traffic detected: HTTP traffic on port 50038 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49883
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49881
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50050 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50005 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49956 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49879
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49999
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49997
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49875
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49996
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 49923 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49872
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49992
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50072 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49989
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49867
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49988
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49987
Source: unknownNetwork traffic detected: HTTP traffic on port 50013 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50036 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49746 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50071 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49699
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49698
Source: unknownNetwork traffic detected: HTTP traffic on port 49837 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49929 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50025 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49964 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49700 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49999 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49930 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49986 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49799
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50007
Source: unknownNetwork traffic detected: HTTP traffic on port 50037 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50006
Source: unknownNetwork traffic detected: HTTP traffic on port 50012 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50009
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50008
Source: unknownNetwork traffic detected: HTTP traffic on port 49952 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50005
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50048 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49884 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49907 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49941 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49997 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49779 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49894 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49799 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49942 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49919 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50014 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50070 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49988 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50046 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49838 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49722 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49908 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50024 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49883 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50058 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49987 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49920 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50069 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50053
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50056
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50058
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50057
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49984 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50022 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50068 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49881 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49950 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49996 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50010 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50065
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50067
Source: unknownNetwork traffic detected: HTTP traffic on port 50056 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50066
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50069
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50068
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50070
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50072
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50071
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50074
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50073
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50009 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50034 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50076
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50075
Source: unknownNetwork traffic detected: HTTP traffic on port 50057 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50078
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50079
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50079 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49938 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49699 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50019
Source: unknownNetwork traffic detected: HTTP traffic on port 49951 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50032 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50010
Source: unknownNetwork traffic detected: HTTP traffic on port 49916 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50012
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50011
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50014
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50013
Source: unknownNetwork traffic detected: HTTP traffic on port 50078 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50015
Source: unknownNetwork traffic detected: HTTP traffic on port 49939 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50029
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50028
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50021
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50020
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50022
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50025
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50024
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49879 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50026
Source: unknownNetwork traffic detected: HTTP traffic on port 49985 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50021 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50030
Source: unknownNetwork traffic detected: HTTP traffic on port 50067 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50039
Source: unknownNetwork traffic detected: HTTP traffic on port 50011 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50032
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50031
Source: unknownNetwork traffic detected: HTTP traffic on port 49857 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50034
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50033
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50036
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50038
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50037
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50041
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50040
Source: unknownNetwork traffic detected: HTTP traffic on port 50066 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49698 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50033 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50043
Source: unknownNetwork traffic detected: HTTP traffic on port 49917 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50042
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50046
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50049
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50048
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50050
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49970 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50042 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50007 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49958 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49946 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50053 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49901 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49947 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50076 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50031 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49992 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50043 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49782 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49969 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50020 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49856 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50006 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50065 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49942
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49700
Source: unknownNetwork traffic detected: HTTP traffic on port 49842 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49941
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50075 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49939
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49938
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49937
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49936
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49932
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49930
Source: unknownNetwork traffic detected: HTTP traffic on port 50008 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49936 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49929
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49807
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49928
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 50029 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49923
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49921
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49920
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49821 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50019 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49914 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49919
Source: unknownNetwork traffic detected: HTTP traffic on port 49937 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49917
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49916
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49914
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49910
Source: unknownNetwork traffic detected: HTTP traffic on port 49948 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50041 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49843 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49959 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49909
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49908
Source: unknownNetwork traffic detected: HTTP traffic on port 50030 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49907
Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49901
Source: unknownHTTPS traffic detected: 23.218.208.109:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.218.208.109:443 -> 192.168.2.16:49746 version: TLS 1.2
Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:49749 version: TLS 1.2
Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:50019 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50026 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50031 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50068 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50067 version: TLS 1.2
Source: unknownHTTPS traffic detected: 45.33.84.9:443 -> 192.168.2.16:50078 version: TLS 1.2
Source: C:\Windows\System32\svchost.exeFile created: C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\Fonts\Download-1.tmp
Source: classification engineClassification label: mal60.expl.win@47/146@202/700
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeMutant created: NULL
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:2300:120:WilError_03
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile created: C:\Users\user\AppData\Local\Temp\__PSScriptPolicyTest_dodz4s2u.xd1.ps1
Source: C:\Users\user\Downloads\ZipThis.exeFile read: C:\Users\desktop.ini
Source: C:\Users\user\Downloads\ZipThis.exeKey opened: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2036 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.kalenderpedia.de"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2036 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --mojo-platform-channel-handle=5988 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --mojo-platform-channel-handle=5988 --field-trial-handle=1936,i,13899727471157137110,2103944552154813019,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Users\user\Downloads\ZipThis.exe "C:\Users\user\Downloads\ZipThis.exe"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Users\user\Downloads\ZipThis.exe "C:\Users\user\Downloads\ZipThis.exe"
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe "powershell.exe" -ep RemoteSigned -File "C:\Users\user\AppData\Local\ZipThis\update_task_ad.ps1"
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: unknownProcess created: C:\Windows\System32\svchost.exe C:\Windows\System32\svchost.exe -k netsvcs -p -s BITS
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5b
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: mscoree.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: version.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: vcruntime140_clr0400.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: uxtheme.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: cryptsp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: rsaenh.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: cryptbase.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dwrite.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: msvcp140_clr0400.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: windows.storage.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: wldp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: profapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dwmapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: d3d9.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: d3d10warp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: urlmon.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: iertutil.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: srvcli.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: netutils.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: windowscodecs.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: wtsapi32.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: winsta.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: powrprof.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: umpdc.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: textshaping.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dataexchange.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: d3d11.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dcomp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dxgi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: twinapi.appcore.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: resourcepolicyclient.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dxcore.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: textinputframework.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: coreuicomponents.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: coremessaging.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ntmarta.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: wintypes.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: wintypes.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: wintypes.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: msctfui.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: uiautomationcore.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: propsys.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: d3dcompiler_47.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dnsapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dhcpcsvc6.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: winnsi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: rasapi32.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: rasman.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: rtutils.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: mswsock.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: winhttp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: rasadhlp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: fwpuclnt.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: secur32.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: sspicli.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: schannel.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: mskeyprotect.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ntasn1.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ncrypt.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ncryptsslp.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: msasn1.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: gpapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: userenv.dll
Source: C:\Windows\System32\svchost.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\svchost.exeSection loaded: qmgr.dll
Source: C:\Windows\System32\svchost.exeSection loaded: bitsperf.dll
Source: C:\Windows\System32\svchost.exeSection loaded: powrprof.dll
Source: C:\Windows\System32\svchost.exeSection loaded: xmllite.dll
Source: C:\Windows\System32\svchost.exeSection loaded: firewallapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: esent.dll
Source: C:\Windows\System32\svchost.exeSection loaded: umpdc.dll
Source: C:\Windows\System32\svchost.exeSection loaded: dnsapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: iphlpapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: fwbase.dll
Source: C:\Windows\System32\svchost.exeSection loaded: wldp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ntmarta.dll
Source: C:\Windows\System32\svchost.exeSection loaded: profapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: flightsettings.dll
Source: C:\Windows\System32\svchost.exeSection loaded: policymanager.dll
Source: C:\Windows\System32\svchost.exeSection loaded: msvcp110_win.dll
Source: C:\Windows\System32\svchost.exeSection loaded: netprofm.dll
Source: C:\Windows\System32\svchost.exeSection loaded: npmproxy.dll
Source: C:\Windows\System32\svchost.exeSection loaded: bitsigd.dll
Source: C:\Windows\System32\svchost.exeSection loaded: upnp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: winhttp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ssdpapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: urlmon.dll
Source: C:\Windows\System32\svchost.exeSection loaded: iertutil.dll
Source: C:\Windows\System32\svchost.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\svchost.exeSection loaded: netutils.dll
Source: C:\Windows\System32\svchost.exeSection loaded: appxdeploymentclient.dll
Source: C:\Windows\System32\svchost.exeSection loaded: cryptbase.dll
Source: C:\Windows\System32\svchost.exeSection loaded: wsmauto.dll
Source: C:\Windows\System32\svchost.exeSection loaded: miutils.dll
Source: C:\Windows\System32\svchost.exeSection loaded: wsmsvc.dll
Source: C:\Windows\System32\svchost.exeSection loaded: dsrole.dll
Source: C:\Windows\System32\svchost.exeSection loaded: pcwum.dll
Source: C:\Windows\System32\svchost.exeSection loaded: mi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: userenv.dll
Source: C:\Windows\System32\svchost.exeSection loaded: gpapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: winhttp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: wkscli.dll
Source: C:\Windows\System32\svchost.exeSection loaded: netutils.dll
Source: C:\Windows\System32\svchost.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Windows\System32\svchost.exeSection loaded: msv1_0.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ntlmshared.dll
Source: C:\Windows\System32\svchost.exeSection loaded: cryptdll.dll
Source: C:\Windows\System32\svchost.exeSection loaded: webio.dll
Source: C:\Windows\System32\svchost.exeSection loaded: mswsock.dll
Source: C:\Windows\System32\svchost.exeSection loaded: winnsi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: rasadhlp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: fwpuclnt.dll
Source: C:\Windows\System32\svchost.exeSection loaded: rmclient.dll
Source: C:\Windows\System32\svchost.exeSection loaded: usermgrcli.dll
Source: C:\Windows\System32\svchost.exeSection loaded: execmodelclient.dll
Source: C:\Windows\System32\svchost.exeSection loaded: propsys.dll
Source: C:\Windows\System32\svchost.exeSection loaded: coremessaging.dll
Source: C:\Windows\System32\svchost.exeSection loaded: twinapi.appcore.dll
Source: C:\Windows\System32\svchost.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Windows\System32\svchost.exeSection loaded: execmodelproxy.dll
Source: C:\Windows\System32\svchost.exeSection loaded: resourcepolicyclient.dll
Source: C:\Windows\System32\svchost.exeSection loaded: vssapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: vsstrace.dll
Source: C:\Windows\System32\svchost.exeSection loaded: samcli.dll
Source: C:\Windows\System32\svchost.exeSection loaded: samlib.dll
Source: C:\Windows\System32\svchost.exeSection loaded: es.dll
Source: C:\Windows\System32\svchost.exeSection loaded: bitsproxy.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Windows\System32\svchost.exeSection loaded: dhcpcsvc6.dll
Source: C:\Windows\System32\svchost.exeSection loaded: dhcpcsvc.dll
Source: C:\Windows\System32\svchost.exeSection loaded: schannel.dll
Source: C:\Windows\System32\svchost.exeSection loaded: mskeyprotect.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ntasn1.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ncrypt.dll
Source: C:\Windows\System32\svchost.exeSection loaded: ncryptsslp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: msasn1.dll
Source: C:\Windows\System32\svchost.exeSection loaded: cryptsp.dll
Source: C:\Windows\System32\svchost.exeSection loaded: rsaenh.dll
Source: C:\Windows\System32\svchost.exeSection loaded: dpapi.dll
Source: C:\Windows\System32\svchost.exeSection loaded: mpr.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: atl.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: mscoree.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: version.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: vcruntime140_clr0400.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: cryptsp.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: rsaenh.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: cryptbase.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: amsi.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: userenv.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: profapi.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: windows.storage.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: wldp.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: msasn1.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: gpapi.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: msisip.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: wshext.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: appxsip.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: opcservices.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: secur32.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: uxtheme.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: urlmon.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: iertutil.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: netutils.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: propsys.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: wininet.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: kdscli.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: ntasn1.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: microsoft.management.infrastructure.native.unmanaged.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: mi.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: miutils.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: wmidcom.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: dpapi.dll
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeSection loaded: wbemcomn.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: sxs.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: mpr.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: scrrun.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: linkinfo.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: ntshrui.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: cscapi.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: edputil.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: windows.staterepositoryps.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: appresolver.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: bcp47langs.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: slc.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: sppc.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: onecoreuapcommonproxystub.dll
Source: C:\Users\user\Downloads\ZipThis.exeSection loaded: apphelp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mscoree.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: version.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: vcruntime140_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cryptsp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rsaenh.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msvcp140_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wldp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: profapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: userenv.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dnsapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dhcpcsvc6.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winnsi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasapi32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasman.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rtutils.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasadhlp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: fwpuclnt.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: secur32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: schannel.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mskeyprotect.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ntasn1.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ncrypt.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ncryptsslp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msasn1.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: gpapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dwmapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d9.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d10warp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: urlmon.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: iertutil.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: srvcli.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: netutils.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windowscodecs.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wtsapi32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winsta.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dataexchange.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d11.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dcomp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dxgi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: twinapi.appcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: resourcepolicyclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dxcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: textshaping.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: textinputframework.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: coreuicomponents.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: coremessaging.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msctfui.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: propsys.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3dcompiler_47.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dui70.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: duser.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: edputil.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: explorerframe.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: thumbcache.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msftedit.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.globalization.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: bcp47langs.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: bcp47mrm.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: globinputhost.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: assignedaccessruntime.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: xmllite.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.fileexplorer.common.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: linkinfo.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: structuredquery.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: atlthunk.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.storage.search.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: twinapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ntshrui.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cscapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.staterepositoryps.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winmm.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: actxprxy.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: apphelp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: networkexplorer.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ehstorshell.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cscui.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: policymanager.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msvcp110_win.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mrmcorer.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.staterepositorycore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: appxdeploymentclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.ui.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windowmanagementapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: inputhost.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: appxdeploymentclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: appxdeploymentclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: appxdeploymentclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wkscli.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: provsvc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: onecoreuapcommonproxystub.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: appresolver.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: slc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: sppc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mscoree.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: version.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: vcruntime140_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cryptsp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rsaenh.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msvcp140_clr0400.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wldp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: profapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: userenv.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dnsapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dhcpcsvc6.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winnsi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasapi32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasman.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rtutils.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: rasadhlp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: fwpuclnt.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: secur32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: schannel.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: mskeyprotect.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ntasn1.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ncrypt.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ncryptsslp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msasn1.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: gpapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dwmapi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d9.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d10warp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: urlmon.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: iertutil.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: srvcli.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: netutils.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: windowscodecs.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wtsapi32.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: winsta.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dataexchange.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3d11.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dcomp.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dxgi.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: twinapi.appcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: resourcepolicyclient.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: dxcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: textshaping.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: textinputframework.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: coreuicomponents.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: coremessaging.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: wintypes.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: msctfui.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: propsys.dll
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeSection loaded: d3dcompiler_47.dll
Source: C:\Users\user\Downloads\ZipThis.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Windows\SYSTEM32\MsftEdit.dll
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Users\user\Downloads\ZipThis.exeFile opened: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorrc.dll
Source: C:\Users\user\Downloads\ZipThis.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZipThis
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\Downloads\Unconfirmed 701831.crdownloadJump to dropped file
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\Downloads\0cd46de4-83f4-42f0-9a2c-ff3279c6ebd2.tmpJump to dropped file
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk

Hooking and other Techniques for Hiding and Protection

barindex
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\en-US\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\en-US\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\BitLocker.psd1
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeFile opened: C:\Windows\system32\WindowsPowerShell\v1.0\Modules\BitLocker\en-US\BitLocker.psd1
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Downloads\ZipThis.exeMemory allocated: 26EEF130000 memory reserve | memory write watch
Source: C:\Users\user\Downloads\ZipThis.exeMemory allocated: 26EEF1E0000 memory reserve | memory write watch
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeMemory allocated: 1F051ED0000 memory reserve | memory write watch
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeMemory allocated: 1F06B9A0000 memory reserve | memory write watch
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeMemory allocated: 1C0BD520000 memory reserve | memory write watch
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeMemory allocated: 1C0D7030000 memory reserve | memory write watch
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 922337203685477
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Downloads\ZipThis.exeWindow / User API: threadDelayed 9800
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeWindow / User API: threadDelayed 8653
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeWindow / User API: threadDelayed 1243
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeWindow / User API: threadDelayed 3254
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeWindow / User API: threadDelayed 461
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeWindow / User API: threadDelayed 9596
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -4611686018427385s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -100000s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 2624Thread sleep count: 9800 > 30
Source: C:\Users\user\Downloads\ZipThis.exe TID: 2624Thread sleep count: 79 > 30
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99872s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99761s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99649s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99537s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99410s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99282s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99155s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -99043s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98931s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98820s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98712s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98600s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98489s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98361s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98235s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98123s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -98011s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97900s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97788s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97676s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97548s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97420s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97310s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97200s >= -30000s
Source: C:\Users\user\Downloads\ZipThis.exe TID: 4368Thread sleep time: -97089s >= -30000s
Source: C:\Windows\System32\svchost.exe TID: 552Thread sleep time: -30000s >= -30000s
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe TID: 2940Thread sleep count: 8653 > 30
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe TID: 2940Thread sleep count: 1243 > 30
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe TID: 4580Thread sleep time: -4611686018427385s >= -30000s
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 1948Thread sleep time: -6456360425798339s >= -30000s
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 2332Thread sleep count: 3254 > 30
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 2332Thread sleep count: 215 > 30
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 2332Thread sleep count: 461 > 30
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 1948Thread sleep time: -15679732462653109s >= -30000s
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 5208Thread sleep time: -6456360425798339s >= -30000s
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 2720Thread sleep count: 9596 > 30
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe TID: 2720Thread sleep count: 229 > 30
Source: C:\Windows\System32\svchost.exeFile opened: PhysicalDrive0
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 100000
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99872
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99761
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99649
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99537
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99410
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99282
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99155
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 99043
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98931
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98820
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98712
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98600
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98489
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98361
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98235
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98123
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 98011
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97900
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97788
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97676
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97548
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97420
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97310
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97200
Source: C:\Users\user\Downloads\ZipThis.exeThread delayed: delay time: 97089
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft\Windows
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft\Windows\Libraries\desktop.ini
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData\Roaming\Microsoft
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeFile opened: C:\Users\user\AppData
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess information queried: ProcessInformation
Source: C:\Users\user\Downloads\ZipThis.exeProcess token adjusted: Debug
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeProcess token adjusted: Debug
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess token adjusted: Debug
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess token adjusted: Debug
Source: C:\Users\user\Downloads\ZipThis.exeMemory allocated: page read and write | page guard

HIPS / PFW / Operating System Protection Evasion

barindex
Source: C:\Users\user\Downloads\ZipThis.exeMemory allocated: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe base: 208A0640000 protect: page read and write
Source: C:\Users\user\Downloads\ZipThis.exeMemory written: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe base: 208A0640000
Source: C:\Users\user\Downloads\ZipThis.exeMemory written: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe base: D0FA8A2D8
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5b
Source: C:\Users\user\Downloads\ZipThis.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeProcess created: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe "C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe"
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Users\user\Downloads\ZipThis.exe VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Web.Extensions\v4.0_4.0.0.0__31bf3856ad364e35\System.Web.Extensions.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\System.Web\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.dll VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.chk VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.log VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.chk VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.log VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.log VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.log VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\edb.chk VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\qmgr.db VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\qmgr.jfm VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\qmgr.db VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ProgramData\Microsoft\Network\Downloader\qmgr.db VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ VolumeInformation
Source: C:\Windows\System32\svchost.exeQueries volume information: C:\ VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.PowerShell.ConsoleHost\v4.0_3.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.ConsoleHost.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Management.Infrastructure\v4.0_1.0.0.0__31bf3856ad364e35\Microsoft.Management.Infrastructure.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.PowerShell.Security\v4.0_3.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Security.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\ VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-GroupPolicy-ClientTools-WOW64-Package~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-AppManagement-AppV-Package~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.Management.Infrastructure.Native\v4.0_1.0.0.0__31bf3856ad364e35\Microsoft.Management.Infrastructure.Native.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\WindowsPowerShell\v1.0\Modules\AppvClient\Microsoft.AppV.AppVClientPowerShell.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.AppV.AppvClientComConsumer\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.AppV.AppvClientComConsumer\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.AppV.AppvClientComConsumer\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.AppV.AppvClientComConsumer.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Subsystem-WOW64-Package~31bf3856ad364e35~amd64~~10.0.19041.1865.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-SecureStartup-Subsystem-Package~31bf3856ad364e35~amd64~en-GB~10.0.19041.1151.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Utility\v4.0_3.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Commands.Utility.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\WindowsPowerShell\v1.0\Modules\BitLocker\Microsoft.BitLocker.Structures.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.PowerShell.Commands.Management\v4.0_3.0.0.0__31bf3856ad364e35\Microsoft.PowerShell.Commands.Management.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0013~31bf3856ad364e35~amd64~~10.0.19041.3208.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0314~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.KeyDistributionService.Cmdlets\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.KeyDistributionService.Cmdlets.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.KeyDistributionService.Cmdlets\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.KeyDistributionService.Cmdlets.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.KeyDistributionService.Cmdlets\v4.0_10.0.0.0__31bf3856ad364e35\Microsoft.KeyDistributionService.Cmdlets.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\WindowsPowerShell\v1.0\Modules\Microsoft.PowerShell.LocalAccounts\1.0.0.0\Microsoft.PowerShell.LocalAccounts.dll VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package03~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-WOW64-Package0014~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0314~31bf3856ad364e35~amd64~~10.0.19041.2006.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0313~31bf3856ad364e35~amd64~~10.0.19041.1949.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exeQueries volume information: C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Desktop-Required-Package05113~31bf3856ad364e35~amd64~~10.0.19041.3448.cat VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Compression\v4.0_4.0.0.0__b77a5c561934e089\System.IO.Compression.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.IO.Compression.FileSystem\v4.0_4.0.0.0__b77a5c561934e089\System.IO.Compression.FileSystem.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.CSharp\v4.0_4.0.0.0__b03f5f7f11d50a3a\Microsoft.CSharp.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Dynamic\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Dynamic.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeQueries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\System.Web\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\ VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exe VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_64\System.Web\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Web.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll VolumeInformation
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll VolumeInformation
Source: C:\Users\user\Downloads\ZipThis.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeDirectory queried: C:\Users\user\Documents
Source: C:\Users\user\AppData\Local\ZipThis\ZipThisApp.exeDirectory queried: C:\Users\user\Documents\QFAPOWPAFG
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid Accounts1
Exploitation for Client Execution
1
Windows Service
1
Windows Service
11
Masquerading
OS Credential Dumping1
Security Software Discovery
Remote Services1
Data from Local System
2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/Job1
Browser Extensions
211
Process Injection
1
Disable or Modify Tools
LSASS Memory1
Process Discovery
Remote Desktop ProtocolData from Removable Media1
Ingress Tool Transfer
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAt1
Registry Run Keys / Startup Folder
1
Registry Run Keys / Startup Folder
41
Virtualization/Sandbox Evasion
Security Account Manager41
Virtualization/Sandbox Evasion
SMB/Windows Admin SharesData from Network Shared Drive2
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCron1
DLL Side-Loading
1
DLL Side-Loading
211
Process Injection
NTDS1
Application Window Discovery
Distributed Component Object ModelInput Capture3
Application Layer Protocol
Traffic DuplicationData Destruction
Gather Victim Network InformationServerCloud AccountsLaunchdNetwork Logon ScriptNetwork Logon Script1
DLL Side-Loading
LSA Secrets12
File and Directory Discovery
SSHKeyloggingFallback ChannelsScheduled TransferData Encrypted for Impact
Domain PropertiesBotnetReplication Through Removable MediaScheduled TaskRC ScriptsRC ScriptsSteganographyCached Domain Credentials22
System Information Discovery
VNCGUI Input CaptureMultiband CommunicationData Transfer Size LimitsService Stop

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
http://www.kalenderpedia.de0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://www.kalenderpedia.de/0%Avira URL Cloudsafe
http://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
securepubads.g.doubleclick.net
172.217.19.194
truefalse
    high
    jsdelivr.map.fastly.net
    151.101.193.229
    truefalse
      high
      hb.adscale.de
      52.59.15.109
      truefalse
        unknown
        can.thisilient.com
        45.33.84.9
        truefalse
          unknown
          id5-sync.com
          141.95.98.65
          truefalse
            high
            api-advertiser.linkvertise.com
            104.22.23.72
            truefalse
              unknown
              stats.g.doubleclick.net
              66.102.1.155
              truefalse
                high
                d29pb5sqvxbrp8.cloudfront.net
                13.226.2.101
                truefalse
                  unknown
                  cdnjs.cloudflare.com
                  104.17.25.14
                  truefalse
                    high
                    cm.g.doubleclick.net
                    172.217.19.194
                    truefalse
                      high
                      prod-ingestion.tracking.v2.yieldlove-ad-serving.net
                      35.156.138.246
                      truefalse
                        unknown
                        www.google.com
                        142.250.181.100
                        truefalse
                          high
                          lb.eu-1-id5-sync.com
                          141.95.33.120
                          truefalse
                            high
                            match.adsrvr.org
                            3.33.220.150
                            truefalse
                              high
                              www.kalenderpedia.de
                              109.239.54.153
                              truefalse
                                unknown
                                publickeyservice.msmt-1.aws.privacysandboxservices.com
                                18.165.220.81
                                truefalse
                                  unknown
                                  pagead-googlehosted.l.google.com
                                  216.58.208.225
                                  truefalse
                                    high
                                    thisdwn.com
                                    5.161.110.190
                                    truefalse
                                      unknown
                                      syndicatedsearch.goog
                                      172.217.19.174
                                      truefalse
                                        high
                                        hbopenbid-sin12.pubmnet.com
                                        207.65.33.78
                                        truefalse
                                          unknown
                                          d2w45tum40fmzp.cloudfront.net
                                          108.158.75.112
                                          truefalse
                                            unknown
                                            d162h6x3rxav67.cloudfront.net
                                            13.226.2.20
                                            truefalse
                                              high
                                              ssum-sec.casalemedia.com
                                              104.18.27.193
                                              truefalse
                                                high
                                                analytics-alv.google.com
                                                216.239.34.181
                                                truefalse
                                                  high
                                                  googleads.g.doubleclick.net
                                                  142.250.181.66
                                                  truefalse
                                                    high
                                                    www3.l.google.com
                                                    142.250.181.142
                                                    truefalse
                                                      high
                                                      js-sec.indexww.com
                                                      104.18.25.18
                                                      truefalse
                                                        high
                                                        presentation-ams1.turn.com
                                                        46.228.164.11
                                                        truefalse
                                                          high
                                                          www.zipthisapp.com
                                                          68.183.48.219
                                                          truefalse
                                                            high
                                                            td.doubleclick.net
                                                            172.217.17.66
                                                            truefalse
                                                              high
                                                              widget.us5.vip.prod.criteo.com
                                                              74.119.117.16
                                                              truefalse
                                                                high
                                                                dart.l.doubleclick.net
                                                                172.217.17.38
                                                                truefalse
                                                                  high
                                                                  c.statcounter.com
                                                                  104.20.94.138
                                                                  truefalse
                                                                    high
                                                                    htlb.casalemedia.com
                                                                    104.18.26.193
                                                                    truefalse
                                                                      high
                                                                      adservice.google.com
                                                                      142.250.181.2
                                                                      truefalse
                                                                        high
                                                                        code.jquery.com
                                                                        151.101.2.137
                                                                        truefalse
                                                                          high
                                                                          widget.nl3.vip.prod.criteo.com
                                                                          178.250.1.9
                                                                          truefalse
                                                                            high
                                                                            sts.thisilient.com
                                                                            45.33.84.9
                                                                            truefalse
                                                                              unknown
                                                                              cse.google.com
                                                                              142.250.181.78
                                                                              truefalse
                                                                                high
                                                                                www.statcounter.com
                                                                                104.20.94.138
                                                                                truefalse
                                                                                  high
                                                                                  bq.zipthisapp.com
                                                                                  68.183.48.219
                                                                                  truefalse
                                                                                    high
                                                                                    stackpath.bootstrapcdn.com
                                                                                    104.18.10.207
                                                                                    truefalse
                                                                                      high
                                                                                      rtb-csync-euw2.smartadserver.com
                                                                                      217.182.178.234
                                                                                      truefalse
                                                                                        unknown
                                                                                        a.nel.cloudflare.com
                                                                                        35.190.80.1
                                                                                        truefalse
                                                                                          high
                                                                                          scatteredstream.com
                                                                                          104.18.25.111
                                                                                          truefalse
                                                                                            unknown
                                                                                            zipthisapp.com
                                                                                            68.183.48.219
                                                                                            truefalse
                                                                                              unknown
                                                                                              ad.doubleclick.net
                                                                                              172.217.17.70
                                                                                              truefalse
                                                                                                high
                                                                                                cdn.confiant-integrations.net
                                                                                                104.18.43.90
                                                                                                truefalse
                                                                                                  high
                                                                                                  pugmaster-sg4c.pubmnet.com
                                                                                                  67.199.150.81
                                                                                                  truefalse
                                                                                                    unknown
                                                                                                    dsum-sec.casalemedia.com
                                                                                                    104.18.27.193
                                                                                                    truefalse
                                                                                                      high
                                                                                                      gum.nl3.vip.prod.criteo.com
                                                                                                      178.250.1.11
                                                                                                      truefalse
                                                                                                        high
                                                                                                        ib.anycast.adnxs.com
                                                                                                        185.89.210.20
                                                                                                        truefalse
                                                                                                          high
                                                                                                          apb.thisilient.com
                                                                                                          45.33.84.9
                                                                                                          truefalse
                                                                                                            high
                                                                                                            js.adscale.de
                                                                                                            unknown
                                                                                                            unknownfalse
                                                                                                              high
                                                                                                              eus.rubiconproject.com
                                                                                                              unknown
                                                                                                              unknownfalse
                                                                                                                high
                                                                                                                14918961.fls.doubleclick.net
                                                                                                                unknown
                                                                                                                unknownfalse
                                                                                                                  unknown
                                                                                                                  fastlane.rubiconproject.com
                                                                                                                  unknown
                                                                                                                  unknownfalse
                                                                                                                    high
                                                                                                                    publickeyservice.aws.privacysandboxservices.com
                                                                                                                    unknown
                                                                                                                    unknownfalse
                                                                                                                      unknown
                                                                                                                      www.adsensecustomsearchads.com
                                                                                                                      unknown
                                                                                                                      unknownfalse
                                                                                                                        high
                                                                                                                        dis.criteo.com
                                                                                                                        unknown
                                                                                                                        unknownfalse
                                                                                                                          high
                                                                                                                          widget.us.criteo.com
                                                                                                                          unknown
                                                                                                                          unknownfalse
                                                                                                                            high
                                                                                                                            acdn.adnxs.com
                                                                                                                            unknown
                                                                                                                            unknownfalse
                                                                                                                              high
                                                                                                                              cdn-a.yieldlove.com
                                                                                                                              unknown
                                                                                                                              unknownfalse
                                                                                                                                unknown
                                                                                                                                ads.pubmatic.com
                                                                                                                                unknown
                                                                                                                                unknownfalse
                                                                                                                                  high
                                                                                                                                  adx2.adform.net
                                                                                                                                  unknown
                                                                                                                                  unknownfalse
                                                                                                                                    unknown
                                                                                                                                    hbopenbid.pubmatic.com
                                                                                                                                    unknown
                                                                                                                                    unknownfalse
                                                                                                                                      high
                                                                                                                                      cdn.jsdelivr.net
                                                                                                                                      unknown
                                                                                                                                      unknownfalse
                                                                                                                                        high
                                                                                                                                        image6.pubmatic.com
                                                                                                                                        unknown
                                                                                                                                        unknownfalse
                                                                                                                                          high
                                                                                                                                          fundingchoicesmessages.google.com
                                                                                                                                          unknown
                                                                                                                                          unknownfalse
                                                                                                                                            high
                                                                                                                                            gum.criteo.com
                                                                                                                                            unknown
                                                                                                                                            unknownfalse
                                                                                                                                              high
                                                                                                                                              rtb-csync.smartadserver.com
                                                                                                                                              unknown
                                                                                                                                              unknownfalse
                                                                                                                                                high
                                                                                                                                                prg.smartadserver.com
                                                                                                                                                unknown
                                                                                                                                                unknownfalse
                                                                                                                                                  high
                                                                                                                                                  cs.lkqd.net
                                                                                                                                                  unknown
                                                                                                                                                  unknownfalse
                                                                                                                                                    high
                                                                                                                                                    ad.turn.com
                                                                                                                                                    unknown
                                                                                                                                                    unknownfalse
                                                                                                                                                      high
                                                                                                                                                      ib.adnxs.com
                                                                                                                                                      unknown
                                                                                                                                                      unknownfalse
                                                                                                                                                        high
                                                                                                                                                        analytics.google.com
                                                                                                                                                        unknown
                                                                                                                                                        unknownfalse
                                                                                                                                                          high
                                                                                                                                                          static.adsafeprotected.com
                                                                                                                                                          unknown
                                                                                                                                                          unknownfalse
                                                                                                                                                            high
                                                                                                                                                            NameMaliciousAntivirus DetectionReputation
                                                                                                                                                            http://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEfalse
                                                                                                                                                            • Avira URL Cloud: safe
                                                                                                                                                            unknown
                                                                                                                                                            https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwEfalse
                                                                                                                                                              unknown
                                                                                                                                                              https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5bfalse
                                                                                                                                                                unknown
                                                                                                                                                                http://www.kalenderpedia.de/false
                                                                                                                                                                • Avira URL Cloud: safe
                                                                                                                                                                unknown
                                                                                                                                                                https://www.kalenderpedia.de/false
                                                                                                                                                                  unknown
                                                                                                                                                                  https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.htmltrue
                                                                                                                                                                    unknown
                                                                                                                                                                    • No. of IPs < 25%
                                                                                                                                                                    • 25% < No. of IPs < 50%
                                                                                                                                                                    • 50% < No. of IPs < 75%
                                                                                                                                                                    • 75% < No. of IPs
                                                                                                                                                                    IPDomainCountryFlagASNASN NameMalicious
                                                                                                                                                                    164.132.25.176
                                                                                                                                                                    unknownFrance
                                                                                                                                                                    16276OVHFRfalse
                                                                                                                                                                    172.217.19.226
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.17.66
                                                                                                                                                                    td.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    216.239.34.181
                                                                                                                                                                    analytics-alv.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    151.101.193.229
                                                                                                                                                                    jsdelivr.map.fastly.netUnited States
                                                                                                                                                                    54113FASTLYUSfalse
                                                                                                                                                                    142.250.181.130
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    185.89.210.153
                                                                                                                                                                    unknownGermany
                                                                                                                                                                    29990ASN-APPNEXUSfalse
                                                                                                                                                                    23.218.208.109
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    6453AS6453USfalse
                                                                                                                                                                    151.101.130.137
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    54113FASTLYUSfalse
                                                                                                                                                                    142.250.181.138
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    13.226.2.82
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    185.167.164.53
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    198622ADFORMDKfalse
                                                                                                                                                                    66.102.1.155
                                                                                                                                                                    stats.g.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    142.250.181.136
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.19.194
                                                                                                                                                                    securepubads.g.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    23.32.239.59
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    2828XO-AS15USfalse
                                                                                                                                                                    185.89.210.20
                                                                                                                                                                    ib.anycast.adnxs.comGermany
                                                                                                                                                                    29990ASN-APPNEXUSfalse
                                                                                                                                                                    35.190.80.1
                                                                                                                                                                    a.nel.cloudflare.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    108.158.75.112
                                                                                                                                                                    d2w45tum40fmzp.cloudfront.netUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    172.217.17.38
                                                                                                                                                                    dart.l.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    3.33.220.150
                                                                                                                                                                    match.adsrvr.orgUnited States
                                                                                                                                                                    8987AMAZONEXPANSIONGBfalse
                                                                                                                                                                    1.1.1.1
                                                                                                                                                                    unknownAustralia
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    172.217.17.34
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.17.78
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.17.35
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.19.174
                                                                                                                                                                    syndicatedsearch.googUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.22.23.72
                                                                                                                                                                    api-advertiser.linkvertise.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    64.233.165.84
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    239.255.255.250
                                                                                                                                                                    unknownReserved
                                                                                                                                                                    unknownunknownfalse
                                                                                                                                                                    67.199.150.81
                                                                                                                                                                    pugmaster-sg4c.pubmnet.comUnited States
                                                                                                                                                                    3257GTT-BACKBONEGTTDEfalse
                                                                                                                                                                    178.250.1.11
                                                                                                                                                                    gum.nl3.vip.prod.criteo.comFrance
                                                                                                                                                                    44788ASN-CRITEO-EUROPEFRfalse
                                                                                                                                                                    104.20.95.138
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    69.173.156.139
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    26667RUBICONPROJECTUSfalse
                                                                                                                                                                    142.250.181.78
                                                                                                                                                                    cse.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.18.43.90
                                                                                                                                                                    cdn.confiant-integrations.netUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    45.33.84.9
                                                                                                                                                                    can.thisilient.comUnited States
                                                                                                                                                                    63949LINODE-APLinodeLLCUSfalse
                                                                                                                                                                    172.217.17.70
                                                                                                                                                                    ad.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.17.72
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.17.25.14
                                                                                                                                                                    cdnjs.cloudflare.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    172.217.19.206
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.18.25.111
                                                                                                                                                                    scatteredstream.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    141.95.98.64
                                                                                                                                                                    unknownGermany
                                                                                                                                                                    680DFNVereinzurFoerderungeinesDeutschenForschungsnetzesefalse
                                                                                                                                                                    109.239.54.153
                                                                                                                                                                    www.kalenderpedia.deGermany
                                                                                                                                                                    8972GD-EMEA-DC-SXB1DEfalse
                                                                                                                                                                    104.18.10.207
                                                                                                                                                                    stackpath.bootstrapcdn.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    141.95.98.65
                                                                                                                                                                    id5-sync.comGermany
                                                                                                                                                                    680DFNVereinzurFoerderungeinesDeutschenForschungsnetzesefalse
                                                                                                                                                                    52.59.15.109
                                                                                                                                                                    hb.adscale.deUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    172.217.17.46
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    2.20.61.44
                                                                                                                                                                    unknownEuropean Union
                                                                                                                                                                    20940AKAMAI-ASN1EUfalse
                                                                                                                                                                    216.58.208.225
                                                                                                                                                                    pagead-googlehosted.l.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    216.58.208.226
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    216.58.208.227
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.20.94.138
                                                                                                                                                                    c.statcounter.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    46.228.164.11
                                                                                                                                                                    presentation-ams1.turn.comUnited Kingdom
                                                                                                                                                                    56396TURNGBfalse
                                                                                                                                                                    13.226.2.20
                                                                                                                                                                    d162h6x3rxav67.cloudfront.netUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    172.217.21.33
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.19.170
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.21.34
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.21.35
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.21.36
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    142.250.181.66
                                                                                                                                                                    googleads.g.doubleclick.netUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    104.18.24.111
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    151.101.1.229
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    54113FASTLYUSfalse
                                                                                                                                                                    68.183.48.219
                                                                                                                                                                    www.zipthisapp.comUnited States
                                                                                                                                                                    14061DIGITALOCEAN-ASNUSfalse
                                                                                                                                                                    178.250.1.9
                                                                                                                                                                    widget.nl3.vip.prod.criteo.comFrance
                                                                                                                                                                    44788ASN-CRITEO-EUROPEFRfalse
                                                                                                                                                                    104.18.27.193
                                                                                                                                                                    ssum-sec.casalemedia.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    207.65.33.78
                                                                                                                                                                    hbopenbid-sin12.pubmnet.comUnited States
                                                                                                                                                                    6203ISDN-NETUSfalse
                                                                                                                                                                    104.18.25.18
                                                                                                                                                                    js-sec.indexww.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    74.119.117.16
                                                                                                                                                                    widget.us5.vip.prod.criteo.comUnited States
                                                                                                                                                                    19750AS-CRITEOUSfalse
                                                                                                                                                                    5.161.110.190
                                                                                                                                                                    thisdwn.comGermany
                                                                                                                                                                    24940HETZNER-ASDEfalse
                                                                                                                                                                    142.250.181.142
                                                                                                                                                                    www3.l.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    172.217.19.2
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    35.156.138.246
                                                                                                                                                                    prod-ingestion.tracking.v2.yieldlove-ad-serving.netUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    104.18.26.193
                                                                                                                                                                    htlb.casalemedia.comUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    2.20.41.60
                                                                                                                                                                    unknownEuropean Union
                                                                                                                                                                    16625AKAMAI-ASUSfalse
                                                                                                                                                                    172.217.19.234
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    142.250.181.100
                                                                                                                                                                    www.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    185.89.210.90
                                                                                                                                                                    unknownGermany
                                                                                                                                                                    29990ASN-APPNEXUSfalse
                                                                                                                                                                    18.165.220.81
                                                                                                                                                                    publickeyservice.msmt-1.aws.privacysandboxservices.comUnited States
                                                                                                                                                                    3MIT-GATEWAYSUSfalse
                                                                                                                                                                    151.101.2.137
                                                                                                                                                                    code.jquery.comUnited States
                                                                                                                                                                    54113FASTLYUSfalse
                                                                                                                                                                    104.18.11.207
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    13335CLOUDFLARENETUSfalse
                                                                                                                                                                    13.226.2.101
                                                                                                                                                                    d29pb5sqvxbrp8.cloudfront.netUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    141.95.33.120
                                                                                                                                                                    lb.eu-1-id5-sync.comGermany
                                                                                                                                                                    680DFNVereinzurFoerderungeinesDeutschenForschungsnetzesefalse
                                                                                                                                                                    142.250.181.2
                                                                                                                                                                    adservice.google.comUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    142.250.181.99
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    35.158.4.76
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    16509AMAZON-02USfalse
                                                                                                                                                                    142.250.181.98
                                                                                                                                                                    unknownUnited States
                                                                                                                                                                    15169GOOGLEUSfalse
                                                                                                                                                                    217.182.178.234
                                                                                                                                                                    rtb-csync-euw2.smartadserver.comFrance
                                                                                                                                                                    16276OVHFRfalse
                                                                                                                                                                    IP
                                                                                                                                                                    192.168.2.4
                                                                                                                                                                    127.0.0.1
                                                                                                                                                                    192.168.2.16
                                                                                                                                                                    Joe Sandbox version:41.0.0 Charoite
                                                                                                                                                                    Analysis ID:1562251
                                                                                                                                                                    Start date and time:2024-11-25 12:04:10 +01:00
                                                                                                                                                                    Joe Sandbox product:CloudBasic
                                                                                                                                                                    Overall analysis duration:
                                                                                                                                                                    Hypervisor based Inspection enabled:false
                                                                                                                                                                    Report type:full
                                                                                                                                                                    Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                                                                                                                                    Sample URL:http://www.kalenderpedia.de
                                                                                                                                                                    Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                                                                                                                                    Number of analysed new started processes analysed:22
                                                                                                                                                                    Number of new started drivers analysed:0
                                                                                                                                                                    Number of existing processes analysed:0
                                                                                                                                                                    Number of existing drivers analysed:0
                                                                                                                                                                    Number of injected processes analysed:0
                                                                                                                                                                    Technologies:
                                                                                                                                                                    • EGA enabled
                                                                                                                                                                    Analysis Mode:stream
                                                                                                                                                                    Analysis stop reason:Timeout
                                                                                                                                                                    Detection:MAL
                                                                                                                                                                    Classification:mal60.expl.win@47/146@202/700
                                                                                                                                                                    • Exclude process from analysis (whitelisted): svchost.exe
                                                                                                                                                                    • Excluded IPs from analysis (whitelisted): 172.217.21.35, 172.217.17.46, 64.233.165.84, 34.104.35.123
                                                                                                                                                                    • Excluded domains from analysis (whitelisted): clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, clientservices.googleapis.com, clients.l.google.com
                                                                                                                                                                    • Not all processes where analyzed, report is missing behavior information
                                                                                                                                                                    • Report size getting too big, too many NtCreateKey calls found.
                                                                                                                                                                    • Report size getting too big, too many NtEnumerateKey calls found.
                                                                                                                                                                    • Report size getting too big, too many NtOpenKeyEx calls found.
                                                                                                                                                                    • Report size getting too big, too many NtProtectVirtualMemory calls found.
                                                                                                                                                                    • Report size getting too big, too many NtQueryValueKey calls found.
                                                                                                                                                                    • Report size getting too big, too many NtReadVirtualMemory calls found.
                                                                                                                                                                    • VT rate limit hit for: http://www.kalenderpedia.de
                                                                                                                                                                    Process:C:\Windows\System32\svchost.exe
                                                                                                                                                                    File Type:data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):1310720
                                                                                                                                                                    Entropy (8bit):0.8167581353254268
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:0E68DCFEF19EAA305FAF47D6294A713B
                                                                                                                                                                    SHA1:A4AC58DBEDA581B3395E072BFE05020DBB1BC0F7
                                                                                                                                                                    SHA-256:F5D5686570DEB40BC1522157E67B5D7316EDA7C2F87DDF1FB587546A6E5832F2
                                                                                                                                                                    SHA-512:E9FF1EA6A70196B2B43EEAF225287DADED6D6E98E1BB0FAEDF4B9FBAEFBF9A1013AEB12080A7528DD76FA02D89C093265119A5AAEFD34D08E9FC03555A037412
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:..6.........@..@.....{...;...{..........<...D./..;...{..................C:\ProgramData\Microsoft\Network\Downloader\.........................................................................................................................................................................................................................C:\ProgramData\Microsoft\Network\Downloader\..........................................................................................................................................................................................................................0u..................@...@....................................d6d6.#.........`h.................h.......6.......X\...;...{..................C.:.\.P.r.o.g.r.a.m.D.a.t.a.\.M.i.c.r.o.s.o.f.t.\.N.e.t.w.o.r.k.\.D.o.w.n.l.o.a.d.e.r.\.q.m.g.r...d.b....................................................................................................................................................................
                                                                                                                                                                    Process:C:\Windows\System32\svchost.exe
                                                                                                                                                                    File Type:data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):16384
                                                                                                                                                                    Entropy (8bit):0.08149157434445778
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:02CBF01BD6B38270381406928D7750CC
                                                                                                                                                                    SHA1:49DFA4C85EEA854752C8FFEF4DC17D9DEA99837E
                                                                                                                                                                    SHA-256:B8F18AA56BDF8ECBCA59AE4B550715E1DB1640DE2AB85AD755B42E43D46B7B24
                                                                                                                                                                    SHA-512:5532ECA06E0ACD0C9605DF336ED14F6286E4F776DE194BA9150C16234D32075A87C09F0690632C5390945C9CD367B0811FEDA122CE8194C5673DF24784185A21
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:...U.....................................;...{..)....|... ...{........... ...{... ...{..#.#.. ...{.|................n..)....|..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                    Process:C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
                                                                                                                                                                    File Type:data
                                                                                                                                                                    Category:modified
                                                                                                                                                                    Size (bytes):21236
                                                                                                                                                                    Entropy (8bit):5.4740770911278345
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C4D2A2AB5AD45BC4E33FE70B423EBAF1
                                                                                                                                                                    SHA1:F792DF8855B2B87C761A6D19587AB9E24A22CEFD
                                                                                                                                                                    SHA-256:D0933C81AB5242593DE72D6037F44F5930F4C664DC34892FFE3A770B2EF9595E
                                                                                                                                                                    SHA-512:3F74BCB31C00A2A9E30326B299A9840355E031F98C25B9FC8948EFB680FF519080BAF2F871BC7F2CECC621A122176314357A6EBBD64152EA29F96B0DAD489713
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:@...e...........v....................................@..........H...............o..b~.D.poM...H..... .Microsoft.PowerShell.ConsoleHostD...............4..7..D.#V.............System.Management.Automation0.................Vn.F..kLsw..........System..4...............<."..Ke@...j..........System.Core.L.................*gQ?O.....x5.l.....#.Microsoft.Management.Infrastructure.8..................1...L..U;V.<}........System.Numerics.4.................%...K... ...........System.Xml..@................z.U..G...5.f.1........System.DirectoryServices<................t.,.lG....M...........System.Management...<...............i..VdqF...|...........System.Configuration4...............&.QiA0aN.:... .G........System.Data.H................WY..2.M.&..g*(g........Microsoft.PowerShell.Security...<................$@...J....M+.B........System.Transactions.P...............8..{...@.e..."4.......%.Microsoft.PowerShell.Commands.Utility...D....................+.H..!...e........System.Configuration.Ins
                                                                                                                                                                    Process:C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
                                                                                                                                                                    File Type:ASCII text, with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):60
                                                                                                                                                                    Entropy (8bit):4.038920595031593
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D17FE0A3F47BE24A6453E9EF58C94641
                                                                                                                                                                    SHA1:6AB83620379FC69F80C0242105DDFFD7D98D5D9D
                                                                                                                                                                    SHA-256:96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7
                                                                                                                                                                    SHA-512:5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:# PowerShell test file to determine AppLocker lockdown mode
                                                                                                                                                                    Process:C:\Users\user\Downloads\ZipThis.exe
                                                                                                                                                                    File Type:ASCII text, with CRLF line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):872
                                                                                                                                                                    Entropy (8bit):5.1509638642903175
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:0D4C7C2411E1BA411E24DE176494CA90
                                                                                                                                                                    SHA1:3715BB3B5B1525155AFFF7F570C05CF2B0538ACF
                                                                                                                                                                    SHA-256:DC4685144E93384E88D1FC6E6DD66F6C4E703ED9173A98819F2C8BCB28D983FC
                                                                                                                                                                    SHA-512:BA9E7C8AFE9EAD6B3E4FFA36948AADDA281421182A70090B531EFE51F8F0F488AC1370E5007C9C183136FC6B1DB91B39BDFC56C428832A6ABF9DEBBFB84D5F23
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:$currentUser = [System.Security.Principal.WindowsIdentity]::GetCurrent().Name..$localAppDataPath = [System.Environment]::GetFolderPath('LocalApplicationData')..$relativePath = "ZipThis\Updater.exe"..$fullPath = [System.IO.Path]::Combine($localAppDataPath, $relativePath)..$action = new-ScheduledTaskAction -Execute $fullPath..$trigger = new-ScheduledTaskTrigger -Daily -At ((Get-Date).AddHours(24)) -DaysInterval 1..$principal = New-ScheduledTaskPrincipal -UserId $currentUser -LogonType Interactive..$settings = New-ScheduledTaskSettingsSet -AllowStartIfOnBatteries -DontStopIfGoingOnBatteries -StartWhenAvailable -RestartCount 2 -RestartInterval (New-TimeSpan -Minutes 10) -RunOnlyIfNetworkAvailable..$task = New-ScheduledTask -Action $action -Trigger $trigger -Principal $principal -Settings $settings..register-ScheduledTask -TaskName "UpdateTaskZT" -InputObject $task
                                                                                                                                                                    Process:C:\Users\user\Downloads\ZipThis.exe
                                                                                                                                                                    File Type:ASCII text, with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):36
                                                                                                                                                                    Entropy (8bit):3.5832745714766525
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:6210A546095C02A28F89DAA402B0E2D1
                                                                                                                                                                    SHA1:D56797875D888E219130215207FF54A8135FD2E8
                                                                                                                                                                    SHA-256:2E6141CD1A5B7A71C79A9EE7FE3834E32827F258041C5BA1D06853EAF6D3EB20
                                                                                                                                                                    SHA-512:42E8D5399D7B8A8227A9E0A18C042E246257342491FD20017528280173BF4797EED9524477FBC28312C7DCC907A6A2677D9909E42BA8624F222A4B295FCC56E8
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:c14bc5b0-c4ea-49fa-aae2-e47c61b59c5b
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 10:04:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2673
                                                                                                                                                                    Entropy (8bit):3.9841199428378453
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:167473857030690F5A5A0D39D0E74B86
                                                                                                                                                                    SHA1:B388ABEF930AF6D961CDAD036F7FA64D3F058FC7
                                                                                                                                                                    SHA-256:D5CB64046543668AA3810AA2DE83C44C9F334F8293DB6203A6F066B76AB9FC06
                                                                                                                                                                    SHA-512:7A446F2A12817C6D5F48A5E69CD4EEAD6F288A2E14480A47CA8B9876D6817737FB2CAF264127BDBE3EA3BCC41F9500564683D03806314A8CBB803BA58022B259
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,.....E..)?..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VyY.X...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 10:04:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2675
                                                                                                                                                                    Entropy (8bit):4.001793762627373
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B67E13A5F064FE228C1EA33B83F1CD0B
                                                                                                                                                                    SHA1:8C4880804E69186880BA65B70339835B4BCE563D
                                                                                                                                                                    SHA-256:3E9F79D2B5AB05170B3ED1BE1DA99040DB36E088FB5AC82D2C7C858BBBF7B413
                                                                                                                                                                    SHA-512:B9D9CDF8C5C4B5D464C1CD5C3A0804E28D39C6FD3E00E743FC535F340AA07B1784255D4C039A336D71EEBAF74454758FF353021DD5F722937E10B66380CBBCCE
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,....8...)?..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VyY.X...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2689
                                                                                                                                                                    Entropy (8bit):4.009158249124789
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:91424D4406233F0C1F8DA86D252CDF88
                                                                                                                                                                    SHA1:6743794CF93AC64E7681B91C2706A8188E426D35
                                                                                                                                                                    SHA-256:AE57CEC4D58B457F92D9A8AD8985D277227101DFCB38E7BE105066898F8D353B
                                                                                                                                                                    SHA-512:4463DF6BA3E718D95C8D145C69EEE28838C29417B997D3805900160C177EEFA2DD766919C381FD426A817AE47CBAC8E52744A2DBDCFE7CA0191B0F823D359D48
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 10:04:37 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2677
                                                                                                                                                                    Entropy (8bit):3.999620202349797
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:BB37262DAC6C1F65D73DAC945DA59CB4
                                                                                                                                                                    SHA1:EE138EB7A90A855616E1E2FB2115C6980DD59042
                                                                                                                                                                    SHA-256:96440FFB8B93DAE85110A83D7B59810F867D2B1EF52FAB84D799FC2649D57DDE
                                                                                                                                                                    SHA-512:C093C33067F82609B3EDCCA9F7FE2A0792C2F73DBDA23068ACF386817575090B6A8E4BA86AD18970928CAB06B4F4A595FE7CCBA492DD82B0499AAA76C4101DB2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,........)?..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VyY.X...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 10:04:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2677
                                                                                                                                                                    Entropy (8bit):3.9882206400811326
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:ADF5F354FCA27CEC927D31FD099A0D4C
                                                                                                                                                                    SHA1:B527E0C650D26C9A4EE87F32A7596C9969B649BA
                                                                                                                                                                    SHA-256:39D6B4F43790A043F7E1E83496B91F22F2ED8D8167BA3201F83BC58C56C6BD68
                                                                                                                                                                    SHA-512:616F26997B9B7024FDFF6AE6420561B3B442E9A79747C43861FC09A00850ACF65366ABCB300F5221490D8E41E51A0765883FCB12DD7FE4D1C0C79E2DE301B6CE
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,.......)?..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VyY.X...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 10:04:37 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2679
                                                                                                                                                                    Entropy (8bit):3.9978031471000364
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:6CC0A62030E4C34BD68395905353B1B9
                                                                                                                                                                    SHA1:C794CFDDD75244EA7D402C9B228936AFB5705364
                                                                                                                                                                    SHA-256:CBE9659D40E0F0B2BC445706F434BC5B7D5032F63D08F98D163BDE928206C0F1
                                                                                                                                                                    SHA-512:461E5BF71B358029E1EA1C6B4241CAA1FB1A01B9D33951E8FA37B63DE29DA73FFD9C39AA30452FD1A9910C2FA66E58B578B3A417C97831BED6E4B171C6D5D0FD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:L..................F.@.. ...$+.,....G...)?..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IyY.X....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VyY.X....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VyY.X....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VyY.X..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VyY.X...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............x.?.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):3692
                                                                                                                                                                    Entropy (8bit):4.548239952676303
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8A67ECBDA8CB4BF6783E19D21EB8BEA4
                                                                                                                                                                    SHA1:9F1F24B520FE391866DD7EDA7C309AC2231F10B6
                                                                                                                                                                    SHA-256:C40FB9E53932C97CC7DBA76A6ED8239A77372951A64FBF63D74A505C34DBFA0A
                                                                                                                                                                    SHA-512:F82AF9AD4007AD0BFE30FA6EF8DF472498B1E8CC256D6E6C438BB8726657C45523302322EE5B09A12CBB7B27F0E067A524E36D133048FE64A01B972A685A2EF5
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..d.....G..........."...0...).............. .....@..... ....................... +.....Y.+...`...@......@............... ...............................@)...............*.(/...........").............................................................. ..H............text.....).. ....)................. ..`.rsrc........@).......).............@..@........................................H........B...h...............w(.........................................z..(....s.....(.....(q...o....*Bs....(....(k...*2s....o....&*..( ...*..(!...*.~....-.r...p.....("...o#...s$........~....*.~....*.......*.~....*..(%...*Vs....(&...t.........*..{....*"..}....*..{....*n.('....(......((.....}....*&..(.....*J.(.....(....o~...*J.(.....(....o~...*...0..q........(.....r9..p(.....R.(R...o.....(f........T...%...o)....%.(*....%..o+....%.r...p.%..o,....(-...o.......(....o}...*..............R
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):2820904
                                                                                                                                                                    Entropy (8bit):7.182451876726584
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:22A6CB7348B496600E7151A8112CBAC9
                                                                                                                                                                    SHA1:F0CD50658868A3D347BEFF6977A54520C19AB640
                                                                                                                                                                    SHA-256:BF2F238D09AC55E7BAF3D73C80C82D3DF935DAA6B94ADF67A299AD3665E879E2
                                                                                                                                                                    SHA-512:C56CFC209F93873FD147E00BD515F1FF0463063FFA7A91C00F7C0D939FC19EEFAC6DF700914363D630BA575E21D7C4AEB0CBC33DEEF38387C7E94F580D4CEAF0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..d.....G..........."...0...).............. .....@..... ....................... +.....Y.+...`...@......@............... ...............................@)...............*.(/...........").............................................................. ..H............text.....).. ....)................. ..`.rsrc........@).......).............@..@........................................H........B...h...............w(.........................................z..(....s.....(.....(q...o....*Bs....(....(k...*2s....o....&*..( ...*..(!...*.~....-.r...p.....("...o#...s$........~....*.~....*.......*.~....*..(%...*Vs....(&...t.........*..{....*"..}....*..{....*n.('....(......((.....}....*&..(.....*J.(.....(....o~...*J.(.....(....o~...*...0..q........(.....r9..p(.....R.(R...o.....(f........T...%...o)....%.(*....%..o+....%.r...p.%..o,....(-...o.......(....o}...*..............R
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):0
                                                                                                                                                                    Entropy (8bit):0.0
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:22A6CB7348B496600E7151A8112CBAC9
                                                                                                                                                                    SHA1:F0CD50658868A3D347BEFF6977A54520C19AB640
                                                                                                                                                                    SHA-256:BF2F238D09AC55E7BAF3D73C80C82D3DF935DAA6B94ADF67A299AD3665E879E2
                                                                                                                                                                    SHA-512:C56CFC209F93873FD147E00BD515F1FF0463063FFA7A91C00F7C0D939FC19EEFAC6DF700914363D630BA575E21D7C4AEB0CBC33DEEF38387C7E94F580D4CEAF0
                                                                                                                                                                    Malicious:true
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..d.....G..........."...0...).............. .....@..... ....................... +.....Y.+...`...@......@............... ...............................@)...............*.(/...........").............................................................. ..H............text.....).. ....)................. ..`.rsrc........@).......).............@..@........................................H........B...h...............w(.........................................z..(....s.....(.....(q...o....*Bs....(....(k...*2s....o....&*..( ...*..(!...*.~....-.r...p.....("...o#...s$........~....*.~....*.......*.~....*..(%...*Vs....(&...t.........*..{....*"..}....*..{....*n.('....(......((.....}....*&..(.....*J.(.....(....o~...*J.(.....(....o~...*...0..q........(.....r9..p(.....R.(R...o.....(f........T...%...o)....%.(*....%..o+....%.r...p.%..o,....(-...o.......(....o}...*..............R
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (10928), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):10928
                                                                                                                                                                    Entropy (8bit):5.160436542843056
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:78B4B0CAFB95265CA700A4B4609D0664
                                                                                                                                                                    SHA1:8F9BD4141035EA1EA3EFD49BEE4F8CB3705286BE
                                                                                                                                                                    SHA-256:B14B694672A147AA8F4831209101B3B16ECD4BE00388CFF5DF414EBE7A3EA4F2
                                                                                                                                                                    SHA-512:C7B5EC0B984C881EB74DD73951EB53EABFD77BC944D42DEA20F3FCA9410D3540BC4D8FECA7203AF8FCA759B6F1BA224FDE607C3B00EF7A5864110E58C985FCA7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://js.adscale.de/userconnect.js
                                                                                                                                                                    Preview:!function(){var t={770:function(t){function n(t){return n="function"==typeof Symbol&&"symbol"==typeof Symbol.iterator?function(t){return typeof t}:function(t){return t&&"function"==typeof Symbol&&t.constructor===Symbol&&t!==Symbol.prototype?"symbol":typeof t},n(t)}var r=/&amp;|&|;/gim;t.exports={encode:function(t,r){var e,o=[];for(e in t)null!=t[e]&&"object"!=n(t[e])&&"function"!=typeof t[e]&&o.push(encodeURIComponent(e)+"="+encodeURIComponent(t[e]));return o.join(r||"&")},decode:function(t,n){n=n||r;for(var e,o,i,c={},a=t.split(n),u=0,f=a.length;u<f;u++)i=a[u].indexOf("="),e=a[u].substring(0,i),(o=a[u].substring(i+1))&&(c[decodeURIComponent(e)]=decodeURIComponent(o));return c}}},353:function(){String.prototype.startsWith||Object.defineProperty(String.prototype,"startsWith",{value:function(t,n){return this.substring(!n||n<0?0:+n,t.length)===t}})}},n={};function r(e){var o=n[e];if(void 0!==o)return o.exports;var i=n[e]={exports:{}};return t[e](i,i.exports,r),i.exports}!function(){"use s
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):11304
                                                                                                                                                                    Entropy (8bit):4.750862192682671
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:A178750680A49154352F75481F64192B
                                                                                                                                                                    SHA1:66E39E6F562420F352E7B7A5A0CABDB736B84230
                                                                                                                                                                    SHA-256:92632FC2BB529D5455CBA29C15544915416822A64BCE09DA6938F582CE9083BD
                                                                                                                                                                    SHA-512:326DCA7F155B453B2B8212FEF70B3F38E2BD555116D2354FBD046AA891D1E02ABB41C7DC259D4FEA67955A4111AF29035CF96E0B7CBB7F9EF0C43FE223B532A0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/css/styles.css
                                                                                                                                                                    Preview:body {. font-family: 'Roboto Light', sans-serif;. margin: 0;. padding: 0;. color: #212529;. background-color: #fff;.}..h1, h2, h3, h4, h5, h6 {. font-family: 'Roboto Light', sans-serif;.}..span{. color: white;.}...zipThisLogoText {. color: black;.}..a {. text-decoration: none; /* Remove underline by default */. color: #1059c8; /* Optional: inherit the text color */.}..a:hover {. text-decoration: underline; /* Show underline on hover */.}../* Button styles (no underline on hover) */.a.btnDownload, a.btnbuynow {. text-decoration: none; /* Remove underline by default */. display: inline-flex; /* Change to inline-flex for better alignment */. align-items: center; /* Center items vertically */. justify-content: center; /* Center items horizontally */.}...download-icon {. margin-left: 0.5rem; /* Add some space between the text and the icon */. width: 1.5rem; /* Adjust the size of the icon */. height: auto; /* Maintain aspect ratio */.}..a
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (786)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):1672
                                                                                                                                                                    Entropy (8bit):5.286735414643417
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:AB304529064B2C30C88FC41AD81913E0
                                                                                                                                                                    SHA1:14091E21A049D97B052DD56FF4076898F6F7D0CC
                                                                                                                                                                    SHA-256:88C5A7E6C9B3319F4BE9CD873D1E19766A62BE628EA9921156DD2702F1D15031
                                                                                                                                                                    SHA-512:6F8A7C3D2516C88E172D6AF1F88B0F32242A737BA128F95E0668D57EE004384DAFE4011A84FC543BA477A7BC82A8D47862F1F276F0C89FA0087D63E4D3B72691
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){'use strict';let e=[];const f=()=>{const a=e;e=[];for(const b of a)try{b()}catch{}};function g(a=document){return a.createElement("img")};function h(a=null){return a&&a.getAttribute("data-jc")==="26"?a:document.querySelector('[data-jc="26"]')};var k=document;/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=()=>{var a=k.querySelectorAll("link[data-reload-stylesheet][as=style][rel=preload]");for(var b=0;b<a.length;b++){var c=a[b],d="link",l=document;d=String(d);l.contentType==="application/xhtml+xml"&&(d=d.toLowerCase());d=l.createElement(d);d.setAttribute("rel","stylesheet");d.setAttribute("href",c.getAttribute("href"));k.head.appendChild(d)}if(a.length>0&&!(Math.random()>.01)){a=(a=h(document.currentScript))&&a.getAttribute("data-jc-rcd")==="true"?"pagead2.googlesyndication-cn.com":"pagead2.googlesyndication.com"; .b=(b=h(document.currentScript))&&b.getAttribute("data-jc-version")||"unknown";a=`https://${a}/pagead/gen_204?id=jca
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 360 x 360, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):5385
                                                                                                                                                                    Entropy (8bit):7.6773568166610735
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:BCEB7BF2F06457FBFD4BDA4B8C2C0F9C
                                                                                                                                                                    SHA1:E8F2907217ABD612D7141D37FE251408F52AA434
                                                                                                                                                                    SHA-256:4EC9550A7EBFF60D186E6E02D8801EEF517EFCA4CBE37E2CB267677168CE7276
                                                                                                                                                                    SHA-512:0CE736F720F420BD39531489C93E6FC53CEAC252A68A40389E07013B532AC2B4DE73FC015A0C3954E0D603DC7CA9C514FA6AEBF34C87B646FCA389EB78C5919D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/images/new/zipthis-folder.png
                                                                                                                                                                    Preview:.PNG........IHDR...h...h.....z.a.....pHYs...#...#.x.?v....IDATx...K.\.].....{.5.%..v....IA.@.E..R.b..+X...TQ.a..U.`.*.PY$.(B......8elG...i.=.}.9,n.4q$...L.{...URY-.L..w.=...s....0.....@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E...)...N.h.p.@..S....".........4.8E....b...._~.k...V..r...SU.us...z..$I..Oj.wF1..L&SV...\.......6w/..Z...V'.....z...t..[....w.....8..~|.o.....Oh........[....^.....)...t@Cu..... ,...<......On.e.n._].......x..}.;......J....r..S..R+....=...a(.. X.%ig.o.J.)i4..._..G..O..^.....v.&I..WS.>S...hen....K..B2.+..4.>.\Y...J.+O..4L.V......uI....Y..X!.8....u..'....?.~4..q9.....f...a.Y2S0S..)'.L..M.~2.7.K..p.@..I.H:)...n~...WT
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (5945)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):294733
                                                                                                                                                                    Entropy (8bit):5.5883004739401505
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:F8E7143B8C0720704D49034DFB7BFB09
                                                                                                                                                                    SHA1:458B785B2C27AB4762F3F57EA8C5757585A85231
                                                                                                                                                                    SHA-256:B8CBFC4EFE08CE9574B67344AD567DDEAB1CA5FB8C21BBA27950334E7CA422B4
                                                                                                                                                                    SHA-512:823108FE1AB63EEFFFD6241FE84EE3708669A4E6045A8501B8E0FB75853430B986B92AA8A3EBC1BCE44CD041388D0B6F5769876F489685F824E9CD2D847FFD8A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_1p_data_v2","priority":10,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetValue":"","vtp_lastNameType":"CSS_SELECTOR","vtp_autoAddressEnabled":false,"vtp_regionValue":"","vtp_countryValue":"",
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3835)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):228013
                                                                                                                                                                    Entropy (8bit):5.546396955793898
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:A13A89C84532B7A90BCFCAD90AB23481
                                                                                                                                                                    SHA1:F0E4B3F8B614030517E31DCBA8DF82CF5D927497
                                                                                                                                                                    SHA-256:F8F05807B948353415369A7B74AAF43DBA5E694B7D18FF527A43A608EB1225E4
                                                                                                                                                                    SHA-512:C8C23AE03E1FC4E13C81A7ACC90D153B11B193FA0ABE0AFA0858D0DB24692F9594D9488543B3A878C66E852A4C9D931A8AC833875CB1AB7B591F501D32575B73
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"undefined"}],. "tags":[{"function":"__ogt_1p_data_v2","priority":2,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_autoEmailEnabled":true,"vtp_autoPhoneEnabled":false,"vtp_autoAddressEnabled":false,"vtp_isAutoCollectPiiEnabledFlag":false,"tag_id":10},{"function":"__ccd_ga_first","priority":1,"vtp_instanceDestinationId":"UA-19254046-17","tag_id":13},{"function":"__rep","vtp_containerId":"UA-19254046-17","vtp_remoteConfig":["map"],"tag_id":1},{"function":"__zone","vtp_childContainers":["list",["map","publicId","G-QT0HVH0Q0V"]],"vtp_enableConfiguration":false,"tag_id":3},{"function":"__ccd_ga_last","priority":0,"vtp_instanceDestinationId":"UA-19254046-17","tag_id":12}],. "predicates":[{"function":"_eq","arg0":["macro",0],"arg1":"gtm.js
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):269
                                                                                                                                                                    Entropy (8bit):5.235195150873638
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C7B1A96E4676C76C0240D4A835FB7252
                                                                                                                                                                    SHA1:8A4DE304873BB5A8C11DD86B86CC8B8356BAD8B5
                                                                                                                                                                    SHA-256:E4DF52D49C57BC3E7158CB052CC05C60F1258C24DE5C5728DAC5D43272943AD9
                                                                                                                                                                    SHA-512:349FE7702C3A1355026D9051B3BDF4143358A34A416DF67099E7FA16CACD72270E40DAF59C24C1FE0C6705F91AEDABD0E9D8298985E6A3BF9F133C08DC07AD86
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://eus.rubiconproject.com/usync.html?gdpr=0
                                                                                                                                                                    Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">. Copyright Magnite 2024 -->.<html>.<head>. <title>User-Sync</title>.</head>.<body>. <script type="text/javascript" src="usync.js"></script>.</body>.</html>.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3533)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):222620
                                                                                                                                                                    Entropy (8bit):5.453778409986065
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:0937765F707861C6322AD7BFC9CB2D1D
                                                                                                                                                                    SHA1:A71828387CADE9BC6746E317E15357EFD5D9574B
                                                                                                                                                                    SHA-256:8D2678FF0715284456A48F52FA21C43A417BEA04BCB4B6FCD516AB11DC047192
                                                                                                                                                                    SHA-512:534296662B9FBB0D754C99220CDBE4474B6221498C751E4F04E1D008C6C8C975580B4BC751B70A5CCA672C9D9EB1EED18A9BBE11C9C178121D113A93BFF07AFD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://pagead2.googlesyndication.com/pagead/managed/js/activeview/current/ufs_web_display.js
                                                                                                                                                                    Preview:(function(){var n,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("a");},da=.ca(this),p=function(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}};.p("Symbol",function(a){if(a)return a;var b=function(f,g){this.Kg=f;ba(this,"description",{configurable:!0,writable:!0,value:g})};b.prototype.toString=function(){return this.Kg};var c="jscomp_symbol_"+(Math.random()*1E9>>>0)+"_",d=0,e=function(f){if(this instanceof e
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):41700
                                                                                                                                                                    Entropy (8bit):4.965249112595398
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:BACCB7180FE061B63ED061EC10C3B0C8
                                                                                                                                                                    SHA1:BFB31590BA6E758EB8F25735B564D7E4A0919025
                                                                                                                                                                    SHA-256:A5402DE70228D4BF5379B518225B702918F6AE277E9293F9D16334C2B1FA31E3
                                                                                                                                                                    SHA-512:8C572740FC0AECBCF2495797E9125025063F512D7A06F196ABEEBC9B542C2C93311D84DAF7878AC1F8CFDD48B898FC85852286FA2CF2CEFB2957142033D8990B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.google.com/cse/static/element/8fa85d58e016b414/default+de.css
                                                                                                                                                                    Preview:/** Copyright 2005 Google Inc. All rights reserved. */../* the GSearchControl CSS Classes. * .gsc-control: the primary class of the control. */..gsc-control {. width: 300px;.}...gsc-control div {. position: static;.}../* Slight reset to make the preview have ample padding. */..gsc-control-cse {. padding: 1em;.}...gsc-control-cse,..gsc-control-cse .gsc-table-result {. width: auto;. font-family: Arial, sans-serif;. font-size: 13px;.}...gsc-control-wrapper-cse {. width: 100%;.}../* control inputs. * .gsc-search-box: the container that hosts the text input area. * .gsc-input: the text input area. * .gsc-keeper: the save link below savable results. */.form.gsc-search-box {. font-size: 13px;. margin-top: 0;. margin-right: 0;. margin-bottom: 4px;. margin-left: 0;. width: 100%;.}../*. * This table contains the input element as well as the search button. * Note that the search button column is fixed width, designed to hold the. * button div's background image. */.table.gsc-search-b
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 382 x 176, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):16362
                                                                                                                                                                    Entropy (8bit):7.960446411220444
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7E6A0A02601D9A44A3E9CB4DE5A8D1C9
                                                                                                                                                                    SHA1:A0E771DA8C2DAC1E0FF520621CA8C6878A33F19E
                                                                                                                                                                    SHA-256:FC254DF34CB0A8B5363D0DE9A30B53589721885A0979607B96AF48988565F2A3
                                                                                                                                                                    SHA-512:7A6270979D86698B4674A8C15FC8BE6DAC059B32FC7A7E6BD858FA4746A818A3E10A9C28CDB5E8F5FFCEF656357C9567E71E575D18A9A6D1232228FFA9A2EA84
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.PNG........IHDR...~.........?.......PLTE...A...\7....Z..)9!.f....+..|A.?....+|....DDD..............3...................^__.....................lllRSS....f.abbGGGKKK..`....a.............667...uuv.......F(.........{{|OOO..............................l#.......E....ggh............=>>.V1.........9...,!...qqq.%....##$J........./p... b>.......p<.......<.,k.....9........f..1.'W...L....3(........h...8*.rt.......X...H...b.....>:(u..#..ig&.]....Q..QO.~n.><.f`....."......,.x........($...<..B>......_`..)......"M.;..)i....NJ..........+.m.........g....~.!..JIC.i...!C~..a_.y{y................JN..[.d...\X..N..y..K..l..K.7{.n....qJ&&.....^].. .(f.l...+.y&'.........#'...mZ.Gq@2......=....br........tVV................1.........M.z..d.S=......)=j.s./.4r.........>.9p...P....B..._ .4..e_5....<.IDATx..}L.W...F......L;.....No.F....1~......5<.....H.%UA..H.4eQh.4PA.%%].V..4...*7.m.=.Z5.JI[5U.....J.V....;.._1..f...&.g.........3..S..n.D.Q..L.h.B.7.=D..V...z....'.o.x..
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (539), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):539
                                                                                                                                                                    Entropy (8bit):4.598912011399093
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:07DA4F027F7F12613DCAE4E26C25A6C5
                                                                                                                                                                    SHA1:CDB7051ABE6EEC8126CACE4503A1E94FBE53EA3B
                                                                                                                                                                    SHA-256:C25E9C93CD91E782F9FED1463383469EA2A23B80556A6DA6E97D0083170D30D8
                                                                                                                                                                    SHA-512:E542E97E814BA1266B55D51CFEFA69BACD2148B24A5AE12493422F2F46AAB4E2AE5C6908EB240E9BC27E764B9F2FBD9A96289F16B0F31F6997340061E7D4B4F9
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:Required request body is missing: public org.springframework.http.ResponseEntity<io.id5.fetch.request.FetchResponseDto> io.id5.fetch.FetchController.fetchClientToServer(java.lang.Long,io.id5.fetch.request.FetchRequestBody,java.lang.Integer,java.lang.String,java.lang.String,java.lang.String,java.lang.String,java.lang.String,java.lang.String,java.lang.String,java.lang.String,java.lang.Long,java.lang.String,java.lang.String,java.util.List<java.lang.String>,jakarta.servlet.http.HttpServletRequest,jakarta.servlet.http.HttpServletResponse)
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):3992
                                                                                                                                                                    Entropy (8bit):4.501056007343047
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:52C21532008899BC85ACA0F4F8F972B9
                                                                                                                                                                    SHA1:84D2571C2D4999AF4E6A5B189F9D8331E40B8071
                                                                                                                                                                    SHA-256:FBDF77C4F54AB80C36E91E0425A7D33D9490494CC5233A3D751FC6CFE4B24EE5
                                                                                                                                                                    SHA-512:6A60A3ECB517AF253FA95402B0866134349805699D9F3B95FC50DAF86DCE5B7E7B1D6E9FE65629D570BF461EECEE286264B0A5CABB1BB962BEB07DDE25E82E14
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/success?u=c14bc5b0-c4ea-49fa-aae2-e47c61b59c5b
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html lang="en">.<head>. <meta charset="UTF-8">. <meta name="viewport" content="width=device-width, initial-scale=1.0">. <title>Zip This - Successfully Updated</title>. Link Favicon -->. <link rel="icon" href="assets/images/favicon.ico" type="image/x-icon">. Link CSS Reset -->. <link rel="stylesheet" href="https://cdnjs.cloudflare.com/ajax/libs/normalize/8.0.1/normalize.min.css">. Link Bootstrap CSS -->. <link rel="stylesheet" href="https://stackpath.bootstrapcdn.com/bootstrap/4.5.2/css/bootstrap.min.css">. <link rel="stylesheet" href="./assets/css/main.css">. <script>(function (w, d, s, l, i) {. w[l] = w[l] || []; w[l].push({. 'gtm.start':. new Date().getTime(), event: 'gtm.js'. }); var f = d.getElementsByTagName(s)[0],. j = d.createElement(s), dl = l != 'dataLayer' ? '&l=' + l : ''; j.async = true; j.src =. 'https://www.googletagmanager.com/gtm.js?id=' + i + dl; f.par
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):45044
                                                                                                                                                                    Entropy (8bit):6.142475722876252
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:17B7E760DD5842D1F3F83331C20E473A
                                                                                                                                                                    SHA1:037575E526B0865BBF5A62CC038BC1B746A02977
                                                                                                                                                                    SHA-256:A4F305C621BC854FAD013AD554C0443E42531F1131038996510B5E9314874459
                                                                                                                                                                    SHA-512:AF5F270463EDD90ADBCB506DBE8A4CF0CFC4375CA1E77F5CCDD6C7506B5E4B357C57E54F1625D7CF5840E075B51D2AEEB7EB210D569015C5B42D77C577B684AD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://securepubads.g.doubleclick.net/gampad/ads?pvsid=3652578938665992&correlator=1104433068851960&eid=31087614%2C31088953&output=ldjh&gdfp_req=1&vrg=202411180101&ptt=17&impl=fif&gdpr=0&iu_parts=53015287%3A21856740239%2Ckalenderpedia.de_d_160x600_1&enc_prev_ius=%2F0%2F1&prev_iu_szs=160x600&ifi=4&sfv=1-0-40&eri=1&sc=1&cookie=ID%3D20ac076f1e13ac02%3AT%3D1732532694%3ART%3D1732532694%3AS%3DALNI_MaKdjdRR9AMehUQqS6nIkGS0XCm7A&gpic=UID%3D00000f8f78736709%3AT%3D1732532694%3ART%3D1732532694%3AS%3DALNI_MbXH_8Z_e_SCTnCsfCoiVPWEOX_5A&abxe=1&dt=1732532704261&lmt=1732532704&adxs=167&adys=2252&biw=1263&bih=907&scr_x=0&scr_y=0&btvi=1&ucis=1&oid=2&u_his=2&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_sd=1&u_tz=-300&dmc=8&bc=31&nvt=1&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0.&uas=3&url=https%3A%2F%2Fwww.kalenderpedia.de%2Fkalender%2Fkalender-2025-baden-wuerttemberg-pdf-vorlagen.html&ref=https%3A%2F%2Fwww.kalenderpedia.de%2F&vis=1&psz=200x16&msz=200x0&fws=4&ohw=1263&td=1&egid=26170&topics=1&tps=1&htps=10&a3p=EjQKCnB1YmNpZC5vcmcSJDA4YzFjOGYyLWYyMmItNDBkNy1iYzk2LWE3YjBjZDUxNDNjZlgB&nt=1&psd=WzE1LFtdLG51bGwsM10.&dlt=1732532688270&idt=2851&ppid=08c1c8f2f22b40d7bc96a7b0cd5143cf&prev_scp=yieldlove_reload%3Dpid%253A7182.reload%253Afalse%26yieldlove_meta_reload%3Dpid%253A7182.reload%253Afalse%26yieldlove_reloads%3D0%26yieldlove_reload_count%3D0%26yieldlove_ab%3Dyl_ver%253A1.73.0%2Cpo%253Adefault%26yieldlove_meta_ab%3Dpid%253A7182.yl_ver%253A1.73.0%2Cpid%253A7182.po%253Adefault%26yieldlove_meta%3Dpid%253A7182.sb%253Af%26yieldlove_pid%3D7182%26yieldlove_hb_sucbid%3Dfalse%26yieldlove_no_adx%3Dfalse%26yieldlove_hb_unit%3D7182%26yieldlove_reloaded%3Dfalse%26yieldlove_is_reloaded%3Dfalse&adks=2119065077&frm=20&eo_id_str=ID%3D5cc39fe1a792ee72%3AT%3D1732532694%3ART%3D1732532694%3AS%3DAA-Afja1m7-ySoYpgOU8aZnDJ_UM
                                                                                                                                                                    Preview:{"/53015287/kalenderpedia.de_d_160x600_1":["html",0,null,null,1,600,160,0,1,null,null,1,1,null,[105398731287],[154421007],[34450767],[369642807],[222286],[4631458465],null,null,null,null,null,1,null,null,null,null,null,null,null,"CM3y26Sr94kDFSlGHQkdBqchzA",null,null,null,null,null,null,null,null,null,null,null,null,null,null,"1",null,null,null,null,null,null,null,null,null,null,null,null,null,null,1,null,null,null,null,[]]}.<!doctype html><html><head><script>var jscVersion = 'r20241120';</script><script>var google_casm=[];</script></head><body leftMargin="0" topMargin="0" marginwidth="0" marginheight="0"><script>window.dicnf = {};</script><script data-jc="42" data-jc-version="r20241120" data-jc-flags="[&quot;x%278446&#39;9efotm(&amp;20067;&gt;8&amp;&gt;`dopb/%&lt;1732261!=|vqc)!7201061?&#39;9efotm(&amp;20723;&gt;:&amp;&gt;`dopb/%&lt;1245;05!=nehu`/!361:&lt;320!9sqrm(&amp;2057?61&lt;&amp;&gt;`dopb~&quot;]">(function(){'use strict';/* Copyright The Closure Library Authors. SPDX-License
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 179, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):5459
                                                                                                                                                                    Entropy (8bit):7.95411797478087
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9D58C76302D26CB7619F31D6F88473FB
                                                                                                                                                                    SHA1:5FF67B743A8DFA1EA5725D8E53892E485263F3FE
                                                                                                                                                                    SHA-256:1C5FF6BF8879E16A0EE50851D9EF7199621919029C45EBDB59FF857198FA986A
                                                                                                                                                                    SHA-512:2DB8C19008DE8DDCC41FA12F94DBC4CE28001FFABB7862BBE455A7F25C72D8BA794DB72895ECD7B030AEFB29B960DE372D9FCA85153C272BB9502EB231558B50
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/wochenkalender/wochenkalender-2024.png
                                                                                                                                                                    Preview:.PNG........IHDR..............e.....PLTE................................................................................................................................................................................................................................................yyy~~~............ppp..................uuuvvv...................QQQmmmxxx.cc...............................```.........{{{.__....vv....YY.[[....WWWYYY[[[.......................777===GGGbbb.PO....kk..~...........BBBEEE]]]gggzzz..........///999UUU.87lll.MM.mj.yy..........***555;;;???JJJLLLdddeeeiii.TT.WV.ii.oo.ro.||.........................&&&111...fff.@>rrr.JI.dd.ff.yv........................"""NNNSSS.0,.ea......................................!!............r.X.....IDATx...t....e.F.4.d.-Y.lY.!F...s.....jh.;...............w..i{.H.}..........o..s.33.!..X.JtLNN.H.!...T..@....:.....f.-.v......^.G.k.;.r8a.H...8.....?G......Gk...Hzg.z...Y./
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3486)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):9368
                                                                                                                                                                    Entropy (8bit):5.434065604672017
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:1FF0DA96B259F28F12DE36DCBB5AFF4D
                                                                                                                                                                    SHA1:AE1EFFD3876216CB1CEB9950AA0912B3BD4A73C0
                                                                                                                                                                    SHA-256:1F2248020969A92C2562895F874361A5C5B280C7B6759C1459256B8A9325B321
                                                                                                                                                                    SHA-512:206E9B568030F9E79D3FD9F1924B610D046CB0085C88678DD3E4702A6E4496555DB7A57F29F0F92172DFAA010F49C10427FA9148A39C09772715F0EF9A7B76EF
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(opts_){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var f=this||self;function g(a){return a};var h;function k(a,b){this.h=a===l&&b||"";this.g=m}function n(a){return a instanceof k&&a.constructor===k&&a.g===m?a.h:"type_error:Const"}var m={},l={};function p(a,b){this.h=b===q?a:""}p.prototype.toString=function(){return this.h+""};function r(a){return a instanceof p&&a.constructor===p?a.h:"type_error:TrustedResourceUrl"}.function u(a,b){var c=n(a);if(!v.test(c))throw Error("Invalid TrustedResourceUrl format: "+c);a=c.replace(w,function(d,e){if(!Object.prototype.hasOwnProperty.call(b,e))throw Error('Found marker, "'+e+'", in format string, "'+c+'", but no valid label mapping found in args: '+JSON.stringify(b));d=b[e];return d instanceof k?n(d):encodeURIComponent(String(d))});return x(a)}var w=/%{(\w+)}/g,v=RegExp("^((https:)?//[0-9a-z.:[\\]-]+/|/[^/\\\\]|[^:/\\\\%]+/|[^:/\\\\%]*[?#]|about:blank#)","i"),y=/^([^?#]*)(\?[^#]*)?(#[\s
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):68959
                                                                                                                                                                    Entropy (8bit):5.270958729604141
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:6A9A9672C253BABED0845427B83CA04A
                                                                                                                                                                    SHA1:644DBFCDBA8121DE54AC0FEA98034BF1C18D8B5E
                                                                                                                                                                    SHA-256:26DAF6BE41EBEB0AFBA1B8BE3A52F385E8E6D617ECDA9B0F230FB678CE099683
                                                                                                                                                                    SHA-512:81CD3AD076453767E34D4B346D07241D86005A0E9506EFAAD5D2A24B634FFF4A638ED8D453D0890587C6E72681D62E3E97167C8779FFCAAC7BF409B6127772E0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:!(function(n){var t={};function r(i){if(t[i])return t[i].exports;var e=t[i]={i:i,l:!1,exports:{}};return n[i].call(e.exports,e,e.exports,r),e.l=!0,e.exports}r.m=n,r.c=t,r.d=function(n,t,i){r.o(n,t)||Object.defineProperty(n,t,{enumerable:!0,get:i})},r.r=function(n){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(n,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(n,"__esModule",{value:!0})},r.t=function(n,t){if(1&t&&(n=r(n)),8&t)return n;if(4&t&&"object"==typeof n&&n&&n.__esModule)return n;var i=Object.create(null);if(r.r(i),Object.defineProperty(i,"default",{enumerable:!0,value:n}),2&t&&"string"!=typeof n)for(var e in n)r.d(i,e,(function(t){return n[t]}).bind(null,e));return i},r.n=function(n){var t=n&&n.__esModule?function(){return n.default}:function(){return n};return r.d(t,"a",t),t},r.o=function(n,t){return Object.prototype.hasOwnProperty.call(n,t)},r.p="",r(r.s=0)})([function(n,t,r){"use strict";r.r(t),r.d(t,"_reset",(function(){return fr}));var i="o
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):143
                                                                                                                                                                    Entropy (8bit):5.079318363208902
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E4E31B474D3E0B577B3C8856E91F8659
                                                                                                                                                                    SHA1:A81311F7FCFA9B6B23A24D4E5C976D5F75B1B9B7
                                                                                                                                                                    SHA-256:18088C10E79C926292732AF98A0CE470E90F3FBCBA4BB4896AB3310C2D94E421
                                                                                                                                                                    SHA-512:A07961EB39C4CD4E39EE19E2C675E64E5BA5367DAA18E2F76A23772ABD62F46B002E6BE8FB0F35A70616941178FACC8DF579C4A68E5811B74313C12806AAFAE3
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/drt/s?v=r20120211
                                                                                                                                                                    Preview:<!DOCTYPE HTML PUBLIC>.<html>. <head>. <meta http-equiv="refresh" content="0;url=https://www.google.com/pagead/drt/ui" />. </head>.</html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (32436)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):110252
                                                                                                                                                                    Entropy (8bit):5.687839841224357
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:43D13C9703B089915F71F9C32940F5CB
                                                                                                                                                                    SHA1:C13B3783FB7A79BDD111E73131891C354A600617
                                                                                                                                                                    SHA-256:E3943DB2BD213D68849962DB45A1116ABA7B15A070CA2D31344F0BEE6BED6302
                                                                                                                                                                    SHA-512:7C062B5835C736BB318B6E2F9620F7F4F7CAA0E8D373784FAAC632089AA40A3B21A7A7615533B679C2F7B275D984B37BA068CD85E1E031DD8BAF86A68842E0E7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://securepubads.g.doubleclick.net/tag/js/gpt.js
                                                                                                                                                                    Preview:(function(sttc){var window=this;if(window.googletag&&googletag.evalScripts){googletag.evalScripts();}if(window.googletag&&googletag._loaded_)return;var n,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");},da=ca(this),ea=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",t={},fa={},v=function(a,b,c){if(!c||a!=null){c=fa[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}},w=function(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in t?f=t:f=da;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))brea
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1572)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):30674
                                                                                                                                                                    Entropy (8bit):5.583880187344011
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:04A144285DBB81DB11ED1C8B985C4EB7
                                                                                                                                                                    SHA1:BB0417E4D2DA259376126F15C65A67E7EEF7B67B
                                                                                                                                                                    SHA-256:23794389DFE986CEF095BE5F0E30E6EA2E1C0719BBDDA51FE6961B28C90660EF
                                                                                                                                                                    SHA-512:158DC9DD6B78E7ED6E080C20E01F5D44F536E0DBB61D663C6EC8EF926C020FFFE2A7C7FD5F9DF486E245A06E8035242FA3B3816244632A64ACE561E129E58C90
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500%2C600
                                                                                                                                                                    Preview:/*. * See: https://fonts.google.com/license/googlerestricted. */./* armenian */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v62/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiIUvaYr.woff2) format('woff2');. unicode-range: U+0308, U+0530-058F, U+2010, U+2024, U+25CC, U+FB13-FB17;.}./* bengali */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v62/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiAUvaYr.woff2) format('woff2');. unicode-range: U+0951-0952, U+0964-0965, U+0980-09FE, U+1CD0, U+1CD2, U+1CD5-1CD6, U+1CD8, U+1CE1, U+1CEA, U+1CED, U+1CF2, U+1CF5-1CF7, U+200C-200D, U+20B9, U+25CC, U+A8F1;.}./* canadian-aboriginal */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v62/4UasrENHsxJlGDuGo1OIlJfC6l_24rl
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):45
                                                                                                                                                                    Entropy (8bit):4.6583025406779655
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8397B4EEDE12D133E2D2CEA5066C0DD1
                                                                                                                                                                    SHA1:EDF6660729E2F2E740DAE087A8A4C27886696BF0
                                                                                                                                                                    SHA-256:27A3CA5D7E1D53698D71BAF44B0BC2F197021333454E1314EF9881630BA019EF
                                                                                                                                                                    SHA-512:44AC70EE4A261D4D6738253A8596831B4FBB82588A86247956EF8B93A33C3B73C6D9E2846F799BC8569DFB6A536DEE53962F95C245E980E8F5D31ABBD7EB65AF
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://lb.eu-1-id5-sync.com/lb/v1
                                                                                                                                                                    Preview:{"lb":"vjcdi0k70ErZeVIZRNqcoQ==","ttl":28800}
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (5105), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):5105
                                                                                                                                                                    Entropy (8bit):5.843779646642844
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:600B1FF0FDC65BABB51F06587F3B7047
                                                                                                                                                                    SHA1:D0C844E7961BBC95563F3688FD41B06FAD971090
                                                                                                                                                                    SHA-256:294B8C25C63FF7B1018FA31978D4D78FD17A3DDFA621DD1032CAA070CDD87C92
                                                                                                                                                                    SHA-512:D5C4DEFEE5386183213739F18622152FF29D3ECCA9864AB9EE0D09C0E09E72C4BCE8887508853C93CEC40E9A57503CD4746B34CA88B7AE90B2C8DC27E9C3E90C
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/viewthroughconversion/10807868703/?random=1732532721184&cv=11&fst=1732532721184&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&npa=0&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3486)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):9368
                                                                                                                                                                    Entropy (8bit):5.435639481575919
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:FE4FC36545EA1EF0A3D3EAD6E5679D3C
                                                                                                                                                                    SHA1:012570A88DFC674127FA4B6D227CF58A9799F14B
                                                                                                                                                                    SHA-256:CCF1F511CFF052A944B5CCDADE4638B49AE5EF43995B316CBD5F9632D25FBE37
                                                                                                                                                                    SHA-512:DF621AD73B30F715203C8D17C95FCE984325B57E8457E1DED510654C95974D9F78FE0295BD283A1D24569F9F01DB9B75605A959CFB698364018D8B4A62B5D6BA
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cse.google.com/cse.js?cx=partner-pub-6119214979619050:2571572907
                                                                                                                                                                    Preview:(function(opts_){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var f=this||self;function g(a){return a};var h;function k(a,b){this.h=a===l&&b||"";this.g=m}function n(a){return a instanceof k&&a.constructor===k&&a.g===m?a.h:"type_error:Const"}var m={},l={};function p(a,b){this.h=b===q?a:""}p.prototype.toString=function(){return this.h+""};function r(a){return a instanceof p&&a.constructor===p?a.h:"type_error:TrustedResourceUrl"}.function u(a,b){var c=n(a);if(!v.test(c))throw Error("Invalid TrustedResourceUrl format: "+c);a=c.replace(w,function(d,e){if(!Object.prototype.hasOwnProperty.call(b,e))throw Error('Found marker, "'+e+'", in format string, "'+c+'", but no valid label mapping found in args: '+JSON.stringify(b));d=b[e];return d instanceof k?n(d):encodeURIComponent(String(d))});return x(a)}var w=/%{(\w+)}/g,v=RegExp("^((https:)?//[0-9a-z.:[\\]-]+/|/[^/\\\\]|[^:/\\\\%]+/|[^:/\\\\%]*[?#]|about:blank#)","i"),y=/^([^?#]*)(\?[^#]*)?(#[\s
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7758), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):7758
                                                                                                                                                                    Entropy (8bit):6.147985931670022
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:41CC83A72711B75AEAA47EE695CCFB08
                                                                                                                                                                    SHA1:562245533D3773A6A4391C9CB766876B05C60C0F
                                                                                                                                                                    SHA-256:06B280D2F8E97954A82B074800D44C7A542DEB4757796B49EE7405F373AE5AE1
                                                                                                                                                                    SHA-512:8263B183CD6E2F78F39522ED401572DEEE3582FDB154585C1AF0C7D6A69B84EDD63996C27A529099F3F50BA0608CCC281F819C3B286739EC310ECA8984A70A83
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googleadservices.com/pagead/conversion/10807868703/?random=1732532721203&cv=11&fst=1732532721203&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=KDA7CK-T2ukZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21203&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):2613
                                                                                                                                                                    Entropy (8bit):5.365928254771976
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E886D481E3A09D9C59E9592A2E5C26A3
                                                                                                                                                                    SHA1:17808F0A187C25DA3C83C480DEB3CCCD2262FA74
                                                                                                                                                                    SHA-256:3152C018F548899E2DA6FE638841EF215A059D73007F3986A28153DC39983201
                                                                                                                                                                    SHA-512:01ED71C3198B4532F77297B6F234A05929609FFDEABAB84242A2B956B8F8086ECD70F7DDC53E0F908B2D536773A88D0E63080A26C33B320A72C4D653F500C208
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://fonts.googleapis.com/css2?family=DM+Sans:wght@400;500;700&display=swap
                                                                                                                                                                    Preview:/* latin-ext */.@font-face {. font-family: 'DM Sans';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/dmsans/v15/rP2Yp2ywxg089UriI5-g4vlH9VoD8Cmcqbu6-K6h9Q.woff2) format('woff2');. unicode-range: U+0100-02BA, U+02BD-02C5, U+02C7-02CC, U+02CE-02D7, U+02DD-02FF, U+0304, U+0308, U+0329, U+1D00-1DBF, U+1E00-1E9F, U+1EF2-1EFF, U+2020, U+20A0-20AB, U+20AD-20C0, U+2113, U+2C60-2C7F, U+A720-A7FF;.}./* latin */.@font-face {. font-family: 'DM Sans';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/dmsans/v15/rP2Yp2ywxg089UriI5-g4vlH9VoD8Cmcqbu0-K4.woff2) format('woff2');. unicode-range: U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;.}./* latin-ext */.@font-face {. font-family: 'DM Sans';. font-style: normal;. font-weight: 500;. font-display: swap;. src: url
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 181, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):12694
                                                                                                                                                                    Entropy (8bit):7.956322526624569
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E466163236D58D8B83896460FAE41F66
                                                                                                                                                                    SHA1:A49C5D1A6DAE20B612683463C78D3AD9F2985B04
                                                                                                                                                                    SHA-256:307E93778DEBAD86D22215CB3BA34CBE341F37DA909F57AA00B4921E44274037
                                                                                                                                                                    SHA-512:1467DEA96955EE25F8D191253D0AE36670F40E0E03A5DC40DAC978A805B4651FBEA764B7416E926D374886A7DA36B2FF05026BB3895FF3F9596507C2514E5EC6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/bundeslaender/2025/kalender-2025-baden-wuerttemberg-querformat-linear.png
                                                                                                                                                                    Preview:.PNG........IHDR.............A<......PLTE...............................................................................................................................u.....................................y................~......#......|................................qqq.~_..........O..........{{{.....O........*...........UUU..e..u......oS.......y.|..............DDD{bI..........iOxxx.x.........uuu..zjjj......```.vY......................###....]......<LLL.............i...---.fLnnX..m....555..eee||c...||.......tt.....pp......;;;..o................../....1......p[[[.............s...u^F.ca..e..eQ=ccO.............4ff.ZH6oYC..q.......=........?.:..h......TT.TTDBB5..I......HH..P..o.............c..G.....G...b.r...TIDATx...\SW..7.FB ..I....y6Q......A.8.i...).+.2.....9\..O......<`@..A|....=G..:...iO..f:s.3w......Q.H.g:.s'.O.......^.M.^....0.Rq.....U07[{...MS)..N....(u.uv..&....^..5io.....>F
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:C++ source, ASCII text, with very long lines (2015)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):39484
                                                                                                                                                                    Entropy (8bit):5.517566574625777
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:EA393E1FDB62EC1DD83EA16C54E56C89
                                                                                                                                                                    SHA1:D9D3DF54FD7FC9CBB6BA939AB935E88B0FE21543
                                                                                                                                                                    SHA-256:9A35A32ACA38DFAB9F209689768215C35E8CB9EC76DE52D3A2BBEB402CC70962
                                                                                                                                                                    SHA-512:8D0574E5B61E6D8120518C292816EEA3DF70867664D0635D6787DA698C40F2B30969BA5BC3A48D7E4DCF827E5C2953495756167E1B8D962947295C5B33C5AED6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.gstatic.com/mysidia/ea393e1fdb62ec1dd83ea16c54e56c89.js?tag=addon/mysidia_one_click_handler_one_afma
                                                                                                                                                                    Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var m=this||self;function aa(a,b){a:{var c=["CLOSURE_FLAGS"];for(var d=m,e=0;e<c.length;e++)if(d=d[c[e]],d==null){c=null;break a}c=d}a=c&&c[a];return a!=null?a:b};const ba=(new Date("2024-01-01T00:00:00Z")).getTime();.function ca(a){a=a.s;const b=encodeURIComponent;let c="";a.platform&&(c+="&uap="+b(a.platform));a.platformVersion&&(c+="&uapv="+b(a.platformVersion));a.uaFullVersion&&(c+="&uafv="+b(a.uaFullVersion));a.architecture&&(c+="&uaa="+b(a.architecture));a.model&&(c+="&uam="+b(a.model));a.bitness&&(c+="&uab="+b(a.bitness));a.fullVersionList&&(c+="&uafvl="+b(a.fullVersionList.map(d=>b(d.brand)+";"+b(d.version)).join("|")));typeof a.wow64!=="undefined"&&(c+="&uaw="+Number(a.wow64));return c}.function q(a,b){return a.g?a.o.slice(0,a.g.index)+b+a.o.slice(a.g.index):a.o+b}function da(a,b=0){let c="&act=1";b===0?c+="&ri=1":b===1?c+="&ri=24":b===2&&(c+="&ri=25");a.l&&a.s&&(c+=ca(a));a.h&&(c+=
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):23
                                                                                                                                                                    Entropy (8bit):3.795088586397733
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:ED3CE2A5BFF356507DEE9458FA9E30D4
                                                                                                                                                                    SHA1:0E29BD937C4F26BAD8461DFEFC560DF685CDF07E
                                                                                                                                                                    SHA-256:1BD32FF3947452930766AECA7C6BEF5BEDC3F241642328837190A4D458C2D6FA
                                                                                                                                                                    SHA-512:E2B3F6C002AECD6BF00D78436770FD7C38BA063A5F5235B94B594FB34AA41C56D197B9FAFF0CFCCD7E85961518800D5BF943BCD3758C78D730F45B3EF3FB405F
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://api-advertiser.linkvertise.com/postback?token=lhFuZHhnmEU0CnFSQoBpfnKQETPJWjQ7GP3E1t2mPDoV0V8KTUSNnS3kM5sdYyPJJ0QVMQZXUEqldvAwZHZAi5iWDJGd6xv3UiC5DlLHR6OuKvYbYP1MJjyWIdWHGJSzrgcElEsPIIp8kP0iaGgP7IAGMAoalPfsZh26Q030Oi9yoe26wH6WXt5cZYKE1NP1cK0xZGHj&click_id=undefined&gtmcb=895123787
                                                                                                                                                                    Preview:Tracking does not exist
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):45
                                                                                                                                                                    Entropy (8bit):4.685971707296554
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:CEB85151C5978209628696A0D066C1FD
                                                                                                                                                                    SHA1:9611391FC597B6751002C49676981C7893DCBBFF
                                                                                                                                                                    SHA-256:78F7D127F292023B9108753AF565D270D3F17A4243CB0148E616C96FEE496837
                                                                                                                                                                    SHA-512:71E0253B714DBA5A6815AE5724AA3083B4131370FA10F6C13F1A1B05D103E46EFF6811B552A21F6DAD4D173B96AC1FD77CF0BBF030BC9404B685E5B7EBAD3CD8
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:{"lb":"tjRhHxJWfNMjp3k/fSciHw==","ttl":28800}
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (4885), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):4885
                                                                                                                                                                    Entropy (8bit):5.810764892346166
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:124E2ACFA6A47B166535D8CF529CB33B
                                                                                                                                                                    SHA1:A0536E006488D5FE904F7C2788AB104C7AD401E9
                                                                                                                                                                    SHA-256:D34D4E8DE2685C1E9F848AB3750B7BA7F8A0D2F08750516E518A32056E3A0F9E
                                                                                                                                                                    SHA-512:454061B712561B9FB13A59719AE8718C8842F53E87CC8902361489F4F75148167175772181140CB7E9F2FF3D7CC707437482F0378B393F3C25C5C14E6242C0E6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):205159
                                                                                                                                                                    Entropy (8bit):5.477009254094957
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:71B39B90BC537427E2F1F7A705A9BA50
                                                                                                                                                                    SHA1:4A3B70F02AF6C54F32FA13CF1F7B736BA6A1AF10
                                                                                                                                                                    SHA-256:EAB16189B3AF92AC08625C16F98D069FC517AD9FE62AC6841ED820D8CC1D9EC2
                                                                                                                                                                    SHA-512:7E5F94C26B4EC0B18F00EE019ADC4C22976FFFC7713355070E3546418B5ECD1EF6EFA766F0D28A779675BEB903231A506CFBBB95A450549C3F94D332B6E07C0E
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532763490&cv=11&fst=1732532763490&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b&gclaw_src=0_1&label=pzUUCKf2w4MDEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Zip%20This%20-%20Successfully%20Updated&value=0&bttype=purchase&npa=0&gclgs=5&gclst=63492&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&ct_cookie_present=0
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":46656000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2sagxEHg!3sAAptDV57aJvE\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2sagxEHg!3sAAptDV57aJvE","1i44803230"],"userBiddingSignals":[["7001939024","8468318392","7004184203","7008205733"],null,1732532766582368],"ads":[{"renderUrl":"https://td
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7751), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):7751
                                                                                                                                                                    Entropy (8bit):6.145985605093185
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:3403DBAB8AC225DF1A3438A37CBF0D3F
                                                                                                                                                                    SHA1:C931519FAEEA0B018C7238EB991D8D68FF6FD407
                                                                                                                                                                    SHA-256:7CA8339EFE68D419F1AE4CF0ADFE6A4F0DC05E770F5F8081FD1DF30F6C373AD2
                                                                                                                                                                    SHA-512:369D05604AEE6FBD5C9290663B8704039AF052FB686B8768ED2744C362B48BB729D2DD626BD4B357741E0A4C2EFE833DEF22DA002FF487E2421B0258975D83FB
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googleadservices.com/pagead/conversion/10807868703/?random=1732532721196&cv=11&fst=1732532721196&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=Yz1qCKTFoZAZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21196&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):4495
                                                                                                                                                                    Entropy (8bit):4.948267052980108
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C14E45E189F801818B14F1315605A632
                                                                                                                                                                    SHA1:DD7E7FB9D156B343BEEF0155B41DA1C847D69E41
                                                                                                                                                                    SHA-256:DCEC22BBCB68119D6C7D6D5E088FB82183A9826D0C9E3403F1386FD837F06A89
                                                                                                                                                                    SHA-512:7312D1E49927990CD81CD62C953AC7566C85007350250403ABE3A2A9635AFA516B3511E85477DD5189741FCCB7D0200C8DD24074AAD9938E5D4484BBDEEE59AC
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.google.com/cse/static/style/look/v4/default.css
                                                                                                                                                                    Preview:/**. * Default Theme, v4.. *. */../* Selector for entire element. */..gsc-control-cse {. background-color: #fff;. border: 1px solid #fff;.}...gsc-control-cse .gsc-table-result {. width: auto;.}...gsc-resultsHeader {. border: block;.}../* Search input */..gsc-input {. font-size: 16px;.}../* Hide clear input X added by MSIE. */..gsc-input::-ms-clear {. display: none;. height: 0;. width: 0;.}...gsc-input-box {. border: 1px solid #dfe1e5;. background: #fff;.}...gsc-search-box .gsc-input>input:focus,..gsc-input-box-focus {. border: 1px solid #4d90fe;. box-shadow: inset 0 1px 2px rgba(0, 0, 0, .3);. outline: none;.}../* Search button */..gsc-search-button-v2 {. font-size: 0;. padding: 6px 27px;. width: auto;. vertical-align: middle;.. border: 1px solid #666;. border-radius: 2px;.. border-color: #3079ed;. background-color: #4d90fe;. background-image: linear-gradient(top, #4d90fe, #4787ed);.}...gsc-search-button-v2:hover {. border-color: #2f5bb7;. background-color: #357
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1815)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):1861
                                                                                                                                                                    Entropy (8bit):4.963483690165822
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:36974225AA51D7B413C9A1CFB22E9C06
                                                                                                                                                                    SHA1:FE4F3F561D5BD50A21BDDE90EC7D0E3EFFF061BF
                                                                                                                                                                    SHA-256:97CE4E98F3A3BE297F48EBD5B771E74928F31754D43324FD795D1CD81CC41B35
                                                                                                                                                                    SHA-512:361482D589B2AEE5E27DC8FF285456A02E7AD58A47A5CE49B7382F6EECF1E55A332A95AF43EE275E13DD1609B1F31A9EC517290209538FDB0805620D5DAF31E7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cdnjs.cloudflare.com/ajax/libs/normalize/8.0.1/normalize.min.css
                                                                                                                                                                    Preview:/*! normalize.css v8.0.1 | MIT License | github.com/necolas/normalize.css */html{line-height:1.15;-webkit-text-size-adjust:100%}body{margin:0}main{display:block}h1{font-size:2em;margin:.67em 0}hr{box-sizing:content-box;height:0;overflow:visible}pre{font-family:monospace,monospace;font-size:1em}a{background-color:transparent}abbr[title]{border-bottom:none;text-decoration:underline;text-decoration:underline dotted}b,strong{font-weight:bolder}code,kbd,samp{font-family:monospace,monospace;font-size:1em}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sub{bottom:-.25em}sup{top:-.5em}img{border-style:none}button,input,optgroup,select,textarea{font-family:inherit;font-size:100%;line-height:1.15;margin:0}button,input{overflow:visible}button,select{text-transform:none}[type=button],[type=reset],[type=submit],button{-webkit-appearance:button}[type=button]::-moz-focus-inner,[type=reset]::-moz-focus-inner,[type=submit]::-moz-focus-inner,button::-moz
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 175, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):15732
                                                                                                                                                                    Entropy (8bit):7.978940699674408
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:1DAE2CDBC67C1C40D17135F466EE5845
                                                                                                                                                                    SHA1:63487E14D0D1ED85D0EB6EA97967E0B20ADCEBA2
                                                                                                                                                                    SHA-256:D51E134BA34EC52B7026DE84AD486C55367B6F80EE459BD5FF3FE481483FC835
                                                                                                                                                                    SHA-512:1267B8AD16B52A8E023003C24F5C34E4D8835829B72A57FB8EC608140973A8770AF03DCFF797042E12E790E4A5BC6E9AD620D4670BC16555C10A3CFA2FE657F5
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/bundeslaender/2025/kalender-2025-baden-wuerttemberg.png
                                                                                                                                                                    Preview:.PNG........IHDR..............q3K....PLTE..............................................................................................................u......z...........................x.........................................................................................}.|..............................................................................o.........i.t................jP.......................l..r..p.............{....|]..?......zzz.xZ...................w...sss...pT......777.eL.tV..`..d.........VVT.................h..p...***hhh..g......on...aaY.....b.........CC@............KKK............)..j....h.{.....VM<........r[D..?.S.......,.C.....Q..[.........VU....`.YY.tt]..=.......s..qq...P..[...:.W...:2IDATx..{\SW..W.MB. ..."..WE..h.(..M.Q..5..DJ4bK..."P.....2....o.^......i.i.3.33...y.}..<.V.gg........~..Z{.o...~.Z..%..g...2.s. ......^.ME.@.......tx..Xs........mw.....k.s..d.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):259922
                                                                                                                                                                    Entropy (8bit):5.75274697976132
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:4190FCA6664496EB0E3AA1F3989AEC2D
                                                                                                                                                                    SHA1:9EB6F66866C1B3309C4718554487DBD96AE53F13
                                                                                                                                                                    SHA-256:B792A717C4E504E140501095983EC146FA621CD4C5F048BE74CDD34545A19C95
                                                                                                                                                                    SHA-512:603B535F0360B2268B0570E295E9E5528266B63BEF35347D0C9FECACB3EEF3486854B682B18A61687DBE9495E226F622A2018A49ADB0F557F3012F7094BB0B12
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-6119214979619050&output=html&adk=1812271804&adf=3025194257&abgtt=6&lmt=1732532691&plaf=1%3A2%2C7%3A2&plat=1%3A128%2C2%3A128%2C3%3A128%2C4%3A128%2C9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1081344%2C32%3A32%2C41%3A32%2C42%3A32&plas=135x816_l%7C154x816_r&format=0x0&url=https%3A%2F%2Fwww.kalenderpedia.de%2Fkalender%2Fkalender-2025-baden-wuerttemberg-pdf-vorlagen.html&pra=5&wgl=1&aihb=0&aiof=4&asro=0&ailel=1~2~4~6~7~8~9~10~11~12~13~14~15~16~17~18~19~20~21~24~29~30~34&aiael=1~2~3~4~6~7~8~9~10~11~12~13~14~15~16~17~18~19~20~21~24~29~30~34&aicel=33~38&aifxl=29_18~30_19&aiixl=29_5~30_6&aiict=1&aiapm=0.3221&aiapmi=0.33938&aiombap=1&aief=1&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0.&dt=1732532688291&bpp=122&bdt=21&idt=2877&shv=r20241120&mjsv=m202411140101&ptt=9&saldr=aa&abxe=1&cookie_enabled=1&eoidce=1&nras=1&correlator=6834547816686&frm=20&pv=2&u_tz=-300&u_his=2&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=1263&bih=907&scr_x=0&scr_y=0&eid=42533203%2C42532524%2C95347444%2C95335245%2C95345967&oid=2&pvsid=3652578938665992&tmod=1909426277&uas=0&nvt=1&fsapi=1&ref=https%3A%2F%2Fwww.kalenderpedia.de%2F&fc=1920&brdim=0%2C0%2C0%2C0%2C1280%2C0%2C1280%2C984%2C1280%2C907&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=32768&bc=31&bz=1&td=1&tdf=0&psd=W251bGwsbnVsbCxudWxsLDNd&nt=1&ifi=1&uci=a!1&fsb=1&dtd=2896
                                                                                                                                                                    Preview:<script>window.sra_later_blocks = [];</script><script>window.sra_later_blocks.push({creative:'\x3c!doctype html\x3e\x3chtml \x3e\x3chead\x3e\x3cstyle\x3e* {margin: 0;padding: 0;outline: none;}body {background: rgba(52, 58, 65, 0.600000);backdrop-filter: blur(15px); /*potential issue: minimal browser support*/-webkit-backdrop-filter: blur(15px); /*for safari*/height: 100%;}#ad_iframe {box-shadow: 0 !important;display: block;left: auto;margin: 0 auto;position: relative;top: auto;}.creative {transition: opacity 1s;-webkit-transition: opacity 1s;position: relative;}#card {background-color: #fff;border-radius: 6px;padding: 0 6px 1px;position: relative;box-shadow: 0px 8px 12px rgba(60, 64, 67, 0.15), 0px 4px 4px rgba(60, 64, 67, 0.3);}html {height: 100%;}.toprow {width: 100%;display: table;height: 24px;background-color: #fff;}.btn {display: table;transition: opacity 1s, background .75s;-webkit-transition: opacity 1s, background .75s;-moz-transition: opacity 1s, background .75s;-o-transition:
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (20309), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):20309
                                                                                                                                                                    Entropy (8bit):5.495030380716332
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:FA56BFAED52F032004597F2A36805575
                                                                                                                                                                    SHA1:84BA7B13231C1F9D9AE629BA1D70AE4236021473
                                                                                                                                                                    SHA-256:A88123F7890E58349E3A64226C716BE9D346A42BA76E542A8EBDD30026A89604
                                                                                                                                                                    SHA-512:F1781DC1AC155FCE20CE1442AC04C700B30D2ADBB7C8C3B5BCEA59EC0CD19317124F0932878AC47CF2EDBB7945E9A12AD74B045024F624550489B49374E0AF0D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://ads.pubmatic.com/AdServer/js/user_sync.html?kdntuid=1&p=73726&gdpr=0&gdpr_consent=
                                                                                                                                                                    Preview:<html><body><script type="text/javascript">(function(){var ah=window,s=navigator,ar=ah.top||ah,at=ah.location.search.substr(1),E=encodeURIComponent,ad=decodeURIComponent,aN=ah.parseInt,U=ah.PubMatic||(ah.PubMatic={}),O=0,aj=0,b=0,aA="pubmatic.com",ab="ads."+aA,aw=1,V="https://",a=(ah.__cmp?1:0),az=function(aS){return typeof aS==="function"},aG=console.log.bind(console,"PubMatic:"),aE=function(aW,aV){var aT=0,aS=aW.length,aU=false;for(;aT<aS;aT++){if(aW[aT]===aV){aU=true;break}}return aU},p=function(aS,aV){var aU=ah.document.createElement("script");aU.type="text/javascript";aU.src=aS;aU.async=true;if(az(aV)){aU.onload=aU.onreadystatechange=aV}var aT=ah.document.getElementsByTagName("script")[0];aT&&aT.parentNode&&az(aT.parentNode.appendChild)&&aT.parentNode.appendChild(aU)},aC=function(aU){var aT=ah.document.createElement("iframe");aT.src=aU;aT.style.height="0px";aT.style.width="0px";aT.style.display="none";aT.height=0;aT.width=0;aT.border="0px";aT.hspace="0";aT.vspace="0";aT.marginWidt
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7650), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):7650
                                                                                                                                                                    Entropy (8bit):6.144824900670276
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9CF271FACC863AFB07CBB0DB75FBE069
                                                                                                                                                                    SHA1:C4AFB7EF7FA71D00FF5EEA1DC8E27E25344BA3D5
                                                                                                                                                                    SHA-256:CF4F9D21017826D12A4B57C7E6E6844CC36E2392B6BC52C98C5F4194AB813092
                                                                                                                                                                    SHA-512:552AA521B04B34DB42711D00393E21ABB313885CACBC46138BA6823D0BA2E08715B667DA19758B7626502B4E7CA861F3DEE6A44B116CF3D658D53A26B549C135
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):204941
                                                                                                                                                                    Entropy (8bit):5.475096554775333
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:F81CB2F7683C0105960F2180F20FAB66
                                                                                                                                                                    SHA1:D6F364E89576542AFAD1E970B6B26BA5D357803F
                                                                                                                                                                    SHA-256:D05EAB630A9FED6FA7972C93ABEB48EEB34F77089A36CE0BD214FB5106A86A26
                                                                                                                                                                    SHA-512:B5C38AAE1F1D835FB7425B262F9D764F1ECE5032C8DE0CBE87A6483EB64A63971A6247F19C2C797FB32A6D48A96D51D48AB2EFF7328AC7A8E68A1D7A2FB7006B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532721196&cv=11&fst=1732532721196&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=Yz1qCKTFoZAZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21196&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&ct_cookie_present=0
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":15552000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2saDGn9A!3sAAptDV6mAraL\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2saDGn9A!3sAAptDV6mAraL","1i44803230"],"userBiddingSignals":[["7004184203","7001939024","7008205733"],null,1732532724381135],"ads":[{"renderUrl":"https://tdsf.doubleclic
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 177, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):9920
                                                                                                                                                                    Entropy (8bit):7.948793152360094
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B2E9ED2C6CDAC99020780C6CBECA264F
                                                                                                                                                                    SHA1:4EF55B97CC225986E4D5BCD1D0F345E40A7383B8
                                                                                                                                                                    SHA-256:D2148BFF2E1D791C6FD872C1201ACDCA869B92C87EECCA28C184EEA48D80BD87
                                                                                                                                                                    SHA-512:4C1972F35507A5F2E87380F8B91E526380A64CBDD8D5226540EC21F35F8F379BF0126644ED3C744A34D8C6663BEEE0F8CEC8BAD8409F97A78CCF216895DD7AED
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/kalender-2024.png
                                                                                                                                                                    Preview:.PNG........IHDR..............P.....PLTE.............................3..........3.{....f..............................{...............w.........x.)...t*...cht.N...t.........r..il......^a...~.[....-...F...?.....WZx.a...q......E?7`..!...EF.{O....^`..fu..%.IDATx..}.c....$K...l.fl..J.-.R..t.......?.s..T...>..w...j[9.||...E.*L...F..E.1..+^..6...(2.!.G.p.D..SyU..S..........|.E.|.......z..n>./.l..l..>..<..'.."o.Y[.u]wu....yxx.(.....w.&K.....Jz....G2_$.y...;..?.(..3.ii.-...m._.<..'m..l.../-.....B[. .....?L4..)}..k9..d>.......o...5....d*.?..2.../fb1O.].g.b...c>....K?..}.............g...z\t5.]MV.....?P.....5k.'......lN-.F.+...;.f..\^F..n.....'I..3.........gQ...G.XA.I..B...l...........Ao*...1|.......d6K...EyS..d6....w.Da..\..P....Z...tNtV..-z.[B......t...ps...Q..u.5...Bd...=.x.e...H").C.+*..#...P.X.\.A.D.....l.{..o..|'`...................q.>....a...|;..~%{...v..^m.yg...z....a.?~..^...8..`..]....{.|.....`......?..........E.....
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2356)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):21548
                                                                                                                                                                    Entropy (8bit):5.528643330073883
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:3BD739668FD154A92C5D9AF0DFED22F3
                                                                                                                                                                    SHA1:0BDC6B822F0C8C50658794823DF179F09D68CC57
                                                                                                                                                                    SHA-256:9CC8B7F6676CB620C2D7F443D753F0072165FB1C7624025CA580B71F2C011CBF
                                                                                                                                                                    SHA-512:6A08D130A7455A692EB2D285A7AE1BEB84CDB5CC009C95B9A012E3467428042EB441D8934C33069462C699F35D7233F52DFCC10DC724B1EB859BD8165A86133D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://tpc.googlesyndication.com/pagead/js/r20241120/r20110914/client/qs_click_protection_fy2021.js
                                                                                                                                                                    Preview:(function(){'use strict';var aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ca=ba(this); .function da(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var f=a[d];if(!(f in c))break a;c=c[f]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&aa(c,a,{configurable:!0,writable:!0,value:b})}}da("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")});/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=this||self;function ea(a,b){a:{var c=["CLOSURE_FLAGS"];for(var d=m,f=0;f<c.length;f++)if(d=d[c[f]],d==null){c=null;break a}c=d}a=c&&c[a];return a!=null?a:b}function fa(a,b,c){return a.call.apply(a.bind,arguments)}function p(a,b,c){p=fa;return p.apply(null,arguments)} .function la(a,b){funct
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ISO-8859 text, with very long lines (13842)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):170122
                                                                                                                                                                    Entropy (8bit):5.232161638018381
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9A56873C17AD66CE4248FEAEAE7EC439
                                                                                                                                                                    SHA1:03D6E46A34896BCE77D72B11A06B404F37723F80
                                                                                                                                                                    SHA-256:A7B2860041B5B0BE437AF26C6026DB347F7EAAE6AD7A9FA4FBAF9E05A45EBD3A
                                                                                                                                                                    SHA-512:48B3868E6210CF6091543316C77CE7C0FAC404917B091A5524DA68A9EF00924F9C2986DA36BBE1F643E206480D1C90228EEFC4DF4B4AD784C45A90E69281F482
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.html
                                                                                                                                                                    Preview:......<!DOCTYPE html>.<html lang="de-DE">.<head>.<meta http-equiv="content-type" content="text/html; charset=iso-8859-1">...<script async src="https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-6119214979619050". crossorigin="anonymous"></script>..<title>Kalender 2025 Baden-W.rttemberg: Ferien, Feiertage, PDF-Vorlagen</title>.<meta name="viewport" content="width=device-width, initial-scale=1">.<meta name="description" content="Jahreskalender 2025 f.r Baden-W.rttemberg mit Schulferien, Feiertagen, Kalenderwochen und PDF-Vorlagen zum Download und Ausdrucken (kostenlos)">.<meta name="robots" content="all, index, follow"><meta http-equiv="content-language" content="de-DE">.<link rel="canonical" href="https://www.kalenderpedia.de/kalender/kalender-2025-baden-wuerttemberg-pdf-vorlagen.html">.<style>a.bold,body,h1,h2{margin:0}h1.standalone,h2{border-radius:5px}.paragraph-background,h1,h2{background-color:#ffefd5}.paragraph-header,.shadow,h1.standalone{box-shadow:
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 26 x 26, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):519
                                                                                                                                                                    Entropy (8bit):7.34853105535959
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:40A8A29A60CD1D518FE3C5984B7645EF
                                                                                                                                                                    SHA1:77C10B06C06A8FFFB53FCEB64E5F72EAD35EDC9E
                                                                                                                                                                    SHA-256:ED47A85851559AD6827FBAA36981251D26EA30F9F110B7E25611F72D2ADEC68F
                                                                                                                                                                    SHA-512:7DD57CCBE342500024B8B0745A4D8802FD1E84785AC01DD53C82BD518B53C8AC0EF34CF073D3689EA62E0654D7565E84009833C59189F986D1F554D2A8E9A038
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/images/favicon.ico
                                                                                                                                                                    Preview:.PNG........IHDR..............JL.....pHYs.................sRGB.........gAMA......a.....IDATx...O.@..G.B$.`.M...q.0..L4a3.N....._..j.\...t.'.D...M$.T."......(....'y..k....1..k. pa.....vg....MnJI.....F._C6....<U,..P|uR........./....LL... B.!......$l...6Hc...0=d.._V.|5.Ww.(.[;DD....*...W..2..bx..\).b%..K.(D".@.........x.]......._.Z.A}...giE.j. _../DT.X.vY..s%.0:u...........+!..f...9G.....!.....c.M..1.=.#...\.....%8%)"."..k.N..4&.EiR...W^.L._J..(..`t41....^...rt.b...m...(..._"....t|,6......IEND.B`.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (923), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):923
                                                                                                                                                                    Entropy (8bit):5.575211609110517
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:5CF506CAA9465F9629F814317C9465CF
                                                                                                                                                                    SHA1:F9B594FCFF5A572B5D0485ED559C3A506918B222
                                                                                                                                                                    SHA-256:F73FEC0BE8CDF0DD5F1C371DA977072DB009B3FD7BFC0A88C91E6486301778FB
                                                                                                                                                                    SHA-512:7FC6D96536D8DB0C700A7E667256B7FB690C9DF0796573C1652BAB3E2DC494F66C95EA34313C3B02B3849B9CE50CAB6E9FB163BC6CC6CDB861F211898DF74248
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://14918961.fls.doubleclick.net/activityi;dc_pre=CMnYha2r94kDFUoiBgAdoc4A9g;src=14918961;type=invmedia;cat=click0;ord=1;num=207051166224;npa=0;gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE;auiddc=1254602137.1732532718;ps=1;pcor=1077631907;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE?
                                                                                                                                                                    Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"><html><head><title></title></head><body style="background-color: transparent"><img src="https://adservice.google.com/ddm/fls/z/dc_pre=CMnYha2r94kDFUoiBgAdoc4A9g;src=14918961;type=invmedia;cat=click0;ord=1;num=207051166224;npa=0;gclaw=*;auiddc=*;ps=1;pcor=1077631907;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https://www.zipthisapp.com/%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3D*"/></body></html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (1562), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):1562
                                                                                                                                                                    Entropy (8bit):5.22070085027866
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C8AD7339716604C1903ECF2760987A82
                                                                                                                                                                    SHA1:743DD9E6E6816ABCCCEC121CCC9F8B06E94FA051
                                                                                                                                                                    SHA-256:7F3B1AA384155C07E9ED0B7F740B7DD483F81B7372BBDFEB1EC8078693714CFF
                                                                                                                                                                    SHA-512:B9B9E1DDAC64544F4FF38E3B9CB268C86479390686F9A61A90B4D383AA4042C2AB5429F26A2BCA83244C38285A2689F39749CDB68AA9484BC7AAA1D271061619
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:<html><head><title></title></head><body><img src="https://s.amazon-adsystem.com/dcm?pid=78af914c-e755-4b90-bded-1b172aedc763&amp;us_privacy=&amp;gdpr=&amp;gdpr_consent=&amp;id=Z0RZ5kt3uUYAAGBOAkWB5gAAADIAAAIB&amp;gpp=&amp;gpp_sid=" style="display:none" width="0" height="0" alt="" border="0" /><img src="https://pr-bh.ybp.yahoo.com/sync/casale/Z0RZ5kt3uUYAAGBOAkWB5gAAADIAAAIB?gdpr_consent=&amp;us_privacy=&amp;gdpr=&amp;gpp=&amp;gpp_sid=" style="display:none" width="0" height="0" alt="" border="0" /><img src="https://secure.adnxs.com/getuid?https://dsum-sec.casalemedia.com/crum?cm_dsp_id=46&amp;external_user_id=$UID" style="display:none" width="0" height="0" alt="" border="0" /><img src="https://match.prod.bidr.io/cookie-sync/ie" style="display:none" width="0" height="0" alt="" border="0" /><img src="https://rtb.adentifi.com/CookieIndex" style="display:none" width="0" height="0" alt="" border="0" /><img src="https://d.adroll.com/cm/index/tp_out?advertisable=3GMDZMBFQREVBC75SYYKWH" style="
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (52990)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):53044
                                                                                                                                                                    Entropy (8bit):5.438374620694402
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:0B6AA3AA07869D5163C8D489F7C66256
                                                                                                                                                                    SHA1:BD32C24DFC6C71AE54BF2E6473AD61FA6F81BE3B
                                                                                                                                                                    SHA-256:3D649C0B3E87FD6ABCB983656A0A1B3923A2A59885C3A30538641FD4F7126CBD
                                                                                                                                                                    SHA-512:D754CB423718F3BC335081D41A88386B58E2EB523635BD15773B43495064B52B0FBB9265DA8DD19E47A97CFAA1FABD40C73C36F9684F6C44F2A18E6502F44E88
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://acdn.adnxs.com/dmp/async_usersync.html
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html>.<head>.</head>.<body>.<script type="text/javascript">!function(t){var e={};function a(n){if(e[n])return e[n].exports;var i=e[n]={i:n,l:!1,exports:{}};return t[n].call(i.exports,i,i.exports,a),i.l=!0,i.exports}a.m=t,a.c=e,a.d=function(t,e,n){a.o(t,e)||Object.defineProperty(t,e,{enumerable:!0,get:n})},a.r=function(t){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(t,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(t,"__esModule",{value:!0})},a.t=function(t,e){if(1&e&&(t=a(t)),8&e)return t;if(4&e&&"object"==typeof t&&t&&t.__esModule)return t;var n=Object.create(null);if(a.r(n),Object.defineProperty(n,"default",{enumerable:!0,value:t}),2&e&&"string"!=typeof t)for(var i in t)a.d(n,i,function(e){return t[e]}.bind(null,i));return n},a.n=function(t){var e=t&&t.__esModule?function(){return t.default}:function(){return t};return a.d(e,"a",e),e},a.o=function(t,e){return Object.prototype.hasOwnProperty.call(t,e)},a.p="./",a(a.s=114)}({1:functi
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (32436)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):109447
                                                                                                                                                                    Entropy (8bit):5.68719865472609
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:0EBD9BE13822F5AD4709098E695085DA
                                                                                                                                                                    SHA1:2C20F91AB761483BF9C4041BA20E37E2E077DB22
                                                                                                                                                                    SHA-256:4F3F01F25FB985B8E60D2EBC5E92EB099C3F193E7E4051A97DF7290DF48893B7
                                                                                                                                                                    SHA-512:041A42280B4DCE1404FA158524DBDE8FE75F6090450B1EFA1376C30680E631F9341ECC32A90A1679CCA711F429157A35268D789072AA80AA1AA45D73AC72A8FC
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(sttc){var window=this;if(window.googletag&&googletag.evalScripts){googletag.evalScripts();}if(window.googletag&&googletag._loaded_)return;var n,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");},da=ca(this),ea=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",t={},fa={},v=function(a,b,c){if(!c||a!=null){c=fa[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}},w=function(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in t?f=t:f=da;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))brea
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3969)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):292536
                                                                                                                                                                    Entropy (8bit):5.563829501040105
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7B6111418A7612E2383D0883B31BB515
                                                                                                                                                                    SHA1:D0D8E77706202BA3EB789D6E542C73F0E63D9D4A
                                                                                                                                                                    SHA-256:69F4B9C7D08B9965670C627DB7ECD329FED0A5F4BF51448C2B5050345F6429C9
                                                                                                                                                                    SHA-512:DE06D5CF1AD0A0D5CEDB1E8834B81EC57028C5ABC95ED069C9D993824E0B4F4D83059737F45BA7804B22FB57B9064B0BFC8C294215A0FFF1AA53C763E09451AA
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"}],. "tags":[{"function":"__ogt_ads_datatos","priority":17,"vtp_instanceDestinationId":"AW-10807868703","tag_id":11},{"function":"__ogt_1p_data_v2","priority":7,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetValue":"","vtp_lastNameType":"CSS_SELECTOR","vtp_autoAddressEnabled":false,"vtp_re
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (4885), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):4885
                                                                                                                                                                    Entropy (8bit):5.815388285349579
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8DCDC9507CA978905F5DB8A509C5A32B
                                                                                                                                                                    SHA1:0C4358F712D4D5B98F24C3840954D3AB03300C6B
                                                                                                                                                                    SHA-256:CF20FA8719292A5ED2DA4AB9990CD93DD218F285136C1BBE8B9E0F08F9C427C9
                                                                                                                                                                    SHA-512:00DAD37875A883E0600E71781B94C1E2930266B5B01E468CC5166ED442E029DFB6FBF16AAEC4895FA1B8BF26AC94FFFCC8CAABE6D99BC42DF0DE5755A881AB68
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/viewthroughconversion/10807868703/?random=1732532763506&cv=11&fst=1732532763506&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b&hn=www.googleadservices.com&frm=0&tiba=Zip%20This%20-%20Successfully%20Updated&npa=0&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):204928
                                                                                                                                                                    Entropy (8bit):5.475983442397523
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:76DE794CA34B1C4301F8B6F95EB03DEE
                                                                                                                                                                    SHA1:F20D35B781C624E65391F8B21483154C172ED985
                                                                                                                                                                    SHA-256:671F6FCE64728F7EDE6AF558A0896FB753E297F3366EEBF914D1A1B4FE0D7FEE
                                                                                                                                                                    SHA-512:FD80CCF7159EAE3C4408A083F9FCE310284DA23F71AAF17747DA7D5D41AD4D50C68106A6E13ACA4AD4084684EFCC2A6CB08E8BBDF32BC7C4A8ACC1D385EA7A40
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532721184&cv=11&fst=1732532721184&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&npa=0&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&data=ads_data_redaction%3Dfalse
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":2592000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2sZ2vm9A!3sAAptDV5QgxKo\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2sZ2vm9A!3sAAptDV5QgxKo","1i44803230"],"userBiddingSignals":[["7001939024","7008205733"],null,1732532724371436],"ads":[{"renderUrl":"https://tdsf.doubleclick.net/td/adfet
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (2920), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):2920
                                                                                                                                                                    Entropy (8bit):5.278382327824268
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:653708AD1BBAE1579927B6391B2A28F3
                                                                                                                                                                    SHA1:4261E415C23DFD9D925F071737FB0D236F856F4E
                                                                                                                                                                    SHA-256:82D2DC44AAE1EDA52ABC17AFD30C6031B7175C13EE6955410164C66AE755ADFB
                                                                                                                                                                    SHA-512:4092D81BEEAADB7ECA73EE279AF0A5289CAF850253464BAA4F7695C49670C05F7E89630807A2C41D3D9CAD75D95A60719FDB1A16265537153952774F7450873C
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://js-sec.indexww.com/um/ixmatch.html
                                                                                                                                                                    Preview:<!doctype html><head></head><body><script>!function(t){var e={};function r(n){if(e[n])return e[n].exports;var i=e[n]={i:n,l:!1,exports:{}};return t[n].call(i.exports,i,i.exports,r),i.l=!0,i.exports}r.m=t,r.c=e,r.d=function(t,e,n){r.o(t,e)||Object.defineProperty(t,e,{enumerable:!0,get:n})},r.r=function(t){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(t,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(t,"__esModule",{value:!0})},r.t=function(t,e){if(1&e&&(t=r(t)),8&e)return t;if(4&e&&"object"==typeof t&&t&&t.__esModule)return t;var n=Object.create(null);if(r.r(n),Object.defineProperty(n,"default",{enumerable:!0,value:t}),2&e&&"string"!=typeof t)for(var i in t)r.d(n,i,function(e){return t[e]}.bind(null,i));return n},r.n=function(t){var e=t&&t.__esModule?function(){return t.default}:function(){return t};return r.d(e,"a",e),e},r.o=function(t,e){return Object.prototype.hasOwnProperty.call(t,e)},r.p="",r(r.s=0)}([function(t,e){let r=!1;const n={};let i,a,o,c;
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (9059)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):309757
                                                                                                                                                                    Entropy (8bit):5.570927524958281
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8D1235CD74550B529603B8C2DC795F81
                                                                                                                                                                    SHA1:74A1EABEAA5DBB18D32B98B64A624AE4E3EDC80E
                                                                                                                                                                    SHA-256:0154FF6AE3FA7280E5833FD52E08379DC4ED0D0C10DCF100AB3E68E296806099
                                                                                                                                                                    SHA-512:457BE941D3BA5208A62C5E25393616FCC70F9B36C313C6FF4797A2EE5F8B992C39CFFB8C6E61FFDD7345DB8E50570E0AF192947429FFE7B1C3440E2011BA298A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. . (function(w,g){w[g]=w[g]||{};. w[g].e=function(s){return eval(s);};})(window,'google_tag_manager');. .(function(){..var data = {."resource": {. "version":"36",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"G-3D171KFV2T"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"campaign_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"adgroup_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"app_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"creative_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"lp_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"dist"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"d_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"bd"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"placement_id"},{"function":"__u","vtp_component":"QUERY","vtp_queryKey":"gclid","vtp_enableMultiQueryKeys":false,"vtp_enableIgnoreEm
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):204941
                                                                                                                                                                    Entropy (8bit):5.479043649492729
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D3CE07E6141150812DD5BC4DDCEE6CD2
                                                                                                                                                                    SHA1:2CECE0356AE001BD02B3FE74B378C07E8F651652
                                                                                                                                                                    SHA-256:542703DCB5A2D7BBD120C4854ED2EEB688A102251F229D69D7EB8C02A0D2F31F
                                                                                                                                                                    SHA-512:CB54E44BF10C0262D4EBF3C5EE5F30058293BCF0DEBDD4094889915FB57078FDF661AA2EB24A4094B677548F2DBE77B616F7E100EA75F6574C04AFFFF76AEFA4
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532721207&cv=11&fst=1732532721207&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=cJnMCI2mwIwZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21207&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&ct_cookie_present=0
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":15552000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2saDGn9A!3sAAptDV6mAraL\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2saDGn9A!3sAAptDV6mAraL","1i44803230"],"userBiddingSignals":[["7001939024","7004184203","7008205733"],null,1732532724423375],"ads":[{"renderUrl":"https://tdsf.doubleclic
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:exported SGML document, ASCII text, with very long lines (35445), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):35445
                                                                                                                                                                    Entropy (8bit):5.413818994973688
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:213B95143600B981518486483A62D7DA
                                                                                                                                                                    SHA1:034E5973746ED418E4ED98049B8AAB8FB0C54E6A
                                                                                                                                                                    SHA-256:6D661954657CAC563EFD4B9AEF7CCB60F21BF97D17059DEE4F5939ABFC3515F0
                                                                                                                                                                    SHA-512:C787C8165514215E03C56AB33DCBDF0E2B3F4CBBD722A37ACEAE57194A1CD5068E188AEC13EA67235EEC9363EF9DE51AAAEAAAB655D836E21EBFFC76F3BD7799
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.statcounter.com/counter/counter.js
                                                                                                                                                                    Preview:var _statcounter=function(B){var L=!1;function de(y,D){for(var I=0;I<D.length;I++)if(D[I]==y)return!0;return!1}function we(y){return de(y,[12225189,11548023,11878871,12214659,981359,9560334,6709687,9879613,4124138,204609,10776808,11601825,10011918])}function Ue(y){return!1}function Pe(y){return!1}function me(y){return!1;if(Q){var D;if(D.indexOf("counter_test_uncompressed.js")!==-1||D.indexOf("counter_test.js")!==-1)return!0}}try{var y=function(e,t){D()?document.writeln(e):$.insertAdjacentHTML("afterend",e)},D=function(e){return e==="invisible"?!1:$===!1||!$.insertAdjacentHTML},I=function(e){return de(e,[4344864,4124138,204609])||e>Wt},pt=function(e){return de(e,[10011918,4124138])},It=function(e){var t=!0;try{if(typeof JSON=="object"&&JSON&&typeof JSON.stringify=="function"&&typeof JSON.parse=="function"&&"sessionStorage"in window&&"withCredentials"in new XMLHttpRequest||(t=!1),E("sc_project_config_"+e)===1&&E("sc_project_time_difference_"+e)!==null&&(t=!1),E("sc_block_project_config_"
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2292)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):23140
                                                                                                                                                                    Entropy (8bit):5.506950165720704
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:04D245F34D15795A716C4C834F232067
                                                                                                                                                                    SHA1:741E1E16AD0ACFAD22E161FDC51D918DD2208010
                                                                                                                                                                    SHA-256:250210A531956F2CB9BA81DE8405E3B4BFDBC9B70D26BA260B547885F866EC1D
                                                                                                                                                                    SHA-512:C92D7EAA8BC3BE31D8533FB4EF1363EDFC865CC54B121F2DEC99B240287E0E7C21432A239A2C1ABF166BB4E52BBCEEA331A1C58D0CF8F9933E852D97DE779AF3
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://tpc.googlesyndication.com/pagead/js/r20241120/r20110914/abg_lite_fy2021.js
                                                                                                                                                                    Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=this||self;function aa(a){m.setTimeout(()=>{throw a;},0)};var ba,n;a:{for(var ca=["CLOSURE_FLAGS"],p=m,da=0;da<ca.length;da++)if(p=p[ca[da]],p==null){n=null;break a}n=p}var fa=n&&n[610401301];ba=fa!=null?fa:!1;var q;const ha=m.navigator;q=ha?ha.userAgentData||null:null;function ia(a){return ba?q?q.brands.some(({brand:b})=>b&&b.indexOf(a)!=-1):!1:!1}function u(a){var b;a:{if(b=m.navigator)if(b=b.userAgent)break a;b=""}return b.indexOf(a)!=-1};function v(){return ba?!!q&&q.brands.length>0:!1}function ja(){return v()?ia("Chromium"):(u("Chrome")||u("CriOS"))&&!(v()?0:u("Edge"))||u("Silk")};function ka(a){ka[" "](a);return a}ka[" "]=function(){};!u("Android")||ja();ja();u("Safari")&&(ja()||(v()?0:u("Coast"))||(v()?0:u("Opera"))||(v()?0:u("Edge"))||(v()?ia("Microsoft Edge"):u("Edg/"))||v()&&ia("Opera"));let la;var w=Symbol(),ma=Symbol();function na(a,b){b[w]=(a|0)&-30975}fu
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 1129 x 967, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):74761
                                                                                                                                                                    Entropy (8bit):7.810359237305513
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:018805DD7230A36B292A01F763918ECB
                                                                                                                                                                    SHA1:F214B9A33F05BAD3819637F7502339547B7A7978
                                                                                                                                                                    SHA-256:E521C1C70B944607311BD446A7180BD4CC533539871B032A1847D29BFAC63BC5
                                                                                                                                                                    SHA-512:42913D0F970836B4D061FC0A86BB92DC981E4AB94DB726BFF8145F1D25A5FD636E4BE4C2F31B6FEDF751EA3E4F8A9FFFFC34D20B55736FBE9AEFED1A6FD4E8F7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.PNG........IHDR...i...............#.IDATx....s\.....N..fy$Xs....>.#..."($..&]...d&.....$GXr...@.)U[..@.."XO"..&+.....B......9]U...JP.e....u..ks.kO9...... 2s.k.=..^.......y..y.D)%Zk......@wi....?.O>.Dn..}....]........[....M......'h.......=w...?.Pn...]~..._.........i.g........t.....G.. ........K ....v........t..Z.z.(P#"................t.............4.h......zG)%.=..T*..I.........7.........~XDD..9M......{....}.D..4...........J.B.......`.............n...#H.........................J.....i.......[...i....... ......@.........(..4......%@...................A........ H......P..i......J. .......&''euu...l4.R....<.........A)..\..dqqQ.~.iYYY....u4..;.2....F.!...R..<PC.........v.....~.g..hH.4C.&.b.m|.....dbb"..^.V H......v..u.v...,,,D.......J,.b.1...0.~k4...3.D..........wz. ....................;...kL0FDduu5.A..../...Pl..@........XJ)....+W.D..5.w..Z8..F.!...Q....4[. ........L...|....F....m.d.4.[o.%...[.h.A.........}..2...-M..@....4q2._.......4.....`..5].iv&l7
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):16
                                                                                                                                                                    Entropy (8bit):3.875
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:FC10C2818B864FCC38006936127A647C
                                                                                                                                                                    SHA1:8DFA775095871ACE8C1DFCF13355D2065357C2F6
                                                                                                                                                                    SHA-256:B561DE696009B98E613484A1A0BA09326B1C90DA362766D0B954CECCC899F16F
                                                                                                                                                                    SHA-512:2D03E67202EB4E789E04133B8FBAEB3A851005003CEFB67EF41614E6E5982DB0EA37AAF37F8A0A0ACA3CFC9F2AD8CED95FDF78CF7F41D664D22B2A870B1F42A2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAmifU5SGGZHcBIFDWdns_4=?alt=proto
                                                                                                                                                                    Preview:CgkKBw1nZ7P+GgA=
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7496), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):7496
                                                                                                                                                                    Entropy (8bit):6.141373452466443
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:198ABE303C333F508A83101035406496
                                                                                                                                                                    SHA1:024BC1EA103E72D1D60D45435DDF65DDC17ED41A
                                                                                                                                                                    SHA-256:D87796371281125753ADF41B4070AF978C5D0E376054F7D98412EC2FAAFA13A0
                                                                                                                                                                    SHA-512:80ABC30BB7F3FB0F6AF4230A57EC62D51364F6859A39557B793DEE3A5C6E2EB5EAB4B2089CB8FB746A9B0A4F54958F54C3904E26302B2A704E8AF0D0F7FA0291
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googleadservices.com/pagead/conversion/10807868703/?random=1732532763490&cv=11&fst=1732532763490&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b&gclaw_src=0_1&label=pzUUCKf2w4MDEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Zip%20This%20-%20Successfully%20Updated&value=0&bttype=purchase&npa=0&gclgs=5&gclst=63492&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):205
                                                                                                                                                                    Entropy (8bit):6.471232950817362
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:4087858E2C9DB9AA8F6A840AEDCFB533
                                                                                                                                                                    SHA1:D1FFE861DA6BD0E95FD1A365B0C3D3CEB6CD58A3
                                                                                                                                                                    SHA-256:4D45982F2DC34F36C9045EE46A75A1943666BB7FD64E103CAC8C7429E7012840
                                                                                                                                                                    SHA-512:541228667C513266FFAC017AA43CCACEA410E20BF27D30599276E9984FAC2C433AC58288C19F7A5BFEB1C9B4074B8C9C472080BF1C706303F97B2CE73DBD634F
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.gstatic.com/images/icons/material/system/2x/feedback_grey600_24dp.png
                                                                                                                                                                    Preview:.PNG........IHDR...0...0.......1.....IDATx...1..1.DQ.f....@H.....%`..j.M&"....5....;...;.......\.....\..U.4..pe.<.P.....%... ...@....p.....@...X...5..{.$.x^....y=..z.......|.......+.........IEND.B`.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):119259
                                                                                                                                                                    Entropy (8bit):6.074835424525529
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D277C457E4C688D180E8360F16C2D50E
                                                                                                                                                                    SHA1:85984AD026E7E5CD67BCDBDFB98DEF4D40D1A385
                                                                                                                                                                    SHA-256:F222FE1202C0274B0A6085DED7464F0DDD17B031DD7179D8F21CD77D9E5B13B5
                                                                                                                                                                    SHA-512:EC7C02929C6593A8B111A7A17D03A7B6A0CCA92DD9129F718707415B4E8B1DEAC5853B008B1B9EFF290768EFA5A297CD0737B65ACB09901727324F915BEF1B2B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-6119214979619050&output=html&h=280&slotname=3278986138&adk=3350846236&adf=2484793639&pi=t.ma~as.3278986138&w=336&abgtt=6&lmt=1732532691&format=336x280&url=https%3A%2F%2Fwww.kalenderpedia.de%2Fkalender%2Fkalender-2025-baden-wuerttemberg-pdf-vorlagen.html&wgl=1&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0.&dt=1732532688415&bpp=4&bdt=146&idt=2779&shv=r20241120&mjsv=m202411140101&ptt=9&saldr=aa&abxe=1&cookie_enabled=1&eoidce=1&prev_fmts=0x0&nras=1&correlator=6834547816686&frm=20&pv=1&u_tz=-300&u_his=2&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_sd=1&dmc=8&adx=579&ady=205&biw=1263&bih=907&scr_x=0&scr_y=0&eid=42533203%2C42532524%2C95347444%2C95335245%2C95345967&oid=2&pvsid=3652578938665992&tmod=1909426277&uas=0&nvt=1&ref=https%3A%2F%2Fwww.kalenderpedia.de%2F&fc=1920&brdim=0%2C0%2C0%2C0%2C1280%2C0%2C1280%2C984%2C1280%2C907&vis=1&rsz=%7C%7CoeE%7C&abl=CS&pfx=0&fu=0&bc=31&bz=1&td=1&tdf=0&psd=W251bGwsbnVsbCxudWxsLDNd&nt=1&ifi=2&uci=a!2&fsb=1&dtd=2786
                                                                                                                                                                    Preview:<!doctype html><html><head><script>var jscVersion = 'r20241120';</script><script>var google_casm=[];</script><style>a { color: #000000 }.img_ad:hover {-webkit-filter: brightness(120%)}</style><script></script><script>window.dicnf = {imprtype: 2,};</script><script data-jc="40" data-jc-version="r20241120" data-jc-flags="[&quot;x%278446&#39;9efotm(&amp;20067;&gt;8&amp;&gt;`dopb/%&lt;1732261!=|vqc)!7201061?&#39;9efotm(&amp;20723;&gt;:&amp;&gt;`dopb/%&lt;1245;05!=nehu`/!361:&lt;320!9sqrm(&amp;2057?61&lt;&amp;&gt;`dopb~&quot;]">(function(){'use strict';/* Copyright The Closure Library Authors. SPDX-License-Identifier: Apache-2.0 */ var q=this||self;var aa,u;a:{for(var ba=["CLOSURE_FLAGS"],v=q,ca=0;ca<ba.length;ca++)if(v=v[ba[ca]],v==null){u=null;break a}u=v}var ea=u&&u[610401301];aa=ea!=null?ea:!1;var w;const fa=q.navigator;w=fa?fa.userAgentData||null:null;function ha(a){return aa?w?w.brands.some(({brand:b})=>b&&b.indexOf(a)!=-1):!1:!1}function y(a){var b;a:{if(b=q.navigator)if(b=b.userAgen
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:GIF image data, version 89a, 1 x 1
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):43
                                                                                                                                                                    Entropy (8bit):3.1961893998690174
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:45CF913E5D9D3C9B2058033056D3DD23
                                                                                                                                                                    SHA1:30CB5D44E276505B1D4C053C8B25525DA228DB30
                                                                                                                                                                    SHA-256:42B976597A2D977D0E300F6D06BC903DB389E5C112D33C1C8C249690A522D9F2
                                                                                                                                                                    SHA-512:16DD1560FDD43C3EEE7BCF622D940BE93E7E74DEE90286DA37992D69CEA844130911B97F41C71F8287B54F00BD3A388191112F490470CF27C374D524F49BA516
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:GIF89a.............!.......,...........D..;
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2559)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):8555
                                                                                                                                                                    Entropy (8bit):5.492195626331508
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:530B1DCC0B1FE62493859B89716A52CB
                                                                                                                                                                    SHA1:5E3AB8EB20BF257B8C56DD66652E04BAE0C61025
                                                                                                                                                                    SHA-256:8A9C81C9A548D40A553EDE36A69694598EC702D41BAE325F952EA350BFFC7CE3
                                                                                                                                                                    SHA-512:C1E30F84CC05C89D8A96014A7FA9FE5D2E52CA428A8946D7637111614536260B731C6ECD828E5DAD07203588B1836D1CCBD9BDFD09F72679BB1AC4E8F8F5B1A3
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.gstatic.com/mysidia/530b1dcc0b1fe62493859b89716a52cb.js?tag=engine/client_fast/client_fast_engine
                                                                                                                                                                    Preview:(function(){'use strict';/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var h=this||self;function k(a,b){a=a.split(".");var c=h;a[0]in c||typeof c.execScript=="undefined"||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||b===void 0?c[d]&&c[d]!==Object.prototype[d]?c=c[d]:c=c[d]={}:c[d]=b};var l,p;a:{for(var q=["CLOSURE_FLAGS"],r=h,u=0;u<q.length;u++)if(r=r[q[u]],r==null){p=null;break a}p=r}var v=p&&p[610401301];l=v!=null?v:!1;var y;const z=h.navigator;y=z?z.userAgentData||null:null;function A(a){return l?y?y.brands.some(({brand:b})=>b&&b.indexOf(a)!=-1):!1:!1}function B(a){var b;a:{if(b=h.navigator)if(b=b.userAgent)break a;b=""}return b.indexOf(a)!=-1};function C(){return l?!!y&&y.brands.length>0:!1}function D(){return C()?A("Chromium"):(B("Chrome")||B("CriOS"))&&!(C()?0:B("Edge"))||B("Silk")};!B("Android")||D();D();B("Safari")&&(D()||(C()?0:B("Coast"))||(C()?0:B("Opera"))||(C()?0:B("Edge"))||(C()?A("Microsoft Edge"):B("Edg/"))
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):46485
                                                                                                                                                                    Entropy (8bit):6.156864630710911
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:681B8D949801D66C2257D2FB3E31F318
                                                                                                                                                                    SHA1:50D0B58DF8AD3B3D0E43AF340980AA26EE9FD021
                                                                                                                                                                    SHA-256:58F37F36DC8324128B7F0CD14C86A22CF35BAACE59F1D40F6F1B3592AD9172D6
                                                                                                                                                                    SHA-512:D19B41157C765BAC63B8D18168B0BBACEBF652386B8F49EDB29250BFE00348F8F91D28B85C0D43FD176E49ABD9F94416E91E262B8BBDFC54B0225171021C1FDD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:{"/53015287/kalenderpedia.de_d_160x600_1":["html",0,null,null,1,600,160,0,1,null,null,1,1,null,[105398731287],[154421007],[34450767],[369642807],[542758],[5068056476],null,null,null,null,null,1,null,null,null,null,null,null,null,"CIjNn6ar94kDFbBHHQkdhJUNiA",null,null,null,null,null,null,null,null,null,null,null,null,null,null,"1",null,null,null,null,null,null,null,null,null,null,null,null,null,null,1,null,null,null,null,[]]}.<!doctype html><html><head><script>var jscVersion = 'r20241120';</script><script>var google_casm=[];</script></head><body leftMargin="0" topMargin="0" marginwidth="0" marginheight="0"><script>window.dicnf = {};</script><script data-jc="42" data-jc-version="r20241120" data-jc-flags="[&quot;x%278446&#39;9efotm(&amp;20067;&gt;8&amp;&gt;`dopb/%&lt;1732261!=|vqc)!7201061?&#39;9efotm(&amp;20723;&gt;:&amp;&gt;`dopb/%&lt;1245;05!=nehu`/!361:&lt;320!9sqrm(&amp;2057?61&lt;&amp;&gt;`dopb~&quot;]">(function(){'use strict';/* Copyright The Closure Library Authors. SPDX-License
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7358), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):7358
                                                                                                                                                                    Entropy (8bit):6.151979199920968
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:DA471754B39A9B2E7AD2482A1C0D0238
                                                                                                                                                                    SHA1:8C6FE0882EBE8490048F7553E2A2EB38B4544196
                                                                                                                                                                    SHA-256:33D64EEE4B664AD0620F3996F2AE9437B71C0EB750FD067FBCB86744F912A869
                                                                                                                                                                    SHA-512:952A0FEC7612E71E69350B5FF32DC4B046358DCD5F7811E9592CA9BAAF459866FD20FA8FFBF473C8C6BC844A70C7E3CE4C0EE67A583B09F7A4D1720808DF4F30
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:GIF image data, version 89a, 1 x 1
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):42
                                                                                                                                                                    Entropy (8bit):2.9881439641616536
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D89746888DA2D9510B64A9F031EAECD5
                                                                                                                                                                    SHA1:D5FCEB6532643D0D84FFE09C40C481ECDF59E15A
                                                                                                                                                                    SHA-256:EF1955AE757C8B966C83248350331BD3A30F658CED11F387F8EBF05AB3368629
                                                                                                                                                                    SHA-512:D5DA26B5D496EDB0221DF1A4057A8B0285D15592A8F8DC7016A294DF37ED335F3FDE6A2252962E0DF38B62847F8B771463A0124EF3F84299F262ED9D9D3CEE4C
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:"https://pagead2.googlesyndication.com/pcs/activeview?xai=AKAOjsui8mYWuVGl6ADlyMWLVkboUAu8hYX9Xbo-9qiSWW9geghUzSP8-KeVY3i_K7JkFOWdNDDGC1k6_gH42fyaGrCu-wOTkBfVoaElNP8Feo_7WKEwCcb7cYnbelCuL8Z7bSnBJGP0RHxmC7F44xP0JqMrqT3ixeO_VW5aapL4&sai=AMfl-YQa8Nvt1OPEsFNY_Z4W04tobeJkgGOa9v2IzVgiJOoTDczZwBU3hTfhYjTd9xbBC_IlC_GD87LiJIADPp2lwafEtfLGcrlL2TgX5t8j_ZVKw7yigarOpZoxraVIkNZjTsY3DY5Adr_UdtdU90SD&sig=Cg0ArKJSzBWjEuSx-8ZSEAE&cid=CAQSTgCa7L7d2NLTGMd9JK9-yxO0CBPmrmLW2UYoAHBRh4fv6RKjAG7gxBzKciZ8rrtin7Med4Gm5PSfTHs_KVGE08LV2Oz-tnCiMPHeTTnfgxgB&id=lidar2&mcvt=1010&p=0,0,280,336&tm=1017.7999999999884&tu=8&mtos=1010,1010,1010,1010,1010&tos=1010,0,0,0,0&v=20241120&bin=7&avms=nio&bs=0,0&mc=1&if=1&vu=1&app=0&itpl=4&adk=3350846236&rs=2&la=0&cr=0&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0%3D&vs=4&r=v&co=2846550000&rst=1732532691202&rpt=9733&met=mue&wmsd=0&pbe=0&fle=0&vae=0&spb=0&sfl=0&ffslot=0&reach=8&io2=0"
                                                                                                                                                                    Preview:GIF89a.............!.......,...........D.;
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3835)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):228013
                                                                                                                                                                    Entropy (8bit):5.546416706685291
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:461059EF0429348562801EEB69472643
                                                                                                                                                                    SHA1:3C3D2FC61EEE1C9BC5E4F4D533BABE69CD8A17D3
                                                                                                                                                                    SHA-256:CBCD96D77A452D19DF10299D6B50B9E7CB49F62EF450C7384EBB1647D2B7830D
                                                                                                                                                                    SHA-512:04029286634413133EC030C1D4D75EC27E6021641CCA56286BF652B006F2E444C331401FF42FEEB07EE3AB27F4D53C31995DF38A55E098CD35FE30F5AA6AA9F2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/gtag/js?id=UA-19254046-17
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"undefined"}],. "tags":[{"function":"__ogt_1p_data_v2","priority":2,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_autoEmailEnabled":true,"vtp_autoPhoneEnabled":false,"vtp_autoAddressEnabled":false,"vtp_isAutoCollectPiiEnabledFlag":false,"tag_id":10},{"function":"__ccd_ga_first","priority":1,"vtp_instanceDestinationId":"UA-19254046-17","tag_id":13},{"function":"__rep","vtp_containerId":"UA-19254046-17","vtp_remoteConfig":["map"],"tag_id":1},{"function":"__zone","vtp_childContainers":["list",["map","publicId","G-QT0HVH0Q0V"]],"vtp_enableConfiguration":false,"tag_id":3},{"function":"__ccd_ga_last","priority":0,"vtp_instanceDestinationId":"UA-19254046-17","tag_id":12}],. "predicates":[{"function":"_eq","arg0":["macro",0],"arg1":"gtm.js
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 25x40, components 3
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):519
                                                                                                                                                                    Entropy (8bit):6.320852914862496
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E27CCCED90C19543D808BEAF94BD82CB
                                                                                                                                                                    SHA1:43D9F21BC4A21A4C15668AFBA4D71284A7A074D9
                                                                                                                                                                    SHA-256:BFFFDCA34C792C16292004118026DF018F650F1733C4399DD9B23D43AE26D8BD
                                                                                                                                                                    SHA-512:8BA8A3CD925A61CEFC8570A646F26A15A10EC206AE48CFB6814F333CB3D76BAA34E6AFD3F35A94B34DB002492CFEA6369D6D7A2B0AC5C85589D991297A2F8CE6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:......JFIF.....H.H.....C.....................................%...#... , #&')*)..-0-(0%()(...C...........(...((((((((((((((((((((((((((((((((((((((((((((((((((......(....".....................................6........................!Q.."1CRabs.#$34ABSq...%r.....................................................12..q............?..-T]J...LH...I..D....h...3@..JgW./......v.U...}..J..@.b.|F..K-.[....tO.)...b...L.+.I........xO~.U....S.Rp|.H.o....U.88... .;..tc..LS......t&..Sa..C.H.9....K/...P...).......&.xYM.....
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (923), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):923
                                                                                                                                                                    Entropy (8bit):5.588470512386861
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8EF92F91AC086AF6A8B6B3E50415F7D5
                                                                                                                                                                    SHA1:43ECA27719A790B894FE6B9211D9746D0FEBEE7B
                                                                                                                                                                    SHA-256:91727982B47D4E228971752C0D33FC4AFD1093A75752D90F1BCCD78D377EEAA7
                                                                                                                                                                    SHA-512:06A16B0AD543B028F588710A5038F539F323614CC813915DFCDBBEA46EBF5EADD03969C63C4F8FC0355BF7220D65454AA9A6CAD29DD86721CB64674E56BE282A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://14918961.fls.doubleclick.net/activityi;dc_pre=CNiPhq2r94kDFSgiBgAd59MB7w;src=14918961;type=invmedia;cat=lpvie0;ord=1;num=2275077993604;npa=0;gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE;auiddc=1254602137.1732532718;ps=1;pcor=279873327;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE?
                                                                                                                                                                    Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"><html><head><title></title></head><body style="background-color: transparent"><img src="https://adservice.google.com/ddm/fls/z/dc_pre=CNiPhq2r94kDFSgiBgAd59MB7w;src=14918961;type=invmedia;cat=lpvie0;ord=1;num=2275077993604;npa=0;gclaw=*;auiddc=*;ps=1;pcor=279873327;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https://www.zipthisapp.com/%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3D*"/></body></html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (65245)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):72380
                                                                                                                                                                    Entropy (8bit):5.291235892642397
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:FB8409A092ADC6E8BE17E87D59E0595E
                                                                                                                                                                    SHA1:CF8D9821552D51BB50CE572E696ABA1309065800
                                                                                                                                                                    SHA-256:E3E5F35D586C0E6A9A9D7187687BE087580C40A5F8D0E52F0C4053BBC25C98DB
                                                                                                                                                                    SHA-512:FC35D35EBEA742874C522ABE2142580ADD8F3CE523AC727DC05AEAA49DD79203CD39955F32893B711C3A092C72090C579FAA339444AC4A1D7FB0C093175ACBFE
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://code.jquery.com/jquery-3.5.1.slim.min.js
                                                                                                                                                                    Preview:/*! jQuery v3.5.1 -ajax,-ajax/jsonp,-ajax/load,-ajax/script,-ajax/var/location,-ajax/var/nonce,-ajax/var/rquery,-ajax/xhr,-manipulation/_evalUrl,-deprecated/ajax-event-alias,-effects,-effects/Tween,-effects/animatedSelector | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(g,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,v=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,y=n.hasOwnProperty,a=y.toString,l=a.call(Object),m={},b=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},w=g.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function C(e,t,n){var r,i,o=(
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):8884
                                                                                                                                                                    Entropy (8bit):4.7992635166199715
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7143D3A9795ADC641037A57197AD6B40
                                                                                                                                                                    SHA1:E38CAE4DB22616B98EF2F9C0A416DEF7A4A90682
                                                                                                                                                                    SHA-256:93F3E39324F19003E38380ADE02815DA8F6BF7972F762D3DC63756E68B78454D
                                                                                                                                                                    SHA-512:9491AC02F22938B94EB5E22BBE0C643F8B69A9BD23C3CB9BD4A741D4F681658227236251E7D4C2D14D191BCFB2FB674BA8F5F1B84ED3591D8417992FC3CB6A89
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/css/main.css
                                                                                                                                                                    Preview:@import url('https://fonts.googleapis.com/css2?family=DM+Sans:wght@400;500;700&display=swap');../* colors */..main-background {. background: #221151;.}..secondary-color {. color: #5D25FC;.}..light-color {. color: #E5E5E5;.}..dark-color {. color: #221151;.}../* main */.body {. margin: 0;. font-family: 'DM Sans', sans-serif;. width: 100%;. min-height: 100vh;.}../* header */..header-section {. display: flex;. justify-content: space-between;. align-items: center;. padding: 24px 40px;. width: 100%;. color: white;.}..header-section a {. text-decoration: none;.}..logo-title {. display: flex;. align-items: baseline;. font-weight: 700;. font-size: 30px;. color: white;.}..logo-title:hover {. color: white;.}..logo {. width: 31px;. height: auto;. margin-right: 10px;.}..header-links {. margin-left: auto;. display: flex;. align-items: center;. font-size: 22px;. font-weight: 400;. gap:50px;. font-family: Aria
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (64561)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):503686
                                                                                                                                                                    Entropy (8bit):5.508558974395514
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:1287CDB3F0F62C61E3113588C1E3084B
                                                                                                                                                                    SHA1:1905593FE59A1C9384C875484B1347178E2DA664
                                                                                                                                                                    SHA-256:B95FE6FCB4925330BF629FDA90A1362A336B4A8B87BF9573D87927D78C186062
                                                                                                                                                                    SHA-512:E722F9D7BE4FE8D60491AE5322FE8D59171DE901061F08302B7B28A87611C8914B45CC677CD564B141A5C0F3AAB52D3403B47D8DF0073CEC7731D900DB2C3FBA
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(_){/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ ./* . . Copyright Google LLC . SPDX-License-Identifier: Apache-2.0 .*/ ./* . . . Copyright (c) 2015-2018 Google, Inc., Netflix, Inc., Microsoft Corp. and contributors . Licensed under the Apache License, Version 2.0 (the "License"); . you may not use this file except in compliance with the License. . You may obtain a copy of the License at . http://www.apache.org/licenses/LICENSE-2.0 . Unless required by applicable law or agreed to in writing, software . distributed under the License is distributed on an "AS IS" BASIS, . WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. . See the License for the specific language governing permissions and . limitations under the License. .*/ ./* . .Math.uuid.js (v1.4) .http://www.broofa.com .mailto:robert@broofa.com .Copyright (c) 2010 Robert Kieffer .Dual licensed under the MIT and GPL licenses. .*/ .var ba,da,ja,xa,Aa,Da,Ja,
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1748)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):3596
                                                                                                                                                                    Entropy (8bit):5.444209745064718
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D92FD68178888768C733A4365A56FC3D
                                                                                                                                                                    SHA1:55916ED75FD5C9DF0A7447298E2BCA559CC9583A
                                                                                                                                                                    SHA-256:E573D7D4E3679F1D578E544C5B807AA4FF21E208BAF12E48AA0D09B2B3938F04
                                                                                                                                                                    SHA-512:37CAEE932A7038636D84720960420E701C7659C873188CA400EE0196868D9C5A09BB31F566699ACF54DB0F0FC42BD769F1A141A213C2127C38CE839DACCA8BE5
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://securepubads.g.doubleclick.net/pagead/js/car.js
                                                                                                                                                                    Preview:/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var e=this||self;/* . . Copyright Google LLC . SPDX-License-Identifier: Apache-2.0 .*/ .var f={};function g(){if(f!==f)throw Error("Bad secret");};function h(a){return Object.isFrozen(a)&&Object.isFrozen(a.raw)}function k(a){return a.toString().indexOf("`")===-1}const l=k(a=>a``)||k(a=>a`\0`)||k(a=>a`\n`)||k(a=>a`\u0000`),m=h``&&h`\0`&&h`\n`&&h`\u0000`;let n=globalThis.trustedTypes,p;function q(){let a=null;if(!n)return a;try{const b=d=>d;a=n.createPolicy("goog#html",{createHTML:b,createScript:b,createScriptURL:b})}catch(b){throw b;}return a};var r=class{constructor(a){g();this.g=a}toString(){return this.g+""}};function t(a){p===void 0&&(p=q());var b=p;return new r(b?b.createScriptURL(a):a)};var v=class{constructor(a){g();this.h=a}toString(){return this.h}};new v("about:blank");new v("about:invalid#zClosurez");const w=[];var x=a=>{console.warn(`A URL with content '${a}' was sanitized away.`)};w.ind
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (21224)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):24203
                                                                                                                                                                    Entropy (8bit):5.349731623672621
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:F1DFC75C82E12DFE846D5593978E422A
                                                                                                                                                                    SHA1:12E580A708B09C9A8F4CA7CCBE9DD7DF32EDEE60
                                                                                                                                                                    SHA-256:08204982C484FAF6890C60557A4E642971F17625DDDDC0559DC0E3CA728AC9E0
                                                                                                                                                                    SHA-512:623412E6D454104251215E38A0F365F879EC70F77306769F5FA40E144C0EAB43237D1FE13B92031AD5848071A6A8910F01576F079E1A0904F4D8DD8959D922A5
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var aa="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ba=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");},ca=ba(this),da=function(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&aa(c,a,{configurable:!0,writable:!0,value:b})}},ea=function(a){return a.raw=a},fa="function"==typeof Object.assign?Object.assign:function(a,b){for(var c=1;c<arguments.length;c++){var d=arguments[c];if(d)for(var e in d)Object.prototype.hasOwnProperty.call(d,e)&&(a[e]=d[e])}return a};da("Object.assign",f
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3679)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):162887
                                                                                                                                                                    Entropy (8bit):5.599312241667326
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:021813B5B3CB5148BD0737B1ADD2BB89
                                                                                                                                                                    SHA1:FAE3509DA21D6F5F2BC0EE245C3BA64D6B71A55C
                                                                                                                                                                    SHA-256:9AFC3B53CC94CD732A05B57629D619C071D4920DCC79F6346811CFEE32B127EF
                                                                                                                                                                    SHA-512:FDA9DAF51B13F1C4340B756DC02893C0FB07D442FAC7CD0924B7D11D6320B48EA970FFABB0B0CAE1FBDAD3908ED2E21CBE384DCA9CD30E1070F2C8F6FEFCD039
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-6119214979619050
                                                                                                                                                                    Preview:(function(sttc){'use strict';var aa,ba=Object.defineProperty;function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var da=ca(this),ea=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",fa={},ha={};function ia(a,b,c){if(!c||a!=null){c=ha[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}} .function ja(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in fa?f=fa:f=da;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))break a;f=f[g]}d=d[d.length-1];c=ea&&c==="es6"?f[d]:null;b=b(c);b!=null&&(a?ba(fa,d,{configurable:!0,writable:!0,value:b}):b!==c&&(ha[d]===void 0&&(a=Math.random()*1E9>>>0,ha[d]=ea?da.Symbol(d):"$jscp$"+a+"$"+d),ba(f,ha[d],{configurable:!0,writable:!0,value:b})))}}ja("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")},"es_nex
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (815)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):3501
                                                                                                                                                                    Entropy (8bit):5.383873370647921
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:147FD3B00C22BA9C939712E9213C24CA
                                                                                                                                                                    SHA1:3B48369B86FA0574F35379AACD1F42CC9C98A52B
                                                                                                                                                                    SHA-256:70F5B11C1870CF90201A6D5F770CA318A3FA5827C74A8765EDE22B487F7D4532
                                                                                                                                                                    SHA-512:E8419A71232EDAC8FD131446777F7D034B3171EFE07B3267479B439E4982650DB65A0D1DDC9F516315D5ED1B01ECFD2F7EB55D75D44AA51EE0AD494D441586D2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/static/service_worker/4bj0/sw_iframe.html?origin=https%3A%2F%2Fwww.zipthisapp.com
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html>.<head>. <link rel="shortcut icon" href="data:image/x-icon;," type="image/x-icon">.</head>.<body>. <script>.'use strict';class m{constructor(a){this.j=a;this.g={};this.h={};this.i=0;this.id=String(Math.floor(Number.MAX_SAFE_INTEGER*Math.random()))}}function n(a){return a.performance&&a.performance.now()||Date.now()}.var p=function(a,b){class d{constructor(c,g,f){this.failureType=c;this.data=g;this.g=f;this.h=new m(n(f))}s(c,g){const f=c.clientId;if(c.type===0){c.isDead=!0;var e=this.h,h=n(this.g);e.g[f]==null&&(e.g[f]=0,e.h[f]=h,e.i++);e.g[f]++;c.stats={targetId:e.id,clientCount:e.i,totalLifeMs:Math.round(h-e.j),heartbeatCount:e.g[f],clientLifeMs:Math.round(h-e.h[f])}}c.failure={failureType:this.failureType,data:this.data};g(c)}}return new d(5,a,b)};/*.. Copyright Google LLC. SPDX-License-Identifier: Apache-2.0.*/.let q=globalThis.trustedTypes,r;function t(){let a=null;if(!q)return a;try{const b=d=>d;a=q.createPolicy("goog#html",{createHTML:b,createScript:b,crea
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):604
                                                                                                                                                                    Entropy (8bit):7.573620174038291
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7BD42E5A35B5FB3FF852D6EA9191CA83
                                                                                                                                                                    SHA1:8A141EB392A05A2DEA3DCD83B97940EF70A81EBC
                                                                                                                                                                    SHA-256:5C4A713EE4250851232BE9F9F68D41586BE39B299528CFC7266E0B0E7E582E1B
                                                                                                                                                                    SHA-512:6FF31ACB937D6944570A837BB77AED92DAE41D71681440DC4765758FC40585F55999F2CDD78C4CE76A5AB414331BA9959BAFCFEF7E85B756AAB899C247F02890
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.PNG........IHDR...0...0.......1....#IDATx...MKTQ...3...K...gP.Eo.Z$..6......"0..."..E-Z...C....+..E.T...JH/.HC.$d...y..."..W...w.3..3..9... ^..Fr4R.Q.....H<...\...V.[...v.L.D...y.wYQ....]....w&...|F...iz8..b.s.r..[.H..5..5D..[@.ed.-...O..=..G..lpD.R.F".J....... .. y*..$>.)V.`..quuP4.W9.}....*..y......~E}.7....IU.~.!.Ak.>....A..o..._.....7.4...{.K..6o.O..5.0n.`..z...V."^. 0.x=..^M...*t...H..9.B.(UD..>heD......."....W..T.E..0D.fYfI..3.-.G".....#.p....q.......Bv..{5.!u.F.i.......[.s.)....I....v.....Y.P.5?...n.'.......;...T......f......Q...~...8.....h.......T3<........IEND.B`.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 38 x 42, 8-bit/color RGB, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):3248
                                                                                                                                                                    Entropy (8bit):7.913799149523977
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:183BD3EFA6DDDE7CC30DD4CE2F5934A4
                                                                                                                                                                    SHA1:66B5837987FD4FD4C3B92B0A2D9F783E4D71F795
                                                                                                                                                                    SHA-256:936B0E261C88FA4A063E537C605492B9054D2A70E4B065BFEEC0715F019C7AF7
                                                                                                                                                                    SHA-512:27FF67AE23EDBF6CE293B771184AE6AFE3FB3C3389B015D6E6C466BD3535226BBF2F4F989153F0C9E1E0AF3B2E52077B7801E8F3DCF59557ADDB25CACFA183BD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/kalender-38x42.png
                                                                                                                                                                    Preview:.PNG........IHDR...&...*.....P......wIDATx...[.$.q.ODdfUuW_..{fwg....IQ.%H. ... .2d.'...6........`...K$AR.i...nO.*o..^,..).8..../.IRU..z.7.=z4......;w6.MY.......C.}..j..n.'''...)......d2988....;;S^}....k0!......@.....y.e.vm...:mZ..._...PM.]-...x.5-]<..(.........6...".v.....#..T.}J.cD.`w.U.....?$....Ao.{.}C....9..b.s).>z['..z..Z../....?.....y..O.7n:...\..dx.\..7..F..?.s.?..._\>]....M.T[#.>.Q?..w..M..zz......_.Vk....9.....z(.g.....Z5..=9...W.HC....S^/.b.m....''i.}.....k.K.....)Y.Iy.1..[...k/..|..xjJ.-.AT....`&F..d...........O...4......[.Wg....l.......'..D6.k.n[.%....h.RH..4.Od.&h&C....U...B.1&.i......!4Mn@}J.....fr...W.m.\.*C.wZy....K.].[..ma.WM..K..re+t>7....!.k......d-1.Y...!...'.......B...."@.B..H).m.R.......Yk.ffa&...!..\A.......#".....)...5.1.......s..a..H...UD.23...r."&......s....12.....d.3.u.T.K.......p...^U.Cl...=.>...8..........q%R...6..;....=G1@1...k.A.Y.a.v.)`8....)L.[..H0v='f..@..>...2rv'w......T8.......xt..........\
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3083)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):15998
                                                                                                                                                                    Entropy (8bit):5.496900172766821
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:FD9C9E1850992C76676C351FB57F2D81
                                                                                                                                                                    SHA1:76B886AA100C3D240EF5388FB35F469A2013C769
                                                                                                                                                                    SHA-256:43B052335621757C1FB5F47847F9366E16C120192C4C45998D886154CDD515E0
                                                                                                                                                                    SHA-512:78F06A9CDD08F7F7C9E94ADB2E54796A08EB67F8A12FE513064B5C78693B6CD7A4DC58C8BC538886C2721D8E668A0096F3D1DDB21899BD8215A24F093A6E0CCB
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){'use strict';var aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ca=ba(this); .function da(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var f=a[d];if(!(f in c))break a;c=c[f]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&aa(c,a,{configurable:!0,writable:!0,value:b})}}da("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")});/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=this||self;var q,r;a:{for(var ea=["CLOSURE_FLAGS"],t=m,u=0;u<ea.length;u++)if(t=t[ea[u]],t==null){r=null;break a}r=t}var fa=r&&r[610401301];q=fa!=null?fa:!1;var y;const ha=m.navigator;y=ha?ha.userAgentData||null:null;function z(a){return q?y?y.brands.some(({brand:b})=>b&&b.indexOf(a)!=-1):!
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):205159
                                                                                                                                                                    Entropy (8bit):5.475749083708747
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:072AF363D02F18951534FB15DE9E7E02
                                                                                                                                                                    SHA1:704DFD28CF3E19C93C3B012A3C81661BEA5308A2
                                                                                                                                                                    SHA-256:8848ABB2139741EFC77A05077591D2B11880E4573AB81F21D50B8C4AC57204E7
                                                                                                                                                                    SHA-512:0DFF54F389FEE4FB06197DC89FA1C776FD5648FD5EC3A2529098E2FAD0FBD50D71B319BC73CBA12FAD3FA8B649AA3DD524748313367629944C95BF2DF73CA5A1
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532763506&cv=11&fst=1732532763506&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b&hn=www.googleadservices.com&frm=0&tiba=Zip%20This%20-%20Successfully%20Updated&npa=0&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&data=ads_data_redaction%3Dfalse
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":46656000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2sagxEHg!3sAAptDV57aJvE\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2sagxEHg!3sAAptDV57aJvE","1i44803230"],"userBiddingSignals":[["8468318392","7008205733","7004184203","7001939024"],null,1732532766599154],"ads":[{"renderUrl":"https://td
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):68959
                                                                                                                                                                    Entropy (8bit):5.271067463072278
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D13BADE06ED0311E5E60DA0934E8865C
                                                                                                                                                                    SHA1:95DB12F0EFDE53F4226C6BF98F8BB4009EC4A160
                                                                                                                                                                    SHA-256:718D8A89CCC5C65E3E8AF1CD569B5BCC18303CC9C80941A9D9E92076A6B2E845
                                                                                                                                                                    SHA-512:0EB0EEC734EF67D3DFC6B3E30035BD821C62B4A1A69FB42A7AFC117968103F5A6C4AD7FFBE9C4D728BC92E281E7BC0422CE7158063D111B6EB7B27C4939A8176
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://scatteredstream.com/v2fqn1nrTnx4ZRv5mMpu5MDiRwbwUp7vJH0rZKYhz30uewRpRd8CbY1vqfHQ8K51e
                                                                                                                                                                    Preview:!(function(n){var t={};function r(i){if(t[i])return t[i].exports;var e=t[i]={i:i,l:!1,exports:{}};return n[i].call(e.exports,e,e.exports,r),e.l=!0,e.exports}r.m=n,r.c=t,r.d=function(n,t,i){r.o(n,t)||Object.defineProperty(n,t,{enumerable:!0,get:i})},r.r=function(n){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(n,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(n,"__esModule",{value:!0})},r.t=function(n,t){if(1&t&&(n=r(n)),8&t)return n;if(4&t&&"object"==typeof n&&n&&n.__esModule)return n;var i=Object.create(null);if(r.r(i),Object.defineProperty(i,"default",{enumerable:!0,value:n}),2&t&&"string"!=typeof n)for(var e in n)r.d(i,e,(function(t){return n[t]}).bind(null,e));return i},r.n=function(n){var t=n&&n.__esModule?function(){return n.default}:function(){return n};return r.d(t,"a",t),t},r.o=function(n,t){return Object.prototype.hasOwnProperty.call(n,t)},r.p="",r(r.s=0)})([function(n,t,r){"use strict";r.r(t),r.d(t,"_reset",(function(){return fr}));var i="o
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):193
                                                                                                                                                                    Entropy (8bit):5.082014623207426
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C1646ADD16AAF2015A5BE410FB8E98A3
                                                                                                                                                                    SHA1:55D4A671783C34C082D814AAA38717E9F464561E
                                                                                                                                                                    SHA-256:ABC2CEC298CEC6FF85ADBC39A5D22C228AF5C6B1F7B64259C8883754520AB5DE
                                                                                                                                                                    SHA-512:14986EDFEC09DD8F4D890AF816A10C270CF8BE0CC97F94E99C9940C6CD596909053F76DE8ABC31BF09323AC006D07F5FDA888755E4ABD83BAEF463B1FAA11A4B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:{"visitor_recording":0, "visitor_recording_unmask":0,"time_difference":"21600","counter_image":"data:image\/gif;base64,R0lGODlhAQABAJH\/AP\/\/\/wAAAMDAwAAAACH5BAEAAAIALAAAAAABAAEAAAICVAEAOw=="}
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 360 x 360, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):20262
                                                                                                                                                                    Entropy (8bit):7.944762333882866
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E9A3674D48F8E0B7AEA0EFA7DB702C95
                                                                                                                                                                    SHA1:64973BFEFA7F6C2A781454B9803CA055E786E6BD
                                                                                                                                                                    SHA-256:CA96C45E4442A92AE272B68E6C628E998484098161A166D63CEDC338B918D9B2
                                                                                                                                                                    SHA-512:2B3A9A30A56BDCFE7DCCF0126A0F8ABEE838723491A70F6F6188712C5252A082D42897E684EC485B3AD1DE3EAD7E1285098BFC5F44C4F7682AD814ED2182AF0C
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/images/new/zipthis-icon.png
                                                                                                                                                                    Preview:.PNG........IHDR...h...h.....z.a.....pHYs...#...#.x.?v..N.IDATx...w|..].....-.g4.Ziw....u.l.16.s!.8.&.@..Z.....lLL'.....<.......q.s9_.^.r.Z.JZ.:..>..1.....H....-.I3.....)...B..>.V.@.!....x..i.G..... .......0..6......&3_X.rH.Z.!."j.......Mk8...........$.-...........D...O../.....,.-...(......M.....,3....$.C.w~....g..........8........_.g.y.###x........\....[..Z\.....NLL.......fV.X)5........4.om..H$r.lv......':..7.../..}..w/utt0.<.....?.._........F..o..G..,.q.....8...I..(.M/./3....$...E.R1......ww..544.wrr...H.P.8...,.X".?X>Pk..w..h1..`(e$..r...:.s>..Y###.......</ ...y..(.X.rD......n=.>............e.h.p....x....9.....x.3.]........q..i+..7'.......g.~3...o.(..G..K.S{l.J$..y.....Q...C.-.j.p..s..z.._..M".joo.M&....\....ouy......Ev.".?..7...u>f.....?.>JD....S.*..8.sD.nf..b..^.......vwww..y.}Z...T>.o...GL.&&&...N...R.$,..sI..<..}ww......-..........gpp.j.P..:......fD.)....._..!f..k..3...E".U.?...*....e"z.3?..$...T*...D".~..=..;5::.V.q.d2.6.tg
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2016)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):38629
                                                                                                                                                                    Entropy (8bit):5.518522643263269
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:923B70A13A339239F0950B88671B369D
                                                                                                                                                                    SHA1:7C99952BF20DF859FEF5CC104A0DF1EE05EF88D3
                                                                                                                                                                    SHA-256:E6489556C90E6AC7EDAC02E6C285EA9C5CAB92174360930F9333D07D36D0C076
                                                                                                                                                                    SHA-512:83373F756BF972ED033AE34DE5AD078198CA27F303A626F37F50091C74EDC522D9C4013048FC63093F809D9483FCD678A53DFC52049F25810063B3360D416776
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://tpc.googlesyndication.com/pagead/js/r20241120/r20110914/client/one_click_handler_one_afma_fy2021.js
                                                                                                                                                                    Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=this||self;function aa(a,b){a:{var c=["CLOSURE_FLAGS"];for(var d=m,e=0;e<c.length;e++)if(d=d[c[e]],d==null){c=null;break a}c=d}a=c&&c[a];return a!=null?a:b};const ba=(new Date("2024-01-01T00:00:00Z")).getTime(); .function ca(a){a=a.s;const b=encodeURIComponent;let c="";a.platform&&(c+="&uap="+b(a.platform));a.platformVersion&&(c+="&uapv="+b(a.platformVersion));a.uaFullVersion&&(c+="&uafv="+b(a.uaFullVersion));a.architecture&&(c+="&uaa="+b(a.architecture));a.model&&(c+="&uam="+b(a.model));a.bitness&&(c+="&uab="+b(a.bitness));a.fullVersionList&&(c+="&uafvl="+b(a.fullVersionList.map(d=>b(d.brand)+";"+b(d.version)).join("|")));typeof a.wow64!=="undefined"&&(c+="&uaw="+Number(a.wow64));return c} .function q(a,b){return a.g?a.o.slice(0,a.g.index)+b+a.o.slice(a.g.index):a.o+b}function da(a,b=0){let c="&act=1";b===0?c+="&ri=1":b===1?c+="&ri=24":b===2&&(c+="&ri=25");a.l&&a.s&&
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):204941
                                                                                                                                                                    Entropy (8bit):5.47903865358211
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:305E5B063D6DDF7104A83E155B70622E
                                                                                                                                                                    SHA1:E670D8B732C4206A258AC4B7EAEC116A8B1582F1
                                                                                                                                                                    SHA-256:72FDAC54930AAFF876CF5ADE917AF563E62EE80D21EDD7080C25CF401BCA204F
                                                                                                                                                                    SHA-512:429485BDD7F12CE95C9E77090A25809150EF1A1B4E591D372160F9BD461CDE1F3686149F5809C76F5BBD6A982BDC6C364BD58FE28D2E66A37414C508F069B19D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/rul/10807868703?random=1732532721203&cv=11&fst=1732532721203&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=KDA7CK-T2ukZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21203&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&ct_cookie_present=0
                                                                                                                                                                    Preview:<html><head><meta http-equiv="origin-trial" content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0="></head><body><script>var ig_list={"interestGroups":[{"action":0,"expirationTimeInSeconds":15552000,"interestGroupAttributes":{"owner":"https://td.doubleclick.net","name":"4s1254602137.1732532718","biddingLogicUrl":"https://td.doubleclick.net/td/bjs","dailyUpdateUrl":"https://td.doubleclick.net/td/update?ig_name=4s1254602137.1732532718\u0026ig_key=1sNHMxMjU0NjAyMTM3LjE3MzI1MzI3MTg!2saDGn9A!3sAAptDV6mAraL\u0026tag_eid=44803230","trustedBiddingSignalsUrl":"https://td.doubleclick.net/td/bts","trustedBiddingSignalsKeys":["1sJfqjwg!2saDGn9A!3sAAptDV6mAraL","1i44803230"],"userBiddingSignals":[["7004184203","7008205733","7001939024"],null,1732532724381286],"ads":[{"renderUrl":"https://tdsf.doubleclic
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (684), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):684
                                                                                                                                                                    Entropy (8bit):5.129386370605473
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9077A089BD8437E4483223CEB46883F2
                                                                                                                                                                    SHA1:C26032C78B4E50E345BFBD74E07AE1A75FD1C243
                                                                                                                                                                    SHA-256:68E12A98552E1D10D74C35C38A6324B2FFC6E1B552CA386894875EE9B60EA169
                                                                                                                                                                    SHA-512:120B49DD554D78048663C84074E01AE7E279EF04513B8717B625DE67FEDC336851065145AEE038C35A3307F138947A0521799FCC0632F465DC6C08901188745E
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/xbbe/pixel?d=CJaQJxDtnqkBGMWxv6ACMAE&v=APEucNUURDthNazmvO97HnFwXfNp6vf_g_ShXY5CZS10heL_AQn6oQ2SnWxL9Mtl8ioQSeE5l4JE8DeqdfKZU-KEKCMBy_3HXLkxcocQNghSgx77-CGivZY
                                                                                                                                                                    Preview:<html><head></head><body><img src="https://cm.g.doubleclick.net/pixel?google_nid=lkqd_dbm&google_cm&gdpr=0" style="display:none;"/><img src="https://cs.lkqd.net/cs?partnerId=59&redirect=https%3A%2F%2Fcm.g.doubleclick.net%2Fpixel%3Fgoogle_nid%3Dlkqd_dbm%26google_hm%3D%24%24rawlkqduserid%7Cbase64%24%24" style="display:none;"/><img src="https://cm.g.doubleclick.net/pixel?google_nid=casale_media2_dsp_secure&google_cm&google_dbm&gdpr=0" style="display:none;"/><img src="https://dsum-sec.casalemedia.com/rrum?ixi=0&cm_dsp_id=85&gdpr=0&cb=https%3A%2F%2Fcm.g.doubleclick.net%2Fpixel%3Fgoogle_nid%3Dcasale_media2_dsp_secure%26google_cm%26google_hm%3D" style="display:none;"/></body></html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 174, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):8219
                                                                                                                                                                    Entropy (8bit):7.946828447851656
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:AA5021D85199CDBC760B38CF4763BB3B
                                                                                                                                                                    SHA1:19BC00774CC1C365316BE8FA9AE8DF7B4EBA9C40
                                                                                                                                                                    SHA-256:304313B051CD2B6F20BAFC1193C3F74C7AFF9F1321CC4C00B5AD136982040565
                                                                                                                                                                    SHA-512:223B0467B657027D455CF0607AC7CCC17BF55A93C493BA84739C1BA14DD04ADF7CE50A013E3A9059DCAA29FBF9F5999A37AEDF3825EFC43225D6D8F7D15942FD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/monate/2024/kalender-november-2024.png
                                                                                                                                                                    Preview:.PNG........IHDR.............(-......PLTE........................:::33.......]]]............000........."""+++.................... ..................jjj................QQQuuu...............--.AAAUU...........::...>>>EEE}}}$$$rrr.........VVVyyy........'''eee.....................777............GGGNNN.ooo555KKK```.........ZZZ.**............---333......vvv.........IIIlll.....................bbb...........@?............)))YYYddd.........UUU................$$.**.......>>.ggg............,,,===.PP|||qq....66..%%.kk....................``..fe.oo.............CC.RR..`_||..tt..................................LK.......zy..............00.99jj.xx..........--.. GG.KK..--.DD...............u.011..43WW.}}..............[[.ee.tt..XX.................................,,m3G....{.....IDATx...x....1odY.$.P.-.....z.].{....q.7..!..K..... .B... $..$...v..{y...m.fF.5#...vC......3...s.{..@.q*...*.}@E.&...Q.[..m.)...y....r.".R!OP@@!.PY.G.v7\.........G.*...t
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):203
                                                                                                                                                                    Entropy (8bit):4.493720506750604
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:37CC481E53874F7F983A058F77D60321
                                                                                                                                                                    SHA1:FA306B0394528B9A76C2B9E449403DAB90A81236
                                                                                                                                                                    SHA-256:440BB596AFA6BD8FD7DE23E2CEB0000AA8E656F4DE0628E3C05C0E4AE6AC21B6
                                                                                                                                                                    SHA-512:71E8E9B9E255F81C9439FD8A9C358B1104FE080226150C49A7DF07FE1F4F5FA749D172470F0ADB835A57E17C2F5C7F4FEFCDA1A2CC0042462B01EA5DD60BC5B4
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cdn-a.yieldlove.com/v2/opt.json?kalenderpedia.de
                                                                                                                                                                    Preview:[{"id":11489,"cutoff_price":0.01,"bias":{"value":1,"type":"static"}},{"id":7182,"cutoff_price":0.01,"bias":{"value":1,"type":"static"}},{"id":11378,"cutoff_price":0.2,"bias":{"value":1,"type":"static"}}]
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1964)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):292845
                                                                                                                                                                    Entropy (8bit):5.555980086481607
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:4F7D7D5B5F49489721F2C2BADE78FCFD
                                                                                                                                                                    SHA1:E37BD86946E1ED81DEC0F31DD7A1B75BBD3E7D0C
                                                                                                                                                                    SHA-256:3B1D39247297521D165FB6840BABAD7F5B2B49528BED01877B5C2C350C4806A6
                                                                                                                                                                    SHA-512:D8AF3F4CF63CB84671786A61410F977910F1DA2AB10CB4E5C3DD84D98D6055B9BE770AF9D25637B65720CE3E3CBD361BE905655A112630B980F9435DC13C03DE
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var g,ba=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ca=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ja=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");.},la=ja(this),ma=function(a,b){if(b)a:{var c=la;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ca(c,a,{configurable:!0,writable:!0,value:b})}};.ma("Symbol",function(a){if(a)return a;var b=function(f,h){this.Yq=f;ca(this,"description",{configurable:!0,writable:!0,value:h})};b.prototype.toString=function(){return this.Yq};var c="jscomp_symbol_"+(Math.random()*1E9>>>0)+"_",d=0,e=functi
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1055)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):2690
                                                                                                                                                                    Entropy (8bit):5.398083497267717
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:2669D16AAE166D157B8434762A199620
                                                                                                                                                                    SHA1:CA7E08D45D0D469ED57825C28CB214F421311F97
                                                                                                                                                                    SHA-256:944A37F694B55DE268A0BF52DBAE4E12F12C4AE09EE5C8D213BA05075C2865DD
                                                                                                                                                                    SHA-512:51CCCC87145F0B0098B81BEA1506C726BB249E65F3B5FCC853F1FC4D4E55716F1F9318E43A2A0B31DFC4C968C14EBAF1EEFB9331C6DCE1B561459883DA7E9432
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://tpc.googlesyndication.com/pagead/js/r20241120/r20110914/client/window_focus_fy2021.js
                                                                                                                                                                    Preview:(function(){'use strict';function f(a,b,e){a.addEventListener&&a.addEventListener(b,e,!1)};/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .function g(a,b,e){if(Array.isArray(b))for(let c=0;c<b.length;c++)g(a,String(b[c]),e);else b!=null&&e.push(a+(b===""?"":"="+encodeURIComponent(String(b))))};function l(a=document){return a.createElement("img")};function m(a,b,e=null,c=!1){n(a,b,e,c)}function n(a,b,e,c){a.google_image_requests||(a.google_image_requests=[]);const d=l(a.document);if(e||c){const k=h=>{e&&e(h);if(c){h=a.google_image_requests;const v=Array.prototype.indexOf.call(h,d,void 0);v>=0&&Array.prototype.splice.call(h,v,1)}d.removeEventListener&&d.removeEventListener("load",k,!1);d.removeEventListener&&d.removeEventListener("error",k,!1)};f(d,"load",k);f(d,"error",k)}d.src=b;a.google_image_requests.push(d)};function p(a=null){return a&&a.getAttribute("data-jc")==="22"?a:document.querySelector('[data-jc="22"]')};var q=document,r=window;functi
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2005)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):109694
                                                                                                                                                                    Entropy (8bit):5.534641105030722
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:207312B0195BA00923D915C0AEFB4E1C
                                                                                                                                                                    SHA1:0413CB45CAA46581A1316C80BF98B4B5267BFE0F
                                                                                                                                                                    SHA-256:6C35480989C6C93F20E96BD236B3E7882CE0C0EE049A49F454223A3DD3680E93
                                                                                                                                                                    SHA-512:0D3F444DBE12D479F073CDA4CA99F17EF44849E42785F937146606CE5925CB3B3F8B3F1E56369F77EFE4FDA2A500643CF32E4796C2DD711B1DBA699279948BF8
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(stc){var m,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ba=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object"); .},da=ca(this),p=function(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ba(c,a,{configurable:!0,writable:!0,value:b})}}; .p("Symbol",function(a){if(a)return a;var b=function(f,g){this.ic=f;ba(this,"description",{configurable:!0,writable:!0,value:g})};b.prototype.toString=function(){return this.ic};var c="jscomp_symbol_"+(Math.random()*1E9>>>0)+"_",d=0,e=fun
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ISO-8859 text, with very long lines (13842)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):159756
                                                                                                                                                                    Entropy (8bit):5.227518858555774
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:4A95C6C66766B10029F91193C5819F25
                                                                                                                                                                    SHA1:39B69D6D4570E01D1820AE2A6EF23F59F4B6F7F5
                                                                                                                                                                    SHA-256:AB01954D5150C953608E0029FC847EC1CB171442AFCCA5801E5BA8B82A5D6F6F
                                                                                                                                                                    SHA-512:E225C99CC641425CC2ECA2BF860F293289A0DD39CE829C5FE33B7888F9D6EE6CA55DC54D4085CA722032A6D94B244EF81EC2E8724C6CFD83F7A474EA1DA3B4ED
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/
                                                                                                                                                                    Preview:......<!DOCTYPE html>.<html lang="de-DE">.<head>.<meta http-equiv="content-type" content="text/html; charset=iso-8859-1">...<script async src="https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-6119214979619050". crossorigin="anonymous"></script>..<title>Kalenderpedia - Informationen zum Kalender</title>.<meta name="viewport" content="width=device-width, initial-scale=1">.<meta name="description" content="Alles zum Thema Kalender - Jahreskalender, Monatskalender, Vorlagen in Excel/PDF/Word zum Download und Ausdrucken, Ferien, Feiertage, KW uvm...">.<meta name="robots" content="all, index, follow"><meta http-equiv="content-language" content="de-DE">.<meta name="msvalidate.01" content="1A7D5F20C3FC5FE5D9934BFA97CC618C">.<link rel="canonical" href="https://www.kalenderpedia.de/">.<style>a.bold,body,h1,h2{margin:0}h1.standalone,h2{border-radius:5px}.paragraph-background,h1,h2{background-color:#ffefd5}.paragraph-header,.shadow,h1.standalone{box-shadow:2px 2px 5
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (4139)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):181927
                                                                                                                                                                    Entropy (8bit):5.5029627899348
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:761012EEAD47639F4B0E9796531F3DB0
                                                                                                                                                                    SHA1:4130F0F1B0FB0C096B51FF8F510483621C7D6788
                                                                                                                                                                    SHA-256:02B087BBC4852C894EA96C5AAE33E28E6EB01840E6A115626AA03E671CE4577F
                                                                                                                                                                    SHA-512:F21BF7B4E0C9A8971DFD2E68D35F0F9E182C7591DF4F373494F39E83E90C52FB5BE2F5C3FD5942D563EA262F1EA511DD79ECDF119474C38736F4D5E1F0B18FF2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202411140101/reactive_library_fy2021.js
                                                                                                                                                                    Preview:(function(sttc){'use strict';var r,aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ca=ba(this),da=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",fa={},ha={};function ia(a,b,c){if(!c||a!=null){c=ha[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}} .function ja(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in fa?f=fa:f=ca;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))break a;f=f[g]}d=d[d.length-1];c=da&&c==="es6"?f[d]:null;b=b(c);b!=null&&(a?aa(fa,d,{configurable:!0,writable:!0,value:b}):b!==c&&(ha[d]===void 0&&(a=Math.random()*1E9>>>0,ha[d]=da?ca.Symbol(d):"$jscp$"+a+"$"+d),aa(f,ha[d],{configurable:!0,writable:!0,value:b})))}}ja("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")},"es_next
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, Unicode text, UTF-8 text, with very long lines (315)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):9966
                                                                                                                                                                    Entropy (8bit):4.323472046248018
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9073F52D47F038FB4DE27E8D1DB38E52
                                                                                                                                                                    SHA1:C6138DF1FEB139DB4610A207B52B6FE238CFA651
                                                                                                                                                                    SHA-256:DA481DBF6AF523FAC43A6E9DFE5E646E3493B7FAEA51B4AD1DB2823134B1C263
                                                                                                                                                                    SHA-512:2EAA818CD2FA449337536FB4D27DC19D194764A6C557B1923ABE90A563ED10B390B69041B7BBB18427427E4CDB14DEFD73581F864AF68F63DC9616FB2208E2F9
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/?campaign_id=21618891755&adgroup_id=167980995562&placement_id=www.kalenderpedia.de&creative_id=722419053047&utm_source=google_b2c&gad_source=5&gclid=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html lang="en">..<head>. <meta charset="UTF-8">. <title>Download ZipThis Free and Open Zip Files on Windows 11/10</title>. <link href="https://fonts.googleapis.com/css2?family=Roboto:wght@200;700&Abel&family=Bitter:wght@400;700&display=swap" rel="stylesheet">. <link rel="icon" href="assets/images/favicon.ico" type="image/x-icon">. <link rel="stylesheet" href="./assets/css/styles.css">. <script>(function (w, d, s, l, i) {. w[l] = w[l] || []; w[l].push({. 'gtm.start':. new Date().getTime(), event: 'gtm.js'. }); var f = d.getElementsByTagName(s)[0],. j = d.createElement(s), dl = l != 'dataLayer' ? '&l=' + l : ''; j.async = true; j.src =. 'https://www.googletagmanager.com/gtm.js?id=' + i + dl; f.parentNode.insertBefore(j, f);. })(window, document, 'script', 'dataLayer', 'GTM-WDH55T65');</script>.</head>.<body>. <header>. <nav class="navbar">. <div class="container">.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:C++ source, ASCII text, with very long lines (2842)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):145200
                                                                                                                                                                    Entropy (8bit):5.587474674729399
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:CF51F4BABE9072A6072A3FD2BD02ED09
                                                                                                                                                                    SHA1:473326636E0E93B10A2426001C5A5FD54BC4F131
                                                                                                                                                                    SHA-256:AA258E3205EAB80F0FCCB8DB762E7D8C1B3EFEE244669735F16E13C5AFC71370
                                                                                                                                                                    SHA-512:2072EE7AE7919EDFA4E12C47DA6E45E9711DF206183DEA5F924A95CED316FA746B36DDF32DA4E93AE6F84C3C5A7704E53867EBFF60710F6D72DB8014E3248329
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){'use strict';var p,aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ca=ba(this);.function da(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&aa(c,a,{configurable:!0,writable:!0,value:b})}}da("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")});da("globalThis",function(a){return a||ca});.da("String.prototype.replaceAll",function(a){return a?a:function(b,c){if(b instanceof RegExp&&!b.global)throw new TypeError("String.prototype.replaceAll called with a non-global RegExp argument.");return b instanceof RegExp?this.replace(b,c):this.replace(new RegExp(String(b).replace(/([-()\[\]{}+?*.$\^|,:#<!\\])/g,"\\$1").replace(/\x08/g,"
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 454 x 154, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):16458
                                                                                                                                                                    Entropy (8bit):7.9602928864953935
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:948AD25D057E22B1E42D288FE9BB67F4
                                                                                                                                                                    SHA1:057A8AE19B15DA940AC8D5A5804AA7888E090CA6
                                                                                                                                                                    SHA-256:08DED2C6EB424D1E6D54D0E04D22561DB85A24B7DBE078E09BCA9A218F2033AE
                                                                                                                                                                    SHA-512:58328706B98088861784D48F7F91642435E7282F622E464D35EBEFFD9D0BE0395C5916A9BA16727E1BD39D8B0A273E71A891C551BC9C58B14B614081121F1B94
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.zipthisapp.com/assets/images/new/download_file.png
                                                                                                                                                                    Preview:.PNG........IHDR.............3Y......pHYs...............?.IDATx..i.%.y..{...9....7..Mr....7I.-..l).....e..K.2.L8..`... ....8...,[..d..S.dk. .%..(q....w...SU......ro.........../._..KKK...2.>..D"...""...#;1.....j...G.T.wDd_..4...U....D"..k...i..w.@........Vb....:$.z....g..X<n..z...a....%.D.~..hs...rUw1.H...T..2.f..........e.....Q....Ou..W...c...-.bu..`q.H.8......4A.E$\.U....Q.7.V.`.2k.......aF.Xl.f..:f1...X... .#...s..D.F.1L..z..X .]..;T...1C...G..Y@..t..Bu....U.C.x.k#.Q...4.V.*.E}..x..:.....Q..`....n*<F..z.......R,.*"....t0...Ca...$8.....)%..H$.;I}.,.8......J....b..Q....]..||.2...U...{...l().......HB.9...TQ....R.A...%......I..a..L....PcH4.Y.-.E..v.7.$....|~qa.o..v.v.&:.FU.V....D.....C...b.ck.\....A....w .VU.ed.......`...U.U.J"..b...T..`QrQ.).w.+)U.R1.(...UQJ.4$.xT..1$.R...K=Up.lu.[*.f\...w.E..N.E`,.Xs.X@$...h2!......{A.D..j.,G\%...#.....[.U.q!SFA......7.....#9.E.....t..P.:<!.'.X.R".)`.(.[......H.O.!.F)1&..;..h1F".."../U.....3S....].....d.n.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 10 x 10, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):1018
                                                                                                                                                                    Entropy (8bit):6.094138866101745
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:2DF778BF2E22D52FE849BABB330EC977
                                                                                                                                                                    SHA1:0F833F030BB43F282473BDDD3A33B5F8CBA7A845
                                                                                                                                                                    SHA-256:329D1A750114920332EADC55C129957D9DBE5A1B25745E2F7E0ED4FAD75E04CD
                                                                                                                                                                    SHA-512:9CB103E634A832271D2FE840A5AF3107CDB2E92290810B65692A805C29DCDC11C86B773CBF38F0F0E202EC9D0E76C125EA93F96B63521571F57C03568E7F747B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.google.com/cse/static/css/v2/clear.png
                                                                                                                                                                    Preview:.PNG........IHDR..............2.....tEXtSoftware.Adobe ImageReadyq.e<..."iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS5 Macintosh" xmpMM:InstanceID="xmp.iid:29EC528B41B211E1979DCD8193D1E756" xmpMM:DocumentID="xmp.did:29EC528C41B211E1979DCD8193D1E756"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:29EC528941B211E1979DCD8193D1E756" stRef:documentID="xmp.did:29EC528A41B211E1979DCD8193D1E756"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.VA....nIDATx.bLKKK```..b.Y.f]`@.@9. ........@.P.tE .~F4.. ..jQ......U.W.r.#......8L.D..&.3L.. .Pw9B..A.RX..p.@S\..`...
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 225 x 225, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):3717
                                                                                                                                                                    Entropy (8bit):7.78062864040803
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:5EE0DFFD132F54D69BDE83C9C0873F80
                                                                                                                                                                    SHA1:8EFDF27CABFE2109F5D6E22FD614F3765E18210D
                                                                                                                                                                    SHA-256:F567BE2E255EC422CB82866998A8CEC8BAE582A55548DFE0B94685CFD6508EDA
                                                                                                                                                                    SHA-512:02DFB2659CE3FBEA4339A317BF4F046A040124EEBD2C41B7C76D0BC6FD6CCBA1FA783D971D91A8CA42DDCF365686DCE5F065E33B06EAA861435E21FD1242E617
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.PNG........IHDR.............>..z....pHYs................7IDATx..._L[.....?P{.4.@...+..$.....Da..Ej.i.i.i.I.4.a.T.&m...m....m..I..M]....1....].....L.._..a..q......~?.U..._|.r....^.....+u..f....C...!....B.b.!.1....B.@.!. ....C...!....B.b.!.1....B.@.!. ....C...!....B.b.!.1....B.@.!. ....C...!....B.b.!.1....B.@.!. ....C...!....B.b.!.1....B.@.!. ....C........b1o2...lk..k...9N]..g.S...b....O>......v.z ..}[[.O....J..........s..2.........../z..P9..c..P..P.zq..c...1.Z[[.'N......J9j.ca&.......7w.\.LX<+....466v...a&...../.v;SU.......cUU.s...~.,E.a0....b^..3.g.T*ekhh.....3!....N.c,--....h ....t..1VWW[E..4.Bb..z.c......h .U.b.lQ...C......(.B.@.!. ....C...!.....C..V.5#.......C...!....B.b.!.1....B.@.!. ....C...!....B.b.!.1....BH.j.n...W[.l.!.1....B.@.!. ....C...!....B.b.!.1....B.@.!. ....C...!..pW&@...!....B.b.!.1;u.2I$.M.Db`yy......v.-.J.;..........k,........_.\__.DU.\&.y.....^.7D]_...c....:::..w..f...........i...H$..fff.>....3..LNLL.~>... .........#.....^...
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3835)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):237797
                                                                                                                                                                    Entropy (8bit):5.561957696681273
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B4D3D1C1BE331F0FE932076648DD92A1
                                                                                                                                                                    SHA1:928E0C8F45D4420C6645C77E96612C32E5B4F461
                                                                                                                                                                    SHA-256:EAE7E222A7D0CF3679556BA88C560B7F6BA90E5FA161D9FE9570DC6064A0979D
                                                                                                                                                                    SHA-512:8D133A79641CB972E515252E076E46CE99871CDA73E783E7F99D27D821B506F193DD2DF50BC89ECE1C0907A3C5DAF3250B158F7F5DF0064695A0304267F156E1
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__e"}],. "tags":[{"function":"__rep","vtp_containerId":"DC-14918961","vtp_remoteConfig":["map"],"tag_id":6},{"function":"__ogt_dma","priority":0,"vtp_delegationMode":"OFF","vtp_dmaDefault":"DENIED","tag_id":9},{"function":"__ogt_cps","priority":0,"vtp_cpsMode":"ALL","tag_id":11},{"function":"__ogt_1p_data_v2","priority":0,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCod
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (23109)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):464949
                                                                                                                                                                    Entropy (8bit):5.430047395040537
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:32F43BB1762E26A619B293B970E1976B
                                                                                                                                                                    SHA1:6D68263A5F68AF49A312F1337039D2B6524E707E
                                                                                                                                                                    SHA-256:3BDF59B4E4CEABD14C94D9479F4DD2AE5B71F5141FB927A5EB4C0D5C954AD77E
                                                                                                                                                                    SHA-512:4D436122B26DDC2A762FBA3D12B86364B81D0D78FEA9EB37AE57EAA5ACB7C74175F3E54E7E9F28A2AAC930DB28D82C4D83BF53C0CFE8CC16AFD66D38965014D1
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cdn-a.yieldlove.com/v2/yieldlove.js?kalenderpedia.de
                                                                                                                                                                    Preview:// prebid.v2.kalenderpedia.de-any-any.window.YLHH = window.YLHH || {}; window.YLHH.startTime = Date.now();.window.yieldlove_site_settings = {"ad_layouts":{"kalenderpedia.de":{"breakpoints":{},"load_urls":[],"load_scripts":[],"load_styles":[]}},"units":[{"id":11489,"autotag_lazyload":true,"countries":[],"devices":[],"min_price":0,"urls":[],"codes":["/53015287/kalenderpedia.de_d_336x280_3","/53015287,21856740239/kalenderpedia.de_d_336x280_3"],"sizes":["336x280","300x250"],"bids":[{"params":{"placementId":15199716},"bidder":"appnexus"},{"params":{"siteID":"354155","id":"3"},"bidder":"indexExchange"},{"params":{"pmzoneid":"kalenderpedia.de","publisherId":"73726","adSlot":"kalenderpedia.de_d_336x280_3_hb"},"bidder":"pubmatic"},{"params":{"zoneId":"851036","siteId":"129882","accountId":11438},"bidder":"rubicon"},{"params":{"siteId":216539,"networkId":2416,"formatId":57277,"pageId":909941,"domain":"https://prg.smartadserver.com"},"bidder":"smartadserver"},{"params":{"ssat":2,"sid":"94e77445-b
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7745), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):7745
                                                                                                                                                                    Entropy (8bit):6.148280885825301
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:6E4F03678EC89F70E8513E058AB63D47
                                                                                                                                                                    SHA1:984E99A3786C648CDE9627F426EE8EF5C1490E6A
                                                                                                                                                                    SHA-256:38E3D9A2C2D465A0D6D2AEEE83A4966F331D9DE3B06C9B0F213F9F4C0666818C
                                                                                                                                                                    SHA-512:42702350DDCC2C5A364F234B879B7474D158E58AB7C5C79524FA893C8CC602E8D60772CEB118B620E38A86E43F22A6AA1B91C14A5674C8FD4230E50D17DC43CD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googleadservices.com/pagead/conversion/10807868703/?random=1732532721207&cv=11&fst=1732532721207&bg=ffffff&guid=ON&async=1&gtm=45be4bk0v9177421235z89175374541za201zb9175374541&gcs=G111&gcd=13t3t3t3t5l1&dma=0&tag_exp=101925629~102067555~102067808~102077855~102081485&u_w=1280&u_h=1024&url=https%3A%2F%2Fwww.zipthisapp.com%2F%3Fcampaign_id%3D21618891755%26adgroup_id%3D167980995562%26placement_id%3Dwww.kalenderpedia.de%26creative_id%3D722419053047%26utm_source%3Dgoogle_b2c%26gad_source%3D5%26gclid%3DEAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&gclaw_src=0_1&label=cJnMCI2mwIwZEJ_6y6Eo&hn=www.googleadservices.com&frm=0&tiba=Download%20ZipThis%20Free%20and%20Open%20Zip%20Files%20on%20Windows%2011%2F10&value=0&bttype=purchase&npa=0&gclgs=5&gclst=21207&gcllp=76773662&gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE&pscdl=noapi&auid=1254602137.1732532718&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&capi=1&data=ads_data_redaction%3Dfalse&rfmt=3&fmt=4
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (16769)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):399501
                                                                                                                                                                    Entropy (8bit):5.653097668759946
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B32833EA5E282A9F0CFE6EC34B7D3629
                                                                                                                                                                    SHA1:3BBAC04CC83D86A23EDFB3DD563CCFF839F94A61
                                                                                                                                                                    SHA-256:F114BBEDBDA11E1377CD948959C8006267B7EEB59FF83AD3526005215C5E79D9
                                                                                                                                                                    SHA-512:85A47C75234A725D721D5B3B4BE5633ED1655B50313E05A523D3BA050118F0369E6F86563A5B0B13C114E740D918101958C9063903C7D8827B29D1AC7B1AB541
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_1p_data_v2","priority":14,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetValue":"","vtp_lastNameType":"CSS_SELECTOR","vtp_autoAddressEnabled":false,"vtp_regionValue":"","vtp_countryValue":"",
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (27274)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):104696
                                                                                                                                                                    Entropy (8bit):5.4883495169700245
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:74DE2BB829B49BCDAB3EF8AD1E72B9C9
                                                                                                                                                                    SHA1:0AACD56439F13E80385F4257DDFCC086A080245A
                                                                                                                                                                    SHA-256:9A16093EF3CAFFE6098B2322D323C20737B68A94422A67FF45AEBCF7F916B4FC
                                                                                                                                                                    SHA-512:F0EFAC9711490F16BCBF8351CF5820C80B806F1961CE2DA2A0AE3720B7B15DD338B8D2878282A0C5BA492481BFE4CCB2DF8A6CD330A0BD4C886BBD90C025861F
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://securepubads.g.doubleclick.net/static/topics/topics_frame.html
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html>. <head>. <meta charset="UTF-8" />. <title>Topics Frame</title>. <meta. http-equiv="origin-trial". content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0=". />. <script>. ./*.. Copyright 2022 Google LLC. SPDX-License-Identifier: Apache-2.0.*/.var m,aa,ba=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ca=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},da=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JSON data
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):1590
                                                                                                                                                                    Entropy (8bit):4.5513158934509415
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8F61BA1D33319663231DDF1DB9976600
                                                                                                                                                                    SHA1:66DFF3734019DEC51D21C53B3619F31649DF099B
                                                                                                                                                                    SHA-256:ED65CC1654A260D8B5A634C908EC1AEF786326EE0F812ECB4E082B6572628FCD
                                                                                                                                                                    SHA-512:4E03E0792471B95A8589CF43B718890790F3EA506EE7E9F0BBF8F5E096E7798618487DF88A11083C018E54FE5BEA5FE02A976A72D3EE217BDE77898E41FCBA9B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:{"dataAsOf":"2024-11-22T00:00:00.000Z","generatedAt":"2024-11-24T16:00:35.047Z","conversions":{"USD":{"USD":1,"JPY":154.47560507107187,"BGN":1.878409527468306,"CZK":24.354590856703805,"DKK":7.16260084517864,"GBP":0.7991260084517864,"HUF":394.8616980407223,"PLN":4.1656742220514795,"RON":4.7797733384556285,"SEK":11.09585094122167,"CHF":0.8905109489051096,"ISK":139.9346907414522,"NOK":11.1102573953131,"TRY":34.55023050326547,"AUD":1.5384172109104879,"BRL":5.8089704187476,"CAD":1.3984825201690358,"CNY":7.24721475220899,"HKD":7.784479446792163,"IDR":15913.945447560507,"ILS":3.7184978870534002,"INR":84.44967345370728,"KRW":1406.482904341145,"MXN":20.432385708797543,"MYR":4.467537456780638,"NZD":1.711870918171341,"PHP":58.93968497887054,"SGD":1.347867844794468,"THB":34.544756050710724,"ZAR":18.050518632347295,"EUR":0.9604302727621975},"GBP":{"USD":1.251367105342227,"JPY":193.30569076377623,"BGN":2.3505798930352744,"CZK":30.47653386214771,"DKK":8.963043086352984,"GBP":1,"HUF":494.1169400877351
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):6043
                                                                                                                                                                    Entropy (8bit):5.41541422438597
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7D1B1435B2D2C87107E7B07ED13B094F
                                                                                                                                                                    SHA1:13DE0FDA86DA51DE302784E044E145119DC47F18
                                                                                                                                                                    SHA-256:BF91BB63F15DE84E8EAC9E543990B783FAFCEE23D7D12D0FB82C7D09F69DFE8F
                                                                                                                                                                    SHA-512:EC74090904F6236DBF7E5E6DAD9C3B00659273F54AA1ED59EE96CF163874B6EAF30A7B77109E468B05FBDE649051C4CD8081AD30AE17A30D4C4F3EF619655FE5
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://fonts.googleapis.com/css2?family=Roboto:wght@200;700&Abel&family=Bitter:wght@400;700&display=swap
                                                                                                                                                                    Preview:/* cyrillic-ext */.@font-face {. font-family: 'Bitter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/bitter/v36/rax8HiqOu8IVPmn7coxpPDk.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C8A, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Bitter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/bitter/v36/rax8HiqOu8IVPmn7e4xpPDk.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* vietnamese */.@font-face {. font-family: 'Bitter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/bitter/v36/rax8HiqOu8IVPmn7cIxpPDk.woff2) format('woff2');. unicode-range: U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;.}./* latin-e
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (59765)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):60044
                                                                                                                                                                    Entropy (8bit):5.145139926823033
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:02D223393E00C273EFDCB1ADE8F4F8B1
                                                                                                                                                                    SHA1:0CC93B8421D89C24A889642428B363CB831DE78A
                                                                                                                                                                    SHA-256:79C599DD760CEC0C1621A1AF49D9A2A49DA5D45E1B37D4575BACE0A5E0226582
                                                                                                                                                                    SHA-512:339296DF3B6E2080A65488634AA5DED35A15D9BA5EDB8F203B1AA695C62B13302FC2CECFC37CFA04AD2219BAF0BDDAD4414862DDE5E0B71A7923C3C3A3D61F8D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:/*!. * Bootstrap v4.5.2 (https://getbootstrap.com/). * Copyright 2011-2020 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?e(exports,require("jquery"),require("popper.js")):"function"==typeof define&&define.amd?define(["exports","jquery","popper.js"],e):e((t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap={},t.jQuery,t.Popper)}(this,(function(t,e,n){"use strict";function i(t,e){for(var n=0;n<e.length;n++){var i=e[n];i.enumerable=i.enumerable||!1,i.configurable=!0,"value"in i&&(i.writable=!0),Object.defineProperty(t,i.key,i)}}function o(t,e,n){return e&&i(t.prototype,e),n&&i(t,n),t}function s(){return(s=Object.assign||function(t){for(var e=1;e<arguments.length;e++){var n=arguments[e];for(var i in n)Object.prototype.hasOwnProperty.call(n,i)&&(t[i]=n[i])}return t}).apply(this,arguments)}e=e&&Objec
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):34
                                                                                                                                                                    Entropy (8bit):3.5251270918749356
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B205296F7C49C67BAF5B78E8163061A7
                                                                                                                                                                    SHA1:828DED5C881601F44CE02CCB9E8B98D214B5E9AA
                                                                                                                                                                    SHA-256:281A6CECFF9B473286243BDC58329C1D8141B979E8985EA968D7D975F3A50E05
                                                                                                                                                                    SHA-512:ABBB243E84448F153F337C61919C36F68F2503F14F7301A903ED76B5A321C60C09C5E5D1174E77EBE3199A1F7A900A0668555B729F008547DD26A00937FF7B5B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:partner parameter must not be null
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1223)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):19485
                                                                                                                                                                    Entropy (8bit):5.498123677217319
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:ACFAAF3B7DA03D515C434409A8CEDFE3
                                                                                                                                                                    SHA1:4E2FE4950FCED5DF7A649497A093614E0A7D778F
                                                                                                                                                                    SHA-256:A192CC8B869A545B6910C7CB5C96612499A856C49585A67D1629CEC7EBB83DA0
                                                                                                                                                                    SHA-512:8F6D029D18C0AEFECC9F864A9DAA33E19D6F7B73E9CE6D4FABEEB7DABACE55764A7DE6771604B2E2CF59BCC5E3E12D076D508D9773EA14E6E1B2188F25184AE0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/static/service_worker/4bj0/sw.js?origin=https%3A%2F%2Fwww.zipthisapp.com
                                                                                                                                                                    Preview:'use strict';var aa=function(a){function c(d){return a.next(d)}function b(d){return a.throw(d)}return new Promise(function(d,e){function f(g){g.done?d(g.value):Promise.resolve(g.value).then(c,b).then(f,e)}f(a.next())})},h=function(a){return aa(a())};/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self;var r,u;a:{for(var ba=["CLOSURE_FLAGS"],z=n,A=0;A<ba.length;A++)if(z=z[ba[A]],z==null){u=null;break a}u=z}var ca=u&&u[610401301];r=ca!=null?ca:!1;var D;const da=n.navigator;D=da?da.userAgentData||null:null;function F(a){return r?D?D.brands.some(({brand:c})=>c&&c.indexOf(a)!=-1):!1:!1}function G(a){var c;a:{const b=n.navigator;if(b){const d=b.userAgent;if(d){c=d;break a}}c=""}return c.indexOf(a)!=-1};function H(){return r?!!D&&D.brands.length>0:!1}function I(){return H()?F("Chromium"):(G("Chrome")||G("CriOS"))&&!(H()?0:G("Edge"))||G("Silk")};!G("Android")||I();I();G("Safari")&&(I()||(H()?0:G("Coast"))||(H()?0:G("Opera"))||(H()?0:G("Edge"))||(
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 181, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):15617
                                                                                                                                                                    Entropy (8bit):7.968874865310892
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:900998B7421143C0B67B6AD92D4CDEEE
                                                                                                                                                                    SHA1:A8EB11D71E16BD0F3D0E902A3ADB8730BC5369A6
                                                                                                                                                                    SHA-256:FCB7F5F8655BCA259E3CEAE696C0860863EBC2F0384C3D295052F91D5F806BFC
                                                                                                                                                                    SHA-512:BF87B67EF2F99BA88D45A52A992FD6480FC1E052562649FF9EF442877C4765E084CE2EBCADD6D64673655A589D03C61E7237BEB29036359D83E516953C4095CD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/bundeslaender/2025/kalender-2025-baden-wuerttemberg-querformat-jahresuebersicht.png
                                                                                                                                                                    Preview:.PNG........IHDR.............A<......PLTE.....................u..................................................................................|..................................................................................~xxx............sss.............................................~^.......#.........wY............................___.........|||.......ppp......h............||c..T.....eee.y.....mmm...lQ..y........yaH................ceQ<.pT.........q[D..jZZZ.v..........t......rr[...iii.........""".....887.eL.....m..M...EEE.......o..k.--...}}...y......p..TTT..p........(..MMM.......iNggR........i..s.................oo.cc...YG5.~`.}|.....``M...HD6TTCxx........v..=..d....Y..].RQ.....C...ss...&.....ii...O..UU....pl..E..y......Z>(...9.IDATx...X...1...?........ .n..c.....@.........."..DD...A..8Ut.U..3:.c..qk....:.....3.....=}z.y....EI....3+........_....w..e.b..)...$+..N.[38(7...'..:..........~>......N.d5
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2247)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):444204
                                                                                                                                                                    Entropy (8bit):5.579596899201603
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:AD27E562629F18931129E16C7053BF9D
                                                                                                                                                                    SHA1:94AC9CE29E102B0B2DC9C03256B90679FA90DDD9
                                                                                                                                                                    SHA-256:037107D3308C52C6CF446467999C91B8307B71CFB872A431B5041C925650173D
                                                                                                                                                                    SHA-512:B8DDEDDF303C5E949EB0C558D45B2FC2A8F4E21A859C3DCC1842A8F6FEE8B2254005ABD2A2DF1604DC0A8B8ABA508D0FFA9711340675D2CD7A6E1C121C91A092
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202411140101/show_ads_impl_fy2021.js
                                                                                                                                                                    Preview:(function(sttc){'use strict';var q,aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ca=ba(this),da=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",ea={},fa={};function ha(a,b,c){if(!c||a!=null){c=fa[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}} .function ia(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in ea?f=ea:f=ca;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))break a;f=f[g]}d=d[d.length-1];c=da&&c==="es6"?f[d]:null;b=b(c);b!=null&&(a?aa(ea,d,{configurable:!0,writable:!0,value:b}):b!==c&&(fa[d]===void 0&&(a=Math.random()*1E9>>>0,fa[d]=da?ca.Symbol(d):"$jscp$"+a+"$"+d),aa(f,fa[d],{configurable:!0,writable:!0,value:b})))}}var ka=Object.create,la; .if(da&&typeof Object.setPrototypeOf=="function")la=
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:Web Open Font Format (Version 2), TrueType, length 36848, version 1.0
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):36848
                                                                                                                                                                    Entropy (8bit):7.995112872818791
                                                                                                                                                                    Encrypted:true
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:3CCD9AB2050B2F26898B77AF9148B8E2
                                                                                                                                                                    SHA1:7F9F46B2FB3F121F3C0600E1182D725B1BE6C176
                                                                                                                                                                    SHA-256:258F9F1B553BB57419619F41D3B1445226C7BC63D2A3409EFEF4A68426709E94
                                                                                                                                                                    SHA-512:6F9F764D77A563A132E952BD49790F22AA80A88F885BB9AA82F1C25BBC9FBA1451F3E4FADD1EABDF86DC77F7FCDC13C5B183AEE617077F3061E04D54E7246AFE
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://fonts.gstatic.com/s/dmsans/v15/rP2Yp2ywxg089UriI5-g4vlH9VoD8Cmcqbu0-K4.woff2
                                                                                                                                                                    Preview:wOF2..............*....~.................................J?HVAR.".`?STAT.\'2.../l.....,.A....0..4.6.$..8. .....8..[..Q#.....m..A......N.2Y......6.....e..iIe.m.KZ......=...,.....-+..6"..s.j..23.+.Y.vY....YX'.w^N..@...-mu....!...9.i....DS.=....>.a.t.Q,\t..G.2!.....[../S........D..A&.8...!.A.7K+2Q.c....D..._..i....*..J(f=7...C.[..n6.B....B.t.z4C.T+...b...!.B..x..*r>D....q.C......9.Z....?....{./.......D#..N..O]+..5.5.......{".l.XD...,."a.l0bD..FcD].W..^.qzQ.^.uMA...>h.0.K=.4..h.....T..mG.+.........n+_DG..I.GT..B..igd.X.!u.n&U.;.C.~S.........d....h..{.... .. ..KL...!N.$..5.a.SN......6.=}j.HJ:J.pG.n.~b.AOS..'.T....G.........E.]..O\...|.p/...l..-.i4?....J*0..y.........N.O....3.4&ql...t.T.......I..q..$..........i.n..m..O...v....P.m!...........K...M....r.6Q......:E..$.D>.it...h..>B...R..~.NmF.....x{1`.c..[brR..T....%..\.wz.^..V...?..YG^...eok....b.uu.V.ZqP`.04,.^..L.K.l....i......%Vj..'.0...o..g.....w7z..i`8R.Cj........V.HV.;..w.Qg......pY...b.3$
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 100 x 60, 1-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):100
                                                                                                                                                                    Entropy (8bit):4.999095237993141
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:B2C2B7B6E53744612B62A7181159EFC6
                                                                                                                                                                    SHA1:AE1BB91AE7F79EF864392895D6A9A79D7F4B9329
                                                                                                                                                                    SHA-256:C389452F63391D55F0BBE2540CD660CFB07F2036E514CE1F768675077E2D70E1
                                                                                                                                                                    SHA-512:564FDD4E92DAB9025C5E07D3B6283C37BCD0A08E3A65D1743C64A7BC59B357D5A63DD7C5E1443D39484E73707D248675D8C699F23CB68292D412137C806A4C5E
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/flaggen/flagge-bw-100x60.png
                                                                                                                                                                    Preview:.PNG........IHDR...d...<...........PLTE........B.....IDATx.c...~0...#..p...#.....f.......IEND.B`.
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7649), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):7649
                                                                                                                                                                    Entropy (8bit):6.143561659227373
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:7B4AC2643150270581C9902DD759A941
                                                                                                                                                                    SHA1:D6DE5A345B9C52D50730C4476A5F59A2028C02DF
                                                                                                                                                                    SHA-256:7A32FCBC693355CA997F995676679ECE9BB3C7770CCD3705619ED6CC594A9416
                                                                                                                                                                    SHA-512:9632FF4349A03AC99392C25143F0A3EA48A7D1F083F81D6A63ED9F3C4C80CD2351AE49AC31B60A765F4BA8536D5E64DD64E1604E8285C8F77236619E4BCCE709
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (9059)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):309757
                                                                                                                                                                    Entropy (8bit):5.57084228543195
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:27E69920B4AA0CE7B2585EAD3060FDAE
                                                                                                                                                                    SHA1:3104BB4186500E987A9097E6DC155209789B68C9
                                                                                                                                                                    SHA-256:CC5323A8ADBF40BD961A5E773BFB63A158D19A089231EDCE72506246078D861D
                                                                                                                                                                    SHA-512:119527AED41E7C2A3B41231452BDE591DA587268940FF9436A6E431BB35607747A96091CA73D6BCDDAC069773455B60FE5168EFE2AEFF3019D9AD5FA64B01BB6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/gtm.js?id=GTM-WDH55T65
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. . (function(w,g){w[g]=w[g]||{};. w[g].e=function(s){return eval(s);};})(window,'google_tag_manager');. .(function(){..var data = {."resource": {. "version":"36",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"G-3D171KFV2T"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"campaign_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"adgroup_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"app_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"creative_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"lp_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"dist"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"d_id"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"bd"},{"function":"__k","vtp_decodeCookie":false,"vtp_name":"placement_id"},{"function":"__u","vtp_component":"QUERY","vtp_queryKey":"gclid","vtp_enableMultiQueryKeys":false,"vtp_enableIgnoreEm
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (5945)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):294733
                                                                                                                                                                    Entropy (8bit):5.588198779567988
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:A894ED45F099597D3F2D3860400D2F1E
                                                                                                                                                                    SHA1:4515DAA3765D58608E7943595FD70F7746338C75
                                                                                                                                                                    SHA-256:5E98FBF1647450E112252E7373333A00539870F7BC3705866B9A1843EBA8B396
                                                                                                                                                                    SHA-512:25CE864A7E46744E2A3A1DF2145B09239992C9EA988950091AEDF1E3B2E4C1D217B4BA039E6D3F911424F3C812BAD51522462EB76FCE305156492E223D6768E2
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/gtag/js?id=G-QT0HVH0Q0V&l=dataLayer&cx=c&gtm=457e4bk0za200
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_1p_data_v2","priority":10,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetValue":"","vtp_lastNameType":"CSS_SELECTOR","vtp_autoAddressEnabled":false,"vtp_regionValue":"","vtp_countryValue":"",
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (54055)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):55365
                                                                                                                                                                    Entropy (8bit):5.711321007930195
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D2332AD66ECECD3FAC784BB1BFBB9E27
                                                                                                                                                                    SHA1:88ACF5673EAB684D97B175E8140F8F1F8A558248
                                                                                                                                                                    SHA-256:2A617185BBEFB2F2D1502299DA1E72EDB709C299964BBBA9FB95214CF9394C3F
                                                                                                                                                                    SHA-512:AD7EE707422C9E3E05E1CF1C016399B6B02599D6D848154448405493397E797FFD749D9A5B63E8739F84DF5C0E1AE20259B657ABC2A9781965E288ED4359E2A0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==.(function(){function U(a){return a}var Y=function(a){return U.call(this,a)},R=function(a,B,r,e,f,D,v,h,L,W,S,I){for(W=(I=r,37);;)try{if(I==e)break;else{if(I==a)return h;if(I==r)L=k.trustedTypes,h=v,I=25;else if(I==B)W=74,h=L.createPolicy(D,{createHTML:Y,createScript:Y,createScriptURL:Y}),I=34;else if(I==25)I=L&&L.createPolicy?B:a;else if(I==89)I=k.console?85:34;else if(I==85)k.console[f](S.message),I=34;else if(I==33)W=37,I=89;else if(I==34)return W=37,h}}catch(y){if(W==37)throw y;W==74&&(S=y,I=33)}},k=this||self;(0,eval)(function(a,B){return(B=R(24,73,84,57,"error","bg",null))&&a.eval(B.createScript("1"))===1?function(r){return B.createScript(r)}:function(r){return""+r}}(k)(Array(Math.random()*7824|0).join("\n")+['//# sourceMappingURL=data:appl
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 174, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):9048
                                                                                                                                                                    Entropy (8bit):7.96670800205866
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:2BAD81B629F5C46979E6B96109DEB68C
                                                                                                                                                                    SHA1:72A87CDCB26E878816176D3B3E18B6BBC06889C1
                                                                                                                                                                    SHA-256:BE425009DCC1B2059FDCF6FB1DE87BF823D0C5F8AC329BE3C399444675A10F77
                                                                                                                                                                    SHA-512:3DF9BCBCF4646F19DA3A97658A59CB6AFAF61E4B3B47CC48C6035ACFEB1216AD82A45879B8B70779A8101FDCE59780AA5720D6FC84CE3B9712BC3D179589E87A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:.PNG........IHDR.............(-......PLTE........................@@@33..................................000........"""~~~...............111................................................HHHUUU\\\...............ZZ.uuu.......@@...888.................MMMrrr......***bbb.........EEE___jjj............ ...YYY.UU.............PPPRRR.11.99.........mmm.OO{{{............BBB.DD............'''---......xxx.............ooo.........===JJJddd.......$$$11.ww..bb............................99..@?.jj..........555:::.tt........%%.--hhh.JJ....zz.........................www.po.....~..........................)).55.\[............fff.......EE............\\.pp.~~...........gggvv.......&&.RR.ll..............u.0YY..........cc................gg.gg.tt........88.{{.....x4>OO......ip.. .IDATx...t.....]y.f[.mY.%...2n......{.....q...0...tB'......{...Cz..d_^...={fT..4#.%.'..9'.....g....r.... .j....F.@........].(.R.O.E.6e.t.z.....a...d../...d....5....V...^.X...+...
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=1], baseline, precision 8, 795x606, components 3
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):129498
                                                                                                                                                                    Entropy (8bit):7.7123576971416155
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:8BD870085667CBDCED5A3A4A34C332AD
                                                                                                                                                                    SHA1:900202C07518196FED5BEB50DF524F8CA45B3F91
                                                                                                                                                                    SHA-256:E6414C3C9AEB01A4E77C91D87C2CB392C4064E05F8B74978B4573A1874DC3877
                                                                                                                                                                    SHA-512:E9D4E56E9EC31E86FBBCC59C751F5E368AEA790858FE3632CAD63B0D413FC0C743BBBB1B29479CC060D80F9A8841232F3DEF6D057D0019577B54C462B8324AF7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:......JFIF.....H.H.....@Exif..MM.*.......i.......................................^.......8Photoshop 3.0.8BIM........8BIM.%..................B~...$ICC_PROFILE.......appl....mntrRGB XYZ ............acspAPPL....APPL...........................-appl................................................desc...P...bdscm........cprt.......#wtpt........rXYZ........gXYZ........bXYZ........rTRC........aarg...$... vcgt...D...0ndin...t...>mmod.......(vcgp.......8bTRC........gTRC........aabg...$... aagg...$... desc........Display.................................................................................mluc.......&....hrHR........koKR........nbNO........id..........huHU........csCZ........daDK........nlNL........fiFI........itIT........esES........roRO........frCA........ar..........ukUA........heIL........zhTW........viVN........skSK........zhCN........ruRU........enGB........frFR........ms..........hiIN........thTH........caES........enAU........esXL........deDE........enUS........ptBR........pl
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):13
                                                                                                                                                                    Entropy (8bit):2.7773627950641693
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:C83301425B2AD1D496473A5FF3D9ECCA
                                                                                                                                                                    SHA1:941EFB7368E46B27B937D34B07FC4D41DA01B002
                                                                                                                                                                    SHA-256:B633A587C652D02386C4F16F8C6F6AAB7352D97F16367C3C40576214372DD628
                                                                                                                                                                    SHA-512:83BAFE4C888008AFDD1B72C028C7F50DEE651CA9E7D8E1B332E0BF3AA1315884155A1458A304F6E5C5627E714BF5A855A8B8D7DB3F4EB2BB2789FE2F8F6A1D83
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://td.doubleclick.net/td/fls/rul/activityi;fledge=1;src=14918961;type=invmedia;cat=typtd0;ord=1;num=5469977367163;npa=0;gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE;auiddc=1254602137.1732532718;ps=1;pcor=854858489;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b?
                                                                                                                                                                    Preview:<html></html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1932)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):149607
                                                                                                                                                                    Entropy (8bit):5.541609120628972
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:112FEBDA43AC07D4F389AC3197CD8F4A
                                                                                                                                                                    SHA1:CAFDEAA03B0B6CF667DF93C91659EBEEEA1AF382
                                                                                                                                                                    SHA-256:49C5399C1BCF56CAF23F47BD1801681C85E51E9AAC0E6D9C324FFABEA1EA22D8
                                                                                                                                                                    SHA-512:D99A0FF0E9F431C827AF28975741C9D80964D38A5CF4EE449E69E687D9FDEDE5DB0E621F8E3B6E5A51340F150A25DEFB00C09ADA5814DB5355E9923B7B8C6317
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cse.google.com/adsense/search/async-ads.js
                                                                                                                                                                    Preview:if(!window['googleNDT_']){window['googleNDT_']=(new Date()).getTime();}(function() {window.googleAltLoader=4;var sffeData_={service_host:"cse.google.com",hash:"2482146371227649053",packages:"search",module:"ads",version:"3",m:{cei:"17301431,17301434,17301435,17301542,17301266",ah:true,uatm:500,ecfc2:true,llrm:1000,lldl:"bS5zZWFycy5jb20=",abf:{"_disableAdRequestForNewConsentStrategy":true,"_enableNewConsentStrategy":true,"_fixCtcLinksOnIos":true,"_googEnableQup":true,"_switchGwsRequestToUseAdsenseDomain":true,"_useServerProvidedDomain":true,"_waitOnConsentForFirstPartyCookie":true,"enableEnhancedTargetingRsonc":true,"enableNonblockingSasCookie":true},mdp:1800000,ssdl:"YXBwc3BvdC5jb20sYmxvZ3Nwb3QuY29tLGJyLmNvbSxjby5jb20sY2xvdWRmcm9udC5uZXQsZXUuY29tLGhvcHRvLm9yZyxpbi5uZXQsdHJhbnNsYXRlLmdvb2csdWsuY29tLHVzLmNvbSx3ZWIuYXBw",cdl:false,cdh:"syndicatedsearch.goog",cdem:{"afs_aa_baseline":500,"afs_chatbot":500,"afs_chatbot_aa":500,"afs_gpp_api":0,"disable_usp_api":0,"heterodyne_test":372}}};var
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1932)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):149607
                                                                                                                                                                    Entropy (8bit):5.541597352720799
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:12FEA5BCE958A359CF45F974086B739C
                                                                                                                                                                    SHA1:B1A7B0EEDE34D50C223F819426171050B59B17CC
                                                                                                                                                                    SHA-256:91AC336E7D8709F75ABAFCC3FA4CED0193C95EFC5EEDD1A43F1FF4C8E2B416C8
                                                                                                                                                                    SHA-512:1B10F7BEA655B8EFE3E30F2E631A6AACA9487048216775126F24270F36423F59726DCA8A8754F9D4CDB55EC4C9A3CA62BB337A8C1AD4422BE12D974CC4FDE67A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:if(!window['googleNDT_']){window['googleNDT_']=(new Date()).getTime();}(function() {window.googleAltLoader=4;var sffeData_={service_host:"cse.google.com",hash:"2482146371227649053",packages:"search",module:"ads",version:"3",m:{cei:"17301437,17301440,17301441,17301542,17301266",ah:true,uatm:500,ecfc2:true,llrm:1000,lldl:"bS5zZWFycy5jb20=",abf:{"_disableAdRequestForNewConsentStrategy":true,"_enableNewConsentStrategy":true,"_fixCtcLinksOnIos":true,"_googEnableQup":true,"_switchGwsRequestToUseAdsenseDomain":true,"_useServerProvidedDomain":true,"_waitOnConsentForFirstPartyCookie":true,"enableEnhancedTargetingRsonc":true,"enableNonblockingSasCookie":true},mdp:1800000,ssdl:"YXBwc3BvdC5jb20sYmxvZ3Nwb3QuY29tLGJyLmNvbSxjby5jb20sY2xvdWRmcm9udC5uZXQsZXUuY29tLGhvcHRvLm9yZyxpbi5uZXQsdHJhbnNsYXRlLmdvb2csdWsuY29tLHVzLmNvbSx3ZWIuYXBw",cdl:false,cdh:"syndicatedsearch.goog",cdem:{"afs_aa_baseline":500,"afs_chatbot":500,"afs_chatbot_aa":500,"afs_gpp_api":0,"disable_usp_api":0,"heterodyne_test":372}}};var
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (1957)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):23207
                                                                                                                                                                    Entropy (8bit):5.518029739152369
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:42693E3350D9010727B73E179BCEB800
                                                                                                                                                                    SHA1:27BE5B41D4B99F649D3E089B7D68DF42BC48B4C1
                                                                                                                                                                    SHA-256:E67F008CC3C6B8FAC37944FD37D7A4A6810081DCB2CE32BDB4A56C9EF7D71B24
                                                                                                                                                                    SHA-512:8F8DD772B2547AFDB1D2142E099AC0E54B7F62E2D8BBF9F63A2BE7DD9681484B7C97DFAE80C553A37CC1B3145D7183B051BE2F11D442CD16237DD078A4D048B6
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){'use strict';var aa=Object.defineProperty;function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var da=ba(this); .function ea(a,b){if(b)a:{var c=da;a=a.split(".");for(var d=0;d<a.length-1;d++){var f=a[d];if(!(f in c))break a;c=c[f]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&aa(c,a,{configurable:!0,writable:!0,value:b})}}ea("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")});/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var n=this||self;function fa(a,b,c){return a.call.apply(a.bind,arguments)}function p(a,b,c){p=fa;return p.apply(null,arguments)};var ha,r;a:{for(var ia=["CLOSURE_FLAGS"],t=n,ja=0;ja<ia.length;ja++)if(t=t[ia[ja]],t==null){r=null;break a}r=t}var ka=r&&r[610401301];ha=ka!=null?ka:!1;var u;const la=n
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (7641), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):7641
                                                                                                                                                                    Entropy (8bit):6.137611668785126
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:42D7115B8820EC7218F1FD74E3AEC71A
                                                                                                                                                                    SHA1:69032A7B1AE1F9DC5603785756201A1475D766A0
                                                                                                                                                                    SHA-256:8FB1377CE669CE20542FECCCA893580C7EB57DB3B40B74C623919EC799C36751
                                                                                                                                                                    SHA-512:17AAADEA523B5F6520A41D04CEC2C98B26A125587C0CAD0706FEBFABB027D828B783A265DD6E59CEC5871C6F598462FCC1703AB6C024E0EE4902C42933A83BE0
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (803), with no line terminators
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):803
                                                                                                                                                                    Entropy (8bit):5.639982073586973
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:DAC9440922F31D4EA4775A54849FD949
                                                                                                                                                                    SHA1:2CB3F23663309EB8C82BB99F8019EAD4F8CFECC3
                                                                                                                                                                    SHA-256:A88201B3C7E841C6D18695BFC7B4D748AA46A43CBC359AAC66E9C127956C972C
                                                                                                                                                                    SHA-512:45282A54DF3E1B57F0E289129906FD6D6A8643084BBDC01F2F36C233B0E764E66488AD60055F9031B28AC9883DDA4CD9A9349462071697B34FE1CB921D8ADDCC
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://14918961.fls.doubleclick.net/activityi;dc_pre=CIyL9sCr94kDFXFiQQIdM6MCCA;src=14918961;type=invmedia;cat=typtd0;ord=1;num=5469977367163;npa=0;gclaw=EAIaIQobChMIgJ7Bnqv3iQMVU51QBh16-i9HEAEYASAAEgLvG_D_BwE;auiddc=1254602137.1732532718;ps=1;pcor=854858489;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b?
                                                                                                                                                                    Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"><html><head><title></title></head><body style="background-color: transparent"><img src="https://adservice.google.com/ddm/fls/z/dc_pre=CIyL9sCr94kDFXFiQQIdM6MCCA;src=14918961;type=invmedia;cat=typtd0;ord=1;num=5469977367163;npa=0;gclaw=*;auiddc=*;ps=1;pcor=854858489;uaa=x86;uab=64;uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132;uamb=0;uam=;uap=Windows;uapv=10.0.0;uaw=0;pscdl=noapi;frm=0;gtm=45fe4bk0v9196976143z89175374541za201zb9175374541;gcs=G111;gcd=13t3t3t3t5l1;dma=0;tag_exp=101925629~102067555~102067808~102077855~102081485;epver=2;~oref=https%3A%2F%2Fwww.zipthisapp.com%2Fsuccess%3Fu%3Dc14bc5b0-c4ea-49fa-aae2-e47c61b59c5b"/></body></html>
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (5103), with no line terminators
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):5103
                                                                                                                                                                    Entropy (8bit):5.842386119966203
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:A9672FBDF6A6BCC7D2BE7621A604C4CB
                                                                                                                                                                    SHA1:17114545D5AF89788183683D5658ED285A1C710E
                                                                                                                                                                    SHA-256:6A2A6161E69547A8132C1ADE1D8784E41CFFA7F7F446499FFA0DF9F91746A592
                                                                                                                                                                    SHA-512:5EDC495B83569F3B90316652F4DA4320B2AA307BFD105C524547839E706B9CBA3462CDABD95E895FB3CCBFBAB5A9A2FC60F31ED16ACA6511D53EB98EE48F3C81
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(){var s = {};(function(){var h=typeof Object.defineProperties=="function"?Object.defineProperty:function(b,a,c){if(b==Array.prototype||b==Object.prototype)return b;b[a]=c.value;return b};function k(b){b=["object"==typeof globalThis&&globalThis,b,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var a=0;a<b.length;++a){var c=b[a];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} var m=k(this),n=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",q={},t={};function u(b,a,c){if(!c||b!=null){c=t[a];if(c==null)return b[a];c=b[c];return c!==void 0?c:b[a]}} function v(b,a,c){if(a)a:{var d=b.split(".");b=d.length===1;var e=d[0],g;!b&&e in q?g=q:g=m;for(e=0;e<d.length-1;e++){var f=d[e];if(!(f in g))break a;g=g[f]}d=d[d.length-1];c=n&&c==="es6"?g[d]:null;a=a(c);a!=null&&(b?h(q,d,{configurable:!0,writable:!0,value:a}):a!==c&&(t[d]===void 0&&(b=Math.random()*1E9>>>0,t[d]=n?m.Symbol(d):"$jscp$"+b+"$"+d),h(g,t[d],{co
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (18221)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):18309
                                                                                                                                                                    Entropy (8bit):5.182503586743918
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:E73504A146CEEBAED80DEE1071D2376B
                                                                                                                                                                    SHA1:D6734E2DF4605656C041D8DBB1CCDF59A263C7FD
                                                                                                                                                                    SHA-256:B341DF65F4AE526103325A74B19E05A97CC89E0AD232816BFE853A56831068A9
                                                                                                                                                                    SHA-512:25E9F72BE891378B614980C4C87C1419817136C9405024D5F4FFE0D24F37E9E6A8ABFB69940502CD13D4C83C4A52306529D2616A65BB4B7BBB35648610474843
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://cdn.jsdelivr.net/npm/@popperjs/core@2.5.2/dist/umd/popper.min.js
                                                                                                                                                                    Preview:/**. * @popperjs/core v2.5.2 - MIT License. */.."use strict";!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?t(exports):"function"==typeof define&&define.amd?define(["exports"],t):t((e=e||self).Popper={})}(this,(function(e){function t(e){return{width:(e=e.getBoundingClientRect()).width,height:e.height,top:e.top,right:e.right,bottom:e.bottom,left:e.left,x:e.left,y:e.top}}function n(e){return"[object Window]"!==e.toString()?(e=e.ownerDocument)&&e.defaultView||window:e}function r(e){return{scrollLeft:(e=n(e)).pageXOffset,scrollTop:e.pageYOffset}}function o(e){return e instanceof n(e).Element||e instanceof Element}function i(e){return e instanceof n(e).HTMLElement||e instanceof HTMLElement}function a(e){return e?(e.nodeName||"").toLowerCase():null}function s(e){return((o(e)?e.ownerDocument:e.document)||window.document).documentElement}function f(e){return t(s(e)).left+r(e).scrollLeft}function c(e){return n(e).getComputedStyle(e)}function p(e){return e=c(e),/auto|scroll|
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:PNG image data, 250 x 175, 8-bit colormap, non-interlaced
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):9026
                                                                                                                                                                    Entropy (8bit):7.949835327257446
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9710F3F66BB31F2750B98ECDD2081C5D
                                                                                                                                                                    SHA1:6DA0E217360D6D4B393577E275307462AC3E8113
                                                                                                                                                                    SHA-256:150BE6FF6CFB754FDAF11CB8AF28AD1A142F31AE649AC5DB455B74E9B5C39DF9
                                                                                                                                                                    SHA-512:B2156B84D32D94BB31B3AFBFFA61624B06B81C86DE2B0B3045F15E4266C3D3B3CED76F9EE4514E0D7142BDA6C5701183C52C5C33331FBFBF1E031DC7D0A3EA95
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.kalenderpedia.de/images/bundeslaender/2025/kalender-2025-baden-wuerttemberg-querformat-2-seiten.png
                                                                                                                                                                    Preview:.PNG........IHDR..............q3K....PLTE...................................................................x................................................................|..................................u.......{.................x....................................(.......h.#....z.................qq....V.C.;......G.B.i.d.R...........!WWW.....>........|]..e....qU.[[.___.kP............'''CCCLLK.vX.dd...888.............`.kk.........}dK..u...mmm.....|.....n...........///...................ttt............gggyyy..pbN:....................s.....s\E..h.........ww..n.......o....yy`........k..}............KJ...............ccOnnX........XXF.~..S..0....>.............I>$^^....tt...?.|y...........33.rr....m......IDATx...\[....B.j !.5..L2!.}[....#$.`.e....}..Q^o.@...{..c...M.{..{.).$S..l...w.g2..........O.B....s......=.!T....#..j..*._~.t....c....j...b...t8*\_Xd.<...U...6....r.x.P...
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (2343)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):52916
                                                                                                                                                                    Entropy (8bit):5.51283890397623
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:575B5480531DA4D14E7453E2016FE0BC
                                                                                                                                                                    SHA1:E5C5F3134FE29E60B591C87EA85951F0AEA36EE1
                                                                                                                                                                    SHA-256:DE36E50194320A7D3EF1ACE9BD34A875A8BD458B253C061979DD628E9BF49AFD
                                                                                                                                                                    SHA-512:174E48F4FB2A7E7A0BE1E16564F9ED2D0BBCC8B4AF18CB89AD49CF42B1C3894C8F8E29CE673BC5D9BC8552F88D1D47294EE0E216402566A3F446F04ACA24857A
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.google-analytics.com/analytics.js
                                                                                                                                                                    Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self,p=function(a,b){a=a.split(".");var c=n;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};function q(){for(var a=r,b={},c=0;c<a.length;++c)b[a[c]]=c;return b}function u(){var a="ABCDEFGHIJKLMNOPQRSTUVWXYZ";a+=a.toLowerCase()+"0123456789-_";return a+"."}var r,v;.function aa(a){function b(k){for(;d<a.length;){var m=a.charAt(d++),l=v[m];if(null!=l)return l;if(!/^[\s\xa0]*$/.test(m))throw Error("Unknown base64 encoding at char: "+m);}return k}r=r||u();v=v||q();for(var c="",d=0;;){var e=b(-1),f=b(0),h=b(64),g=b(64);if(64===g&&-1===e)return c;c+=String.fromCharCode(e<<2|f>>4);64!=h&&(c+=String.fromCharCode(f<<4&240|h>>2),64!=g&&(c+=String.fromCharCode(h<<6&192|g)))}};var w={},y=function(a){w.TAGGING=w.TAGGING||[];w.TAGGING[a]=!0};var ba=Array.isArray,c
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3835)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):237797
                                                                                                                                                                    Entropy (8bit):5.561911120739518
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:9EB7A13B53FC968DF5647F673F9DA583
                                                                                                                                                                    SHA1:667B229A3EB4B66DA33B6A588B52B2E71EED9CD3
                                                                                                                                                                    SHA-256:B1C5FD5A863D98B842A0D585A0F95D07572F10CFAF48BB0FC3AD27B98C532460
                                                                                                                                                                    SHA-512:58C88C6F3139D6A2C5C8CB188E9A177C3387F807C34E8D54E47B9FA2DC52B3D1E7B94D348A8A9D36EC2BB0FD666076D0897C3ABAE8F69FA07CC9BC424F79713B
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://www.googletagmanager.com/gtag/destination?id=DC-14918961&l=dataLayer&cx=c&gtm=45He4bk0v9175374541za200
                                                                                                                                                                    Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__e"}],. "tags":[{"function":"__rep","vtp_containerId":"DC-14918961","vtp_remoteConfig":["map"],"tag_id":6},{"function":"__ogt_dma","priority":0,"vtp_delegationMode":"OFF","vtp_dmaDefault":"DENIED","tag_id":9},{"function":"__ogt_cps","priority":0,"vtp_cpsMode":"ALL","tag_id":11},{"function":"__ogt_1p_data_v2","priority":0,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":false,"vtp_postalCod
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:HTML document, ASCII text, with very long lines (5657)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):6162
                                                                                                                                                                    Entropy (8bit):5.599076700545423
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:6AAAF8E11A32FD37FB419E3A4CE9696C
                                                                                                                                                                    SHA1:1FD88F2EE4DE5422E0C344DEBEFE3F2B5ABB2592
                                                                                                                                                                    SHA-256:468959E93F9B4E6F07C6A8F8D0E93D8FCB37D76A8615A93EC153F5842247BA99
                                                                                                                                                                    SHA-512:748B27BDB7C7FA082D7BE6C69F56DC33302105784391320A5CF960531C594097BC406FD3F4690E4CF74F4016F4D56804A4296E9BD885562EB66699E1318F7000
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://770e87a8b147b489f22ffddfe48f7a28.safeframe.googlesyndication.com/safeframe/1-0-40/html/container.html
                                                                                                                                                                    Preview:<!DOCTYPE html>.<html>. <head>. <meta charset="UTF-8">. <title>SafeFrame Container</title>. <script>.(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var f=this||self,h=function(a){return a};var n=function(a,b){this.h=a===l&&b||"";this.g=m},p=function(a){return a instanceof n&&a.constructor===n&&a.g===m?a.h:"type_error:Const"},m={},l={};var r=void 0;/*.. SPDX-License-Identifier: Apache-2.0.*/.var t,aa=function(){if(void 0===t){var a=null,b=f.trustedTypes;if(b&&b.createPolicy){try{a=b.createPolicy("goog#html",{createHTML:h,createScript:h,createScriptURL:h})}catch(c){f.console&&f.console.error(c.message)}t=a}else t=a}return t};var ca=function(a){this.g=ba===ba?a:""};ca.prototype.toString=function(){return this.g+""};var ba={},da=function(a){var b=aa();a=b?b.createScriptURL(a):a;return new ca(a)};var ea={},u=function(a,b){this.g=b===ea?a:""};u.prototype.toString=function(){return this.g.toString()};var ha=function(){var a=v,b={messa
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (65326)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):160302
                                                                                                                                                                    Entropy (8bit):5.078105585474276
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:816AF0EDDD3B4822C2756227C7E7B7EE
                                                                                                                                                                    SHA1:C470239D4C7DB36D56DC3A74A080C62218C6EDC4
                                                                                                                                                                    SHA-256:5B0FBE5B7AD705F6A937C4998AD02F73D8F0D976FE231B74AEF0EC996990C93A
                                                                                                                                                                    SHA-512:32844D968C5B4AD05C0FCCF733FD819A74FEAE0E08B0CC4F917686876CC3E8B18D34513CD16DE89EC02145C30032B4A8C962FDC43EC4AEDD267A7EEF47C2D466
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://stackpath.bootstrapcdn.com/bootstrap/4.5.2/css/bootstrap.min.css
                                                                                                                                                                    Preview:/*!. * Bootstrap v4.5.2 (https://getbootstrap.com/). * Copyright 2011-2020 The Bootstrap Authors. * Copyright 2011-2020 Twitter, Inc.. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */:root{--blue:#007bff;--indigo:#6610f2;--purple:#6f42c1;--pink:#e83e8c;--red:#dc3545;--orange:#fd7e14;--yellow:#ffc107;--green:#28a745;--teal:#20c997;--cyan:#17a2b8;--white:#fff;--gray:#6c757d;--gray-dark:#343a40;--primary:#007bff;--secondary:#6c757d;--success:#28a745;--info:#17a2b8;--warning:#ffc107;--danger:#dc3545;--light:#f8f9fa;--dark:#343a40;--breakpoint-xs:0;--breakpoint-sm:576px;--breakpoint-md:768px;--breakpoint-lg:992px;--breakpoint-xl:1200px;--font-family-sans-serif:-apple-system,BlinkMacSystemFont,"Segoe UI",Roboto,"Helvetica Neue",Arial,"Noto Sans",sans-serif,"Apple Color Emoji","Segoe UI Emoji","Segoe UI Symbol","Noto Color Emoji";--font-family-monospace:SFMono-Regular,Menlo,Monaco,Consolas,"Liberation Mono","Courier New",monospace}*,::after,::before{box-sizing:bo
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:ASCII text, with very long lines (3679)
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):159635
                                                                                                                                                                    Entropy (8bit):5.597327698408224
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:389C1DFAD7A119E9A48B1ACDC5EA5880
                                                                                                                                                                    SHA1:9C6C7D68A5E5A0F7138742911008C9386FB87F2C
                                                                                                                                                                    SHA-256:8EE4F4FA8F36F29C23A0C58DA091DD1DF37072D5F495635EB49ECE73431F4408
                                                                                                                                                                    SHA-512:674D622F7D9ED9B1B11665FE0DDAD92A524391BEA8A7322D6CBD1052738C9B2D30A8703E77CF11C7A02D02C4A8EE0B63BD465118B2096E845A0F2D491A825A3D
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:(function(sttc){'use strict';var aa,ba=Object.defineProperty;function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var da=ca(this),ea=typeof Symbol==="function"&&typeof Symbol("x")==="symbol",fa={},ha={};function ia(a,b,c){if(!c||a!=null){c=ha[b];if(c==null)return a[b];c=a[c];return c!==void 0?c:a[b]}} .function ja(a,b,c){if(b)a:{var d=a.split(".");a=d.length===1;var e=d[0],f;!a&&e in fa?f=fa:f=da;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))break a;f=f[g]}d=d[d.length-1];c=ea&&c==="es6"?f[d]:null;b=b(c);b!=null&&(a?ba(fa,d,{configurable:!0,writable:!0,value:b}):b!==c&&(ha[d]===void 0&&(a=Math.random()*1E9>>>0,ha[d]=ea?da.Symbol(d):"$jscp$"+a+"$"+d),ba(f,ha[d],{configurable:!0,writable:!0,value:b})))}}ja("Symbol.dispose",function(a){return a?a:Symbol("Symbol.dispose")},"es_nex
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:C++ source, ASCII text
                                                                                                                                                                    Category:dropped
                                                                                                                                                                    Size (bytes):6761
                                                                                                                                                                    Entropy (8bit):4.922906166489836
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:D64F199581DC4864010D5800D2A4F0BA
                                                                                                                                                                    SHA1:90E5BBAFEF99D173F5A51A8E4C164F16041D60E5
                                                                                                                                                                    SHA-256:B516046CFB70535AACBF34D7C30E9CDC1D5AFC50D17D6D862A5CFBEBF4BFF43B
                                                                                                                                                                    SHA-512:85BA3075F43594783A6F374DAEA4A081A8A925EB636BDD97E59BC65DCAF83F4C588F438696849C01B50BFE64DA6F246EF2234E31DA9FB983154D6DE2C4B5B0AD
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    Preview:const DL_DOMAIN = "https://thisdwn.com";.const BQ_PATH = "https://bq.zipthisapp.com/report?";..const url = new URL(window.location.href);.const protocol = url.protocol;.const subdomains = url.hostname.split(".").slice(0, -2);..function setCookie(name, value, days = 365) {. var expires = "";. if (days) {. var date = new Date();. date.setTime(date.getTime() + days * 24 * 60 * 60 * 1000);. expires = "; expires=" + date.toUTCString();. }. var domain = "." + window.location.hostname.split(".").slice(-2).join("."); // Get root domain. document.cookie =. name +. "=" +. encodeURIComponent(value) +. expires +. "; path=/" +. "; domain=" +. domain;.}..const getCookie = (name) => {. const cookie = document.cookie.match(`(^|;) ?${name}=([^;]*)(;|$)`);. return cookie ? cookie[2] : "";.};..function generateUUID() {. if (crypto.randomUUID) {. return crypto.randomUUID();. } else {. // Fallback to RFC4122 version 4 UUID. return "xxxxxxxx-xxxx-4xxx-yxxx-xxx
                                                                                                                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                    File Type:C++ source, ASCII text, with very long lines (2875)
                                                                                                                                                                    Category:downloaded
                                                                                                                                                                    Size (bytes):9039
                                                                                                                                                                    Entropy (8bit):5.5264402315890315
                                                                                                                                                                    Encrypted:false
                                                                                                                                                                    SSDEEP:
                                                                                                                                                                    MD5:37D6140D181883B03975D9454DBBFDED
                                                                                                                                                                    SHA1:38EF8848A82E58ABE73C1A880D03DD3C53637FCC
                                                                                                                                                                    SHA-256:2AC52BD16D3C1BB75FAC25D4961FC73897894D990F43844BEF8E7BE36FACB84B
                                                                                                                                                                    SHA-512:57252A856DE4EE9E51E13225AA7931F421E1C31EFFCD1F22E0ED5BB6C7E8B6472A43E84960E7DD45474E80677933B319ADDBC370BEFE326B680A511BB3635FC7
                                                                                                                                                                    Malicious:false
                                                                                                                                                                    Reputation:unknown
                                                                                                                                                                    URL:https://googleads.g.doubleclick.net/pagead/html/r20241120/r20190131/zrt_lookup_fy2021.html
                                                                                                                                                                    Preview:<!DOCTYPE html><script>.(function(){'use strict';/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var l=this||self;var n,p;a:{for(var aa=["CLOSURE_FLAGS"],w=l,z=0;z<aa.length;z++)if(w=w[aa[z]],w==null){p=null;break a}p=w}var ba=p&&p[610401301];n=ba!=null?ba:!1;function ca(){var a=l.navigator;return a&&(a=a.userAgent)?a:""}var A;const da=l.navigator;A=da?da.userAgentData||null:null;function B(a){return n?A?A.brands.some(({brand:b})=>b&&b.indexOf(a)!=-1):!1:!1}function C(a){return ca().indexOf(a)!=-1};function E(){return n?!!A&&A.brands.length>0:!1}function F(){return E()?B("Chromium"):(C("Chrome")||C("CriOS"))&&!(E()?0:C("Edge"))||C("Silk")};function ea(a,b){Array.prototype.forEach.call(a,b,void 0)};function G(a){G[" "](a);return a}G[" "]=function(){};var fa=ca().toLowerCase().indexOf("webkit")!=-1&&!C("Edge");!C("Android")||F();F();C("Safari")&&(F()||(E()?0:C("Coast"))||(E()?0:C("Opera"))||(E()?0:C("Edge"))||(E()?B("Microsoft Edge"):C("Edg/"))||E()&&B
                                                                                                                                                                    No static file info