Analysis

Category Package Started Completed Duration Options Log
FILE chrome 2026-04-14 10:06:30 2026-04-14 10:09:33 183 seconds Show Options Show Log
procdump=1
amsidump=1
2025-12-02 01:32:07,234 [root] INFO: Date set to: 20260414T03:06:29, timeout set to: 150
2026-04-14 04:06:29,015 [root] DEBUG: Starting analyzer from: C:\tmpvt__1blj
2026-04-14 04:06:29,015 [root] DEBUG: Storing results at: C:\wzMwqPEfuI
2026-04-14 04:06:29,015 [root] DEBUG: Pipe server name: \\.\PIPE\dSFVkfaeh
2026-04-14 04:06:29,015 [root] DEBUG: Python path: C:\olddocs
2026-04-14 04:06:29,015 [root] DEBUG: No analysis package specified, trying to detect it automagically
2026-04-14 04:06:29,015 [root] INFO: Automatically selected analysis package "chrome"
2026-04-14 04:06:29,015 [root] DEBUG: Importing analysis package "chrome"...
2026-04-14 04:06:29,031 [root] DEBUG: Initializing analysis package "chrome"...
2026-04-14 04:06:29,031 [root] INFO: Analyzer: Package modules.packages.chrome does not specify a DLL option
2026-04-14 04:06:29,031 [root] INFO: Analyzer: Package modules.packages.chrome does not specify a DLL_64 option
2026-04-14 04:06:29,031 [root] INFO: Analyzer: Package modules.packages.chrome does not specify a loader option
2026-04-14 04:06:29,031 [root] INFO: Analyzer: Package modules.packages.chrome does not specify a loader_64 option
2026-04-14 04:06:29,078 [root] DEBUG: Importing auxiliary module "modules.auxiliary.browser"...
2026-04-14 04:06:29,078 [root] DEBUG: Importing auxiliary module "modules.auxiliary.curtain"...
2026-04-14 04:06:29,078 [root] DEBUG: Importing auxiliary module "modules.auxiliary.default_apps"...
2026-04-14 04:06:29,093 [root] DEBUG: Importing auxiliary module "modules.auxiliary.digisig"...
2026-04-14 04:06:29,109 [root] DEBUG: Importing auxiliary module "modules.auxiliary.disguise"...
2026-04-14 04:06:29,125 [root] DEBUG: Importing auxiliary module "modules.auxiliary.evtx"...
2026-04-14 04:06:29,140 [root] DEBUG: Importing auxiliary module "modules.auxiliary.fiddler"...
2026-04-14 04:06:29,156 [root] DEBUG: Importing auxiliary module "modules.auxiliary.human"...
2026-04-14 04:06:29,156 [root] DEBUG: Importing auxiliary module "modules.auxiliary.screenshots"...
2026-04-14 04:06:29,171 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageChops'
2026-04-14 04:06:29,249 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageGrab'
2026-04-14 04:06:29,265 [lib.api.screenshot] DEBUG: Importing 'PIL.ImageDraw'
2026-04-14 04:06:29,265 [root] DEBUG: Importing auxiliary module "modules.auxiliary.sysmon"...
2026-04-14 04:06:29,265 [root] DEBUG: Importing auxiliary module "modules.auxiliary.tlsdump"...
2026-04-14 04:06:29,281 [root] DEBUG: Importing auxiliary module "modules.auxiliary.usage"...
2026-04-14 04:06:29,281 [root] DEBUG: Initializing auxiliary module "Browser"...
2026-04-14 04:06:29,281 [root] DEBUG: Started auxiliary module Browser
2026-04-14 04:06:29,281 [root] DEBUG: Initializing auxiliary module "Curtain"...
2026-04-14 04:06:29,281 [root] DEBUG: Started auxiliary module Curtain
2026-04-14 04:06:29,281 [root] DEBUG: Initializing auxiliary module "DefaultApps"...
2026-04-14 04:06:29,312 [modules.auxiliary.default_apps] DEBUG: Getting current user SID using WinAPI
2026-04-14 04:06:29,312 [root] DEBUG: Started auxiliary module DefaultApps
2026-04-14 04:06:29,312 [root] DEBUG: Initializing auxiliary module "DigiSig"...
2026-04-14 04:06:29,312 [modules.auxiliary.digisig] INFO: signtool.exe was not found in bin/
2026-04-14 04:06:29,312 [modules.auxiliary.digisig] INFO: dummy
2026-04-14 04:06:29,312 [modules.auxiliary.digisig] INFO: Skipping authenticode validation, unsupported analyzer package
2026-04-14 04:06:29,312 [root] DEBUG: Started auxiliary module DigiSig
2026-04-14 04:06:29,312 [root] DEBUG: Initializing auxiliary module "Disguise"...
2026-04-14 04:06:29,578 [modules.auxiliary.disguise] INFO: Setting NoRecentDocsHistory
2026-04-14 04:06:29,593 [root] WARNING: Cannot execute auxiliary module Disguise: [WinError 2] The system cannot find the file specified
2026-04-14 04:06:29,593 [root] DEBUG: Initializing auxiliary module "Evtx"...
2026-04-14 04:06:29,593 [modules.auxiliary.evtx] INFO: Loading audit policy C:\tmpvt__1blj\bin\auditpol.csv
2026-04-14 04:06:29,953 [modules.auxiliary.evtx] INFO: Wiping logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:06:30,750 [root] DEBUG: Started auxiliary module Evtx
2026-04-14 04:06:30,750 [root] DEBUG: Initializing auxiliary module "Fiddler"...
2026-04-14 04:06:30,750 [modules.auxiliary.fiddler] INFO: fiddler package: dummy
2026-04-14 04:06:30,765 [root] DEBUG: Started auxiliary module Fiddler
2026-04-14 04:06:30,765 [root] DEBUG: Initializing auxiliary module "Human"...
2026-04-14 04:06:30,765 [root] DEBUG: Started auxiliary module Human
2026-04-14 04:06:30,765 [root] DEBUG: Initializing auxiliary module "Screenshots"...
2026-04-14 04:06:30,765 [root] DEBUG: Started auxiliary module Screenshots
2026-04-14 04:06:30,781 [root] DEBUG: Initializing auxiliary module "Sysmon"...
2026-04-14 04:06:30,781 [modules.auxiliary.sysmon] INFO: Seeing if we need to update sysmon config
2026-04-14 04:06:30,781 [root] DEBUG: Started auxiliary module Sysmon
2026-04-14 04:06:30,781 [root] DEBUG: Initializing auxiliary module "TLSDumpMasterSecrets"...
2026-04-14 04:06:30,781 [modules.auxiliary.tlsdump] INFO: lsass.exe found, pid 556
2026-04-14 04:06:30,781 [modules.auxiliary.sysmon] INFO: Found Sysmon Executable
2026-04-14 04:06:30,781 [modules.auxiliary.sysmon] INFO: Found Sysmon config
2026-04-14 04:06:30,781 [lib.api.process] INFO: Monitor config for process 556: C:\tmpvt__1blj\dll\556.ini
2026-04-14 04:06:30,781 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2026-04-14 04:06:30,781 [lib.api.process] INFO: Option 'amsidump' with value '1' sent to monitor
2026-04-14 04:06:30,781 [lib.api.process] INFO: Option 'tlsdump' with value '1' sent to monitor
2026-04-14 04:06:30,781 [lib.api.process] INFO: 64-bit DLL to inject is C:\tmpvt__1blj\dll\hlJvMkB.dll, loader C:\tmpvt__1blj\bin\QKHMoorA.exe
2026-04-14 04:06:30,812 [root] DEBUG: Loader: Injecting process 556 with C:\tmpvt__1blj\dll\hlJvMkB.dll.
2026-04-14 04:06:30,859 [root] DEBUG: 556: Python path set to 'C:\olddocs'.
2026-04-14 04:06:30,859 [root] DEBUG: 556: Disabling sleep skipping.
2026-04-14 04:06:30,859 [root] DEBUG: 556: Process dumps enabled.
2026-04-14 04:06:30,859 [root] DEBUG: 556: AMSI dumping enabled.
2026-04-14 04:06:30,859 [root] DEBUG: 556: TLS secret dump mode enabled.
2026-04-14 04:06:30,875 [root] DEBUG: 556: Monitor initialised: 64-bit capemon loaded in process 556 at 0x000007FEF5F80000, thread 2540, image base 0x00000000FF1A0000, stack from 0x0000000001F92000-0x0000000001FA0000
2026-04-14 04:06:30,875 [root] DEBUG: 556: Commandline: C:\Windows\system32\lsass.exe
2026-04-14 04:06:30,875 [root] DEBUG: 556: Hooked 5 out of 5 functions
2026-04-14 04:06:30,890 [root] DEBUG: InjectDllViaThread: Successfully injected Dll into process via RtlCreateUserThread.
2026-04-14 04:06:30,906 [root] DEBUG: Successfully injected DLL C:\tmpvt__1blj\dll\hlJvMkB.dll.
2026-04-14 04:06:30,906 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 556
2026-04-14 04:06:30,906 [root] DEBUG: Started auxiliary module TLSDumpMasterSecrets
2026-04-14 04:06:30,906 [root] DEBUG: Initializing auxiliary module "Usage"...
2026-04-14 04:06:30,906 [root] DEBUG: Started auxiliary module Usage
2026-04-14 04:06:32,984 [modules.auxiliary.sysmon] INFO: Clearing existing sysmon logs
2026-04-14 04:06:33,640 [root] INFO: Restarting WMI Service
2026-04-14 04:06:37,796 [lib.api.process] INFO: Successfully executed process from path "C:\Program Files\Google\Chrome\Application\chrome.exe" with arguments "--no-sandbox --test-type --ignore-ssl-errors "C:\Users\pgabriel\AppData\Local\Temp\Silver Birch _ 217_.html"" with pid 2416
2026-04-14 04:06:37,796 [lib.api.process] INFO: Monitor config for process 2416: C:\tmpvt__1blj\dll\2416.ini
2026-04-14 04:06:37,796 [lib.api.process] INFO: Option 'procdump' with value '1' sent to monitor
2026-04-14 04:06:37,796 [lib.api.process] INFO: Option 'amsidump' with value '1' sent to monitor
2026-04-14 04:06:37,796 [lib.api.process] INFO: 64-bit DLL to inject is C:\tmpvt__1blj\dll\hlJvMkB.dll, loader C:\tmpvt__1blj\bin\QKHMoorA.exe
2026-04-14 04:06:37,812 [root] DEBUG: Loader: Injecting process 2416 (thread 2700) with C:\tmpvt__1blj\dll\hlJvMkB.dll.
2026-04-14 04:06:37,828 [root] DEBUG: InjectDllViaIAT: Successfully patched IAT.
2026-04-14 04:06:37,828 [root] DEBUG: Successfully injected DLL C:\tmpvt__1blj\dll\hlJvMkB.dll.
2026-04-14 04:06:37,828 [lib.api.process] INFO: Injected into suspended 64-bit process with pid 2416
2026-04-14 04:06:39,828 [lib.api.process] INFO: Successfully resumed process with pid 2416
2026-04-14 04:06:39,875 [root] DEBUG: 2416: Python path set to 'C:\olddocs'.
2026-04-14 04:06:39,875 [root] DEBUG: 2416: Disabling sleep skipping.
2026-04-14 04:06:39,875 [root] DEBUG: 2416: Process dumps enabled.
2026-04-14 04:06:39,875 [root] DEBUG: 2416: AMSI dumping enabled.
2026-04-14 04:06:39,875 [root] DEBUG: 2416: Dropped file limit defaulting to 100.
2026-04-14 04:06:39,890 [root] DEBUG: 2416: Chrome-specific hook-set enabled.
2026-04-14 04:06:39,890 [root] DEBUG: 2416: Monitor initialised: 64-bit capemon loaded in process 2416 at 0x000007FEF5F80000, thread 2700, image base 0x000000013F290000, stack from 0x0000000000982000-0x0000000000990000
2026-04-14 04:06:39,890 [root] DEBUG: 2416: Commandline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-sandbox --test-type --ignore-ssl-errors "C:\Users\pgabriel\AppData\Local\Temp\Silver Birch _ 217_.html"
2026-04-14 04:06:39,906 [root] DEBUG: 2416: Hooked 16 out of 16 functions
2026-04-14 04:06:39,921 [root] DEBUG: 2416: RestoreHeaders: Restored original import table.
2026-04-14 04:06:39,921 [root] INFO: Loaded monitor into process with pid 2416
2026-04-14 04:06:39,921 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD5E0000: C:\Windows\system32\cryptbase (0xf000 bytes).
2026-04-14 04:06:39,937 [root] DEBUG: 2416: DLL loaded at 0x000007FEF9220000: C:\Windows\system32\WINMM (0x3b000 bytes).
2026-04-14 04:06:39,953 [root] DEBUG: 2416: caller_dispatch: Added region at 0x000000013F290000 to tracked regions list (ntdll::NtClose returns to 0x000000013F397089, thread 2700).
2026-04-14 04:06:39,953 [root] DEBUG: 2416: caller_dispatch: Scanning calling region at 0x000000013F290000...
2026-04-14 04:06:39,953 [root] DEBUG: 2416: ProcessImageBase: Main module image at 0x000000013F290000 unmodified (entropy change 0.000000e+00)
2026-04-14 04:06:39,953 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC1B0000: C:\Windows\system32\ntmarta (0x2d000 bytes).
2026-04-14 04:06:39,953 [root] DEBUG: 2416: DLL loaded at 0x000007FEFE8D0000: C:\Windows\system32\WLDAP32 (0x52000 bytes).
2026-04-14 04:06:39,953 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 2320: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:39,968 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 2320
2026-04-14 04:06:39,968 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD580000: C:\Windows\system32\apphelp (0x57000 bytes).
2026-04-14 04:06:39,968 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 2320
2026-04-14 04:06:39,984 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
2026-04-14 04:06:40,000 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1AD0000: C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0 (0x4000 bytes).
2026-04-14 04:06:40,000 [root] DEBUG: 2416: DLL loaded at 0x000007FEFDB40000: C:\Windows\system32\shell32 (0xd88000 bytes).
2026-04-14 04:06:42,984 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:06:44,453 [root] DEBUG: 2416: DLL loaded at 0x000007FEDF480000: C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome (0xa41f000 bytes).
2026-04-14 04:06:44,453 [root] DEBUG: 2416: DLL loaded at 0x000007FEEC750000: C:\Windows\system32\dbghelp (0x125000 bytes).
2026-04-14 04:06:44,468 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB3F0000: C:\Windows\system32\IPHLPAPI (0x27000 bytes).
2026-04-14 04:06:44,468 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB510000: C:\Windows\system32\WINNSI (0xb000 bytes).
2026-04-14 04:06:44,500 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1900000: C:\Windows\system32\UIAutomationCore (0xba000 bytes).
2026-04-14 04:06:44,500 [root] DEBUG: 2416: DLL loaded at 0x0000000077BA0000: C:\Windows\system32\PSAPI (0x7000 bytes).
2026-04-14 04:06:44,515 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1670000: C:\Windows\system32\OLEACC (0x54000 bytes).
2026-04-14 04:06:44,515 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD3A0000: C:\Windows\system32\Secur32 (0xb000 bytes).
2026-04-14 04:06:44,515 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD8D0000: C:\Windows\system32\USERENV (0x1e000 bytes).
2026-04-14 04:06:44,515 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD790000: C:\Windows\system32\profapi (0xf000 bytes).
2026-04-14 04:06:44,515 [root] DEBUG: 2416: DLL loaded at 0x000007FEFDB00000: C:\Windows\system32\WINTRUST (0x3b000 bytes).
2026-04-14 04:06:44,546 [root] DEBUG: 2416: DLL loaded at 0x000007FEED9E0000: C:\Windows\system32\DWrite (0x196000 bytes).
2026-04-14 04:06:44,562 [root] DEBUG: 2416: DLL loaded at 0x000007FEF9E80000: C:\Windows\system32\WINSPOOL.DRV (0x71000 bytes).
2026-04-14 04:06:44,578 [root] DEBUG: 2416: DLL loaded at 0x000007FEFA730000: C:\Windows\system32\WINHTTP (0x71000 bytes).
2026-04-14 04:06:44,578 [root] DEBUG: 2416: DLL loaded at 0x000007FEFA6C0000: C:\Windows\system32\webio (0x65000 bytes).
2026-04-14 04:06:44,593 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB200000: C:\Windows\system32\dhcpcsvc (0x18000 bytes).
2026-04-14 04:06:44,609 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1AD0000: C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0 (0x4000 bytes).
2026-04-14 04:06:44,609 [root] DEBUG: 2416: DLL loaded at 0x000007FEFDB40000: C:\Windows\system32\shell32 (0xd88000 bytes).
2026-04-14 04:06:44,625 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBD40000: C:\Windows\system32\uxtheme (0x56000 bytes).
2026-04-14 04:06:44,640 [root] DEBUG: 2416: DLL loaded at 0x000007FEFCA30000: C:\Windows\system32\GPAPI (0x1b000 bytes).
2026-04-14 04:06:44,640 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB1E0000: C:\Windows\system32\wkscli (0x15000 bytes).
2026-04-14 04:06:44,640 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB220000: C:\Windows\system32\netutils (0xc000 bytes).
2026-04-14 04:06:44,734 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC1E0000: C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\COMCTL32 (0x1f4000 bytes).
2026-04-14 04:06:44,796 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB820000: C:\Windows\system32\NLAapi (0x15000 bytes).
2026-04-14 04:06:44,812 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB230000: C:\Windows\system32\dhcpcsvc6 (0x11000 bytes).
2026-04-14 04:06:44,812 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBA60000: C:\Windows\system32\dwmapi (0x18000 bytes).
2026-04-14 04:06:44,828 [root] DEBUG: 2416: DLL loaded at 0x000007FEFF0A0000: C:\Windows\system32\CLBCatQ (0x99000 bytes).
2026-04-14 04:06:44,828 [root] DEBUG: 2416: DLL loaded at 0x000007FEFDB40000: C:\Windows\system32\SHELL32 (0xd88000 bytes).
2026-04-14 04:06:44,843 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB4F0000: C:\Windows\system32\WTSAPI32 (0x11000 bytes).
2026-04-14 04:06:44,859 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD6B0000: C:\Windows\system32\WINSTA (0x3d000 bytes).
2026-04-14 04:06:44,875 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1530000: C:\Windows\system32\mscms (0x9c000 bytes).
2026-04-14 04:06:44,890 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC080000: C:\Windows\System32\MMDevApi (0x4b000 bytes).
2026-04-14 04:06:44,906 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBF20000: C:\Windows\System32\PROPSYS (0x12c000 bytes).
2026-04-14 04:06:44,906 [root] DEBUG: 2416: DLL loaded at 0x000007FEFEEC0000: C:\Windows\system32\SETUPAPI (0x1d7000 bytes).
2026-04-14 04:06:44,906 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 3004: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:44,906 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD8F0000: C:\Windows\system32\CFGMGR32 (0x36000 bytes).
2026-04-14 04:06:44,906 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3004
2026-04-14 04:06:44,906 [root] DEBUG: 2416: DLL loaded at 0x000007FEFDAD0000: C:\Windows\system32\DEVOBJ (0x1a000 bytes).
2026-04-14 04:06:44,906 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3004
2026-04-14 04:06:44,906 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\index
2026-04-14 04:06:44,921 [root] DEBUG: 2416: DLL loaded at 0x000007FEF13C0000: C:\Windows\System32\Wpc (0x6f000 bytes).
2026-04-14 04:06:44,937 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD190000: C:\Windows\System32\wevtapi (0x6d000 bytes).
2026-04-14 04:06:44,937 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 1172
2026-04-14 04:06:44,953 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Version
2026-04-14 04:06:44,953 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB1C0000: C:\Windows\system32\samcli (0x14000 bytes).
2026-04-14 04:06:44,953 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBF00000: C:\Windows\system32\SAMLIB (0x1d000 bytes).
2026-04-14 04:06:45,015 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 1204: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:45,015 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 1204
2026-04-14 04:06:45,015 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 1204
2026-04-14 04:06:45,046 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History
2026-04-14 04:06:45,109 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK
2026-04-14 04:06:45,109 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
2026-04-14 04:06:45,109 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log
2026-04-14 04:06:45,109 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
2026-04-14 04:06:45,125 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log size is 0, Max size: 100000000
2026-04-14 04:06:45,140 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\CURRENT size is 16, Max size: 100000000
2026-04-14 04:06:45,171 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC880000: C:\Windows\system32\FirewallAPI (0xbb000 bytes).
2026-04-14 04:06:45,171 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG size is 351, Max size: 100000000
2026-04-14 04:06:45,171 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old~RF13b691.TMP size is 327, Max size: 100000000
2026-04-14 04:06:45,187 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old size is 311, Max size: 100000000
2026-04-14 04:06:45,187 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001 size is 41, Max size: 100000000
2026-04-14 04:06:45,203 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK size is 0, Max size: 100000000
2026-04-14 04:06:45,234 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
2026-04-14 04:06:45,234 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000001.dbtmp
2026-04-14 04:06:45,343 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1AD0000: C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0 (0x4000 bytes).
2026-04-14 04:06:45,343 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7d32e619-f9a0-467f-ab1c-214f845e1f49.tmp
2026-04-14 04:06:45,359 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7d32e619-f9a0-467f-ab1c-214f845e1f49.tmp size is 1, Max size: 100000000
2026-04-14 04:06:45,546 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC0D0000: C:\Windows\system32\POWRPROF (0x2c000 bytes).
2026-04-14 04:06:45,753 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:06:45,816 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\index
2026-04-14 04:06:46,035 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 2592: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:46,035 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 2592
2026-04-14 04:06:46,035 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 2592
2026-04-14 04:06:46,082 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 2152: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:46,316 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old~RF13baf6.TMP size is 329, Max size: 100000000
2026-04-14 04:06:46,363 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\MANIFEST-000001
2026-04-14 04:06:46,394 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
2026-04-14 04:06:46,394 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\index
2026-04-14 04:06:46,433 [lib.common.results] INFO: File 1776164806253906200.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:06:46,468 [lib.common.results] INFO: File 1776164806253906200.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:06:46,485 [lib.common.results] INFO: File 1776164806238281200.Application.evtx.gz size is 6910, Max size: 100000000
2026-04-14 04:06:46,485 [lib.common.results] INFO: File 1776164806300781200.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:06:46,581 [lib.common.results] INFO: File 1776164806485351500.System.evtx.gz size is 8854, Max size: 100000000
2026-04-14 04:06:46,581 [root] DEBUG: 2416: DLL loaded at 0x000007FEF9C10000: C:\Windows\system32\explorerframe (0x1ca000 bytes).
2026-04-14 04:06:46,596 [lib.common.results] INFO: File 1776164806449218700.Security.evtx.gz size is 16866, Max size: 100000000
2026-04-14 04:06:46,596 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBAD0000: C:\Windows\system32\DUser (0x43000 bytes).
2026-04-14 04:06:46,612 [lib.common.results] INFO: File 1776164806429687500.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:06:46,612 [lib.common.results] INFO: File 1776164806469726500.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:06:46,643 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB950000: C:\Windows\system32\DUI70 (0xf2000 bytes).
2026-04-14 04:06:46,643 [lib.common.results] INFO: File 1776164806581054600.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:06:46,643 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old~RF13bc4e.TMP size is 317, Max size: 100000000
2026-04-14 04:06:46,690 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
2026-04-14 04:06:46,690 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000001
2026-04-14 04:06:46,752 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 876: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:46,752 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 876
2026-04-14 04:06:46,752 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 876
2026-04-14 04:06:46,861 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1B10000: C:\Windows\system32\wlanapi (0x20000 bytes).
2026-04-14 04:06:46,866 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1B00000: C:\Windows\system32\wlanutil (0x7000 bytes).
2026-04-14 04:06:46,881 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC0D0000: C:\Windows\system32\POWRPROF (0x2c000 bytes).
2026-04-14 04:06:46,883 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC0D0000: C:\Windows\system32\POWRPROF (0x2c000 bytes).
2026-04-14 04:06:46,918 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 2164: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:46,920 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 2164
2026-04-14 04:06:46,929 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Temp\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp
2026-04-14 04:06:46,933 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Temp\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp
2026-04-14 04:06:46,958 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6ff088e8-aaa2-4072-9649-feb065e97630.tmp
2026-04-14 04:06:46,979 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bd87.TMP size is 9213, Max size: 100000000
2026-04-14 04:06:46,994 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7dadc225-9d11-47ef-aadc-71d10289ac30.tmp
2026-04-14 04:06:47,056 [root] DEBUG: 2416: DLL loaded at 0x000007FEFCED0000: C:\Windows\system32\mswsock (0x55000 bytes).
2026-04-14 04:06:47,072 [root] DEBUG: 2416: DLL loaded at 0x000007FEFC940000: C:\Windows\System32\wshtcpip (0x7000 bytes).
2026-04-14 04:06:47,101 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old~RF13be04.TMP size is 323, Max size: 100000000
2026-04-14 04:06:47,268 [root] DEBUG: 556: DLL loaded at 0x000007FEF8E90000: C:\Windows\system32\keyiso (0xb000 bytes).
2026-04-14 04:06:47,612 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Temp\80b5107f-8821-4775-bc73-d3dff4e26f4e.tmp
2026-04-14 04:06:47,614 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Temp\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp
2026-04-14 04:06:47,786 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG.old~RF13c0b3.TMP size is 405, Max size: 100000000
2026-04-14 04:06:47,852 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old~RF13c101.TMP size is 405, Max size: 100000000
2026-04-14 04:06:47,955 [root] DEBUG: 556: DLL loaded at 0x000007FEF1630000: C:\Windows\system32\dssenh (0x32000 bytes).
2026-04-14 04:06:47,987 [root] DEBUG: 556: TLS 1.2 secrets logged to: C:\wzMwqPEfuI\tlsdump\tlsdump.log
2026-04-14 04:06:48,071 [root] DEBUG: 556: DLL loaded at 0x000007FEFAA70000: C:\Windows\system32\cryptnet (0x27000 bytes).
2026-04-14 04:06:48,072 [root] DEBUG: 556: DLL loaded at 0x000007FEFE8D0000: C:\Windows\system32\WLDAP32 (0x52000 bytes).
2026-04-14 04:06:48,112 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164808.1123047.sysmon.evtx.gz to host
2026-04-14 04:06:48,113 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 28406, Max size: 100000000
2026-04-14 04:06:48,135 [root] DEBUG: 2416: DLL loaded at 0x000007FEFCF30000: C:\Windows\system32\CRYPTSP (0x18000 bytes).
2026-04-14 04:06:48,141 [root] DEBUG: 2416: DLL loaded at 0x000007FEFCC30000: C:\Windows\system32\rsaenh (0x47000 bytes).
2026-04-14 04:06:48,157 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD100000: C:\Windows\system32\ncrypt (0x50000 bytes).
2026-04-14 04:06:48,167 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD040000: C:\Windows\system32\bcryptprimitives (0x4c000 bytes).
2026-04-14 04:06:48,283 [root] DEBUG: 2416: DLL loaded at 0x000007FEFAA70000: C:\Windows\system32\cryptnet (0x27000 bytes).
2026-04-14 04:06:49,717 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB2B0000: C:\Windows\system32\netapi32 (0x16000 bytes).
2026-04-14 04:06:49,717 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD2F0000: C:\Windows\system32\srvcli (0x23000 bytes).
2026-04-14 04:06:49,717 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1B10000: C:\Windows\system32\wlanapi (0x20000 bytes).
2026-04-14 04:06:49,735 [root] DEBUG: 2416: DLL loaded at 0x000007FEF1B00000: C:\Windows\system32\wlanutil (0x7000 bytes).
2026-04-14 04:06:49,783 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-66299726-990.pma size is 4194304, Max size: 100000000
2026-04-14 04:06:49,876 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-69DE1FC4-970.pma size is 4194304, Max size: 100000000
2026-04-14 04:06:49,939 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CrashpadMetrics.pma size is 1048576, Max size: 100000000
2026-04-14 04:06:50,220 [root] DEBUG: 2416: DLL loaded at 0x000007FEDF080000: C:\Windows\system32\mf (0x3f1000 bytes).
2026-04-14 04:06:50,220 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB7C0000: C:\Windows\system32\ATL (0x19000 bytes).
2026-04-14 04:06:50,220 [root] DEBUG: 2416: DLL loaded at 0x000007FEED840000: C:\Windows\system32\MFPlat (0x6d000 bytes).
2026-04-14 04:06:50,220 [root] DEBUG: 2416: DLL loaded at 0x000007FEFBEF0000: C:\Windows\system32\AVRT (0x9000 bytes).
2026-04-14 04:06:50,236 [root] DEBUG: 2416: DLL loaded at 0x0000000074C30000: C:\Windows\system32\ksuser (0x6000 bytes).
2026-04-14 04:06:50,236 [root] DEBUG: 2416: DLL loaded at 0x000007FEDE2F0000: C:\Windows\system32\mfreadwrite (0x42000 bytes).
2026-04-14 04:06:51,725 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt size is 4, Max size: 100000000
2026-04-14 04:06:53,812 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old~RF13d852.TMP size is 139, Max size: 100000000
2026-04-14 04:06:53,875 [lib.common.results] INFO: File c:\olddocs\1776164808864.saz size is 415614, Max size: 100000000
2026-04-14 04:06:53,890 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:06:54,437 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000038.dbtmp
2026-04-14 04:06:54,437 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT~RF13dac3.TMP size is 16, Max size: 100000000
2026-04-14 04:06:54,593 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000037.log size is 0, Max size: 100000000
2026-04-14 04:06:54,609 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000036 size is 50, Max size: 100000000
2026-04-14 04:06:54,671 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Browser
2026-04-14 04:06:54,734 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 3212: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:54,734 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3212
2026-04-14 04:06:54,859 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\129c29e3-0c30-4763-9ad5-ab6034b32198.tmp
2026-04-14 04:06:54,859 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF13dc69.TMP size is 312116, Max size: 100000000
2026-04-14 04:06:55,191 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 3228: C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SwReporter\92.267.200\software_reporter_tool.exe, ImageBase: 0x000000013FEF0000
2026-04-14 04:06:55,191 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3228
2026-04-14 04:06:55,191 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3228
2026-04-14 04:06:55,628 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old~RF13df67.TMP size is 0, Max size: 100000000
2026-04-14 04:06:55,691 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOCK
2026-04-14 04:06:55,691 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
2026-04-14 04:06:55,707 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG.old~RF13dfa5.TMP size is 0, Max size: 100000000
2026-04-14 04:06:55,722 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOCK
2026-04-14 04:06:55,722 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG
2026-04-14 04:06:55,722 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG.old~RF13dfc4.TMP size is 0, Max size: 100000000
2026-04-14 04:06:55,738 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOCK
2026-04-14 04:06:55,738 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG
2026-04-14 04:06:55,785 [root] DEBUG: 2416: DLL loaded at 0x000007FEF2350000: C:\Windows\system32\bthprops.cpl (0xb5000 bytes).
2026-04-14 04:06:55,832 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.old~RF13e032.TMP size is 333, Max size: 100000000
2026-04-14 04:06:56,675 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old~RF13e37d.TMP size is 0, Max size: 100000000
2026-04-14 04:06:56,691 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOCK
2026-04-14 04:06:56,691 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
2026-04-14 04:06:56,691 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old~RF13e38d.TMP size is 0, Max size: 100000000
2026-04-14 04:06:56,707 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOCK
2026-04-14 04:06:56,707 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
2026-04-14 04:06:56,707 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache size is 6, Max size: 100000000
2026-04-14 04:06:56,707 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
2026-04-14 04:06:56,722 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old~RF13e39d.TMP size is 0, Max size: 100000000
2026-04-14 04:06:56,738 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOCK
2026-04-14 04:06:56,738 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
2026-04-14 04:06:56,753 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 3476: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:06:56,753 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3476
2026-04-14 04:06:56,753 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3476
2026-04-14 04:06:56,753 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.old~RF13e3cc.TMP size is 341, Max size: 100000000
2026-04-14 04:06:56,769 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG.old~RF13e3db.TMP size is 323, Max size: 100000000
2026-04-14 04:06:57,035 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\766bcae1-de0e-45b0-89f4-6a050c3a979f.tmp
2026-04-14 04:06:57,035 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13e4e5.TMP size is 9054, Max size: 100000000
2026-04-14 04:06:57,227 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG.old~RF13e591.TMP size is 0, Max size: 100000000
2026-04-14 04:06:57,243 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOCK
2026-04-14 04:06:57,243 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG
2026-04-14 04:06:57,430 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG.old~RF13e66b.TMP size is 0, Max size: 100000000
2026-04-14 04:06:57,446 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOCK
2026-04-14 04:06:57,446 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG
2026-04-14 04:07:01,691 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:07:01,941 [lib.common.results] INFO: File 1776164821878906200.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:07:01,957 [lib.common.results] INFO: File 1776164821894531200.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:07:01,957 [lib.common.results] INFO: File 1776164821878906200.Application.evtx.gz size is 6840, Max size: 100000000
2026-04-14 04:07:01,957 [lib.common.results] INFO: File 1776164821894531200.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:07:02,003 [lib.common.results] INFO: File 1776164821941406200.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:07:02,003 [lib.common.results] INFO: File 1776164821941406200.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:07:02,019 [lib.common.results] INFO: File 1776164821941406200.Security.evtx.gz size is 8630, Max size: 100000000
2026-04-14 04:07:02,035 [lib.common.results] INFO: File 1776164821957031200.System.evtx.gz size is 8621, Max size: 100000000
2026-04-14 04:07:02,050 [lib.common.results] INFO: File 1776164822003906200.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:07:03,133 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:07:03,383 [root] INFO: Process with pid 2164 has terminated
2026-04-14 04:07:06,748 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\49f92ecc-3c92-4e05-98cf-93924d4c677e.tmp
2026-04-14 04:07:06,763 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF140acc.TMP size is 66968, Max size: 100000000
2026-04-14 04:07:08,373 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164828.3730469.sysmon.evtx.gz to host
2026-04-14 04:07:08,373 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 252195, Max size: 100000000
2026-04-14 04:07:11,848 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\effd3eb4-84ba-43b9-a169-f52dcfeac960.tmp
2026-04-14 04:07:11,848 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF141ec1.TMP size is 398783, Max size: 100000000
2026-04-14 04:07:13,991 [lib.common.results] INFO: File c:\olddocs\1776164828967.saz size is 12444, Max size: 100000000
2026-04-14 04:07:14,006 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:07:16,609 [root] INFO: Added new file to list with pid None and path C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\e7334b49-97cb-4c32-82ea-ec7b681db51b.tmp
2026-04-14 04:07:16,625 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14315f.TMP size is 9233, Max size: 100000000
2026-04-14 04:07:17,093 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:07:17,359 [lib.common.results] INFO: File 1776164837296875000.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:07:17,359 [lib.common.results] INFO: File 1776164837296875000.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:07:17,359 [lib.common.results] INFO: File 1776164837296875000.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:07:17,375 [lib.common.results] INFO: File 1776164837296875000.Application.evtx.gz size is 6840, Max size: 100000000
2026-04-14 04:07:17,421 [lib.common.results] INFO: File 1776164837359375000.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:07:17,437 [lib.common.results] INFO: File 1776164837359375000.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:07:17,437 [lib.common.results] INFO: File 1776164837359375000.Security.evtx.gz size is 7963, Max size: 100000000
2026-04-14 04:07:17,453 [lib.common.results] INFO: File 1776164837359375000.System.evtx.gz size is 8295, Max size: 100000000
2026-04-14 04:07:17,468 [lib.common.results] INFO: File 1776164837406250000.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:07:23,399 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:07:25,185 [root] DEBUG: 2416: DLL loaded at 0x000007FEFB2B0000: C:\Windows\system32\NETAPI32 (0x16000 bytes).
2026-04-14 04:07:25,185 [root] DEBUG: 2416: DLL loaded at 0x000007FEFD2F0000: C:\Windows\system32\srvcli (0x23000 bytes).
2026-04-14 04:07:25,185 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 3404: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:07:25,201 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3404
2026-04-14 04:07:25,201 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 3404
2026-04-14 04:07:25,201 [root] DEBUG: 2416: Dropped file limit reached.
2026-04-14 04:07:28,485 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164848.4853513.sysmon.evtx.gz to host
2026-04-14 04:07:28,485 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 7639, Max size: 100000000
2026-04-14 04:07:32,512 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:07:32,793 [lib.common.results] INFO: File 1776164852715820300.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:07:32,809 [lib.common.results] INFO: File 1776164852715820300.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:07:32,809 [lib.common.results] INFO: File 1776164852715820300.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:07:32,809 [lib.common.results] INFO: File 1776164852715820300.Application.evtx.gz size is 6840, Max size: 100000000
2026-04-14 04:07:32,840 [lib.common.results] INFO: File 1776164852793945300.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:07:32,840 [lib.common.results] INFO: File 1776164852793945300.Security.evtx.gz size is 8072, Max size: 100000000
2026-04-14 04:07:32,856 [lib.common.results] INFO: File 1776164852778320300.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:07:32,856 [lib.common.results] INFO: File 1776164852793945300.System.evtx.gz size is 8287, Max size: 100000000
2026-04-14 04:07:32,887 [lib.common.results] INFO: File 1776164852840820300.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:07:34,126 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:07:43,514 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:07:47,165 [root] DEBUG: 2416: CreateProcessHandler: Injection info set for new process 4080: C:\Program Files\Google\Chrome\Application\chrome.exe, ImageBase: 0x000000013F290000
2026-04-14 04:07:47,165 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 4080
2026-04-14 04:07:47,165 [root] DEBUG: 2416: ProcessMessage: Skipping monitoring process 4080
2026-04-14 04:07:47,930 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:07:48,180 [lib.common.results] INFO: File 1776164868118164000.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:07:48,196 [lib.common.results] INFO: File 1776164868102539000.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:07:48,211 [lib.common.results] INFO: File 1776164868118164000.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:07:48,211 [lib.common.results] INFO: File 1776164868102539000.Application.evtx.gz size is 6915, Max size: 100000000
2026-04-14 04:07:48,243 [lib.common.results] INFO: File 1776164868180664000.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:07:48,258 [lib.common.results] INFO: File 1776164868180664000.Security.evtx.gz size is 7960, Max size: 100000000
2026-04-14 04:07:48,274 [lib.common.results] INFO: File 1776164868196289000.System.evtx.gz size is 8316, Max size: 100000000
2026-04-14 04:07:48,290 [lib.common.results] INFO: File 1776164868180664000.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:07:48,305 [lib.common.results] INFO: File 1776164868243164000.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:07:48,602 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164868.6015627.sysmon.evtx.gz to host
2026-04-14 04:07:48,602 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 28346, Max size: 100000000
2026-04-14 04:07:54,236 [lib.common.results] INFO: File c:\olddocs\1776164869198.saz size is 12943, Max size: 100000000
2026-04-14 04:07:54,251 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:08:03,389 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:08:03,608 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:08:03,670 [lib.common.results] INFO: File 1776164883608398400.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:08:03,702 [lib.common.results] INFO: File 1776164883608398400.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:08:03,702 [lib.common.results] INFO: File 1776164883608398400.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:08:03,702 [lib.common.results] INFO: File 1776164883608398400.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:08:03,749 [lib.common.results] INFO: File 1776164883670898400.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:08:03,764 [lib.common.results] INFO: File 1776164883670898400.Security.evtx.gz size is 8283, Max size: 100000000
2026-04-14 04:08:03,764 [lib.common.results] INFO: File 1776164883686523400.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:08:03,780 [lib.common.results] INFO: File 1776164883686523400.System.evtx.gz size is 8300, Max size: 100000000
2026-04-14 04:08:03,795 [lib.common.results] INFO: File 1776164883733398400.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:08:08,740 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164888.7402341.sysmon.evtx.gz to host
2026-04-14 04:08:08,740 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 34667, Max size: 100000000
2026-04-14 04:08:14,346 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:08:18,828 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:08:19,057 [lib.common.results] INFO: File 1776164899012695300.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:08:19,063 [lib.common.results] INFO: File 1776164899014648400.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:08:19,067 [lib.common.results] INFO: File 1776164899009765600.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:08:19,070 [lib.common.results] INFO: File 1776164899014648400.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:08:19,096 [lib.common.results] INFO: File 1776164899056640600.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:08:19,127 [lib.common.results] INFO: File 1776164899063476500.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:08:19,127 [lib.common.results] INFO: File 1776164899063476500.Security.evtx.gz size is 7976, Max size: 100000000
2026-04-14 04:08:19,127 [lib.common.results] INFO: File 1776164899068359300.System.evtx.gz size is 8339, Max size: 100000000
2026-04-14 04:08:19,143 [lib.common.results] INFO: File 1776164899096679600.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:08:23,755 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:08:28,825 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164908.8251953.sysmon.evtx.gz to host
2026-04-14 04:08:28,825 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 6371, Max size: 100000000
2026-04-14 04:08:34,169 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:08:34,404 [lib.common.results] INFO: File c:\olddocs\1776164909403.saz size is 6999, Max size: 100000000
2026-04-14 04:08:34,404 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:08:34,419 [lib.common.results] INFO: File 1776164914373046800.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:08:34,435 [lib.common.results] INFO: File 1776164914373046800.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:08:34,451 [lib.common.results] INFO: File 1776164914373046800.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:08:34,451 [lib.common.results] INFO: File 1776164914373046800.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:08:34,482 [lib.common.results] INFO: File 1776164914419921800.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:08:34,498 [lib.common.results] INFO: File 1776164914451171800.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:08:34,513 [lib.common.results] INFO: File 1776164914435546800.Security.evtx.gz size is 8059, Max size: 100000000
2026-04-14 04:08:34,513 [lib.common.results] INFO: File 1776164914451171800.System.evtx.gz size is 8329, Max size: 100000000
2026-04-14 04:08:34,529 [lib.common.results] INFO: File 1776164914482421800.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:08:43,842 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:08:48,948 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164928.9482422.sysmon.evtx.gz to host
2026-04-14 04:08:48,948 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 6667, Max size: 100000000
2026-04-14 04:08:49,557 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:08:49,791 [lib.common.results] INFO: File 1776164929729492100.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:08:49,791 [lib.common.results] INFO: File 1776164929729492100.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:08:49,807 [lib.common.results] INFO: File 1776164929729492100.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:08:49,807 [lib.common.results] INFO: File 1776164929729492100.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:08:49,854 [lib.common.results] INFO: File 1776164929791992100.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:08:49,870 [lib.common.results] INFO: File 1776164929791992100.Security.evtx.gz size is 8173, Max size: 100000000
2026-04-14 04:08:49,885 [lib.common.results] INFO: File 1776164929807617100.System.evtx.gz size is 8321, Max size: 100000000
2026-04-14 04:08:49,901 [lib.common.results] INFO: File 1776164929791992100.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:08:49,916 [lib.common.results] INFO: File 1776164929854492100.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:08:54,503 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:09:03,966 [modules.auxiliary.sysmon] INFO: Dumping sysmon logs
2026-04-14 04:09:04,951 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:09:05,169 [lib.common.results] INFO: File 1776164945123046800.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:09:05,169 [lib.common.results] INFO: File 1776164945123046800.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:09:05,185 [lib.common.results] INFO: File 1776164945123046800.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:09:05,216 [lib.common.results] INFO: File 1776164945169921800.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:09:05,216 [lib.common.results] INFO: File 1776164945154296800.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:09:05,216 [lib.common.results] INFO: File 1776164945169921800.Security.evtx.gz size is 8123, Max size: 100000000
2026-04-14 04:09:05,248 [lib.common.results] INFO: File 1776164945185546800.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:09:05,263 [lib.common.results] INFO: File 1776164945216796800.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:09:05,279 [lib.common.results] INFO: File 1776164945216796800.System.evtx.gz size is 8330, Max size: 100000000
2026-04-14 04:09:09,038 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164949.038086.sysmon.evtx.gz to host
2026-04-14 04:09:09,038 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 5844, Max size: 100000000
2026-04-14 04:09:10,499 [root] INFO: Analysis timeout hit, terminating analysis
2026-04-14 04:09:10,499 [lib.api.process] INFO: Terminate event set for process 2416
2026-04-14 04:09:10,499 [root] DEBUG: 2416: Terminate Event: Attempting to dump process 2416
2026-04-14 04:09:10,499 [root] DEBUG: 2416: DoProcessDump: Skipping process dump as code is identical on disk.
2026-04-14 04:09:10,530 [lib.api.process] INFO: Termination confirmed for process 2416
2026-04-14 04:09:10,530 [root] INFO: Terminate event set for process 2416
2026-04-14 04:09:10,530 [root] DEBUG: 2416: Terminate Event: monitor shutdown complete for process 2416
2026-04-14 04:09:10,530 [root] INFO: Created shutdown mutex
2026-04-14 04:09:11,535 [root] INFO: Shutting down package
2026-04-14 04:09:11,535 [root] INFO: Stopping auxiliary modules
2026-04-14 04:09:11,535 [modules.auxiliary.curtain] ERROR: Curtain - Error collecting PowerShell events - [WinError 6] The handle is invalid
2026-04-14 04:09:11,535 [lib.common.results] INFO: File C:\curtain.log size is 0, Max size: 100000000
2026-04-14 04:09:11,550 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:09:11,769 [lib.common.results] INFO: File 1776164951707031200.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:09:11,769 [lib.common.results] INFO: File 1776164951707031200.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:09:11,769 [lib.common.results] INFO: File 1776164951707031200.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:09:11,769 [lib.common.results] INFO: File 1776164951722656200.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:09:11,800 [lib.common.results] INFO: File 1776164951769531200.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:09:11,816 [lib.common.results] INFO: File 1776164951769531200.Security.evtx.gz size is 8029, Max size: 100000000
2026-04-14 04:09:11,832 [lib.common.results] INFO: File 1776164951769531200.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:09:11,847 [lib.common.results] INFO: File 1776164951769531200.System.evtx.gz size is 8304, Max size: 100000000
2026-04-14 04:09:11,863 [lib.common.results] INFO: File 1776164951800781200.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:09:14,588 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:09:16,968 [modules.auxiliary.fiddler] ERROR: Saz log file not found in guest machine
2026-04-14 04:09:16,968 [modules.auxiliary.sysmon] INFO: Doing final sysmon log dump
2026-04-14 04:09:20,312 [modules.auxiliary.evtx] INFO: Collecting logs: Application, HardwareEvents, Internet Explorer, Key Management Service, OAlerts, Security, Setup, System, Windows PowerShell
2026-04-14 04:09:20,531 [lib.common.results] INFO: File 1776164960484375000.KeyManagementService.evtx.gz size is 259, Max size: 100000000
2026-04-14 04:09:20,531 [lib.common.results] INFO: File 1776164960484375000.InternetExplorer.evtx.gz size is 250, Max size: 100000000
2026-04-14 04:09:20,531 [lib.common.results] INFO: File 1776164960484375000.Application.evtx.gz size is 6848, Max size: 100000000
2026-04-14 04:09:20,546 [lib.common.results] INFO: File 1776164960484375000.HardwareEvents.evtx.gz size is 214, Max size: 100000000
2026-04-14 04:09:20,593 [lib.common.results] INFO: File 1776164960531250000.OAlerts.evtx.gz size is 249, Max size: 100000000
2026-04-14 04:09:20,593 [lib.common.results] INFO: File 1776164960531250000.Security.evtx.gz size is 8025, Max size: 100000000
2026-04-14 04:09:20,609 [lib.common.results] INFO: File 1776164960531250000.Setup.evtx.gz size is 248, Max size: 100000000
2026-04-14 04:09:20,625 [lib.common.results] INFO: File 1776164960531250000.System.evtx.gz size is 8312, Max size: 100000000
2026-04-14 04:09:20,640 [lib.common.results] INFO: File 1776164960593750000.WindowsPowerShell.evtx.gz size is 260, Max size: 100000000
2026-04-14 04:09:22,031 [modules.auxiliary.sysmon] INFO: Uploading sysmon/1776164962.03125.sysmon.evtx.gz to host
2026-04-14 04:09:22,031 [lib.common.results] INFO: File C:\Sysmon.evtx.gz size is 5931, Max size: 100000000
2026-04-14 04:09:22,031 [root] INFO: Finishing auxiliary modules
2026-04-14 04:09:22,031 [root] INFO: Shutting down pipe server and dumping dropped files
2026-04-14 04:09:22,046 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat size is 40, Max size: 100000000
2026-04-14 04:09:22,062 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\google\chrome\user data\shadercache\gpucache\index": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\google\\chrome\\user data\\shadercache\\gpucache\\index'
2026-04-14 04:09:22,062 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Version size is 13, Max size: 100000000
2026-04-14 04:09:22,078 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History size is 126976, Max size: 100000000
2026-04-14 04:09:22,093 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001 size is 41, Max size: 100000000
2026-04-14 04:09:22,109 [lib.common.results] INFO: File c:\users\pgabriel\appdata\local\google\chrome\user data\default\site characteristics database\current size is 16, Max size: 100000000
2026-04-14 04:09:22,109 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\google\chrome\user data\default\gpucache\index": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\google\\chrome\\user data\\default\\gpucache\\index'
2026-04-14 04:09:22,109 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\MANIFEST-000001 size is 41, Max size: 100000000
2026-04-14 04:09:22,125 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log size is 5424, Max size: 100000000
2026-04-14 04:09:22,140 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\google\chrome\user data\grshadercache\gpucache\index": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\google\\chrome\\user data\\grshadercache\\gpucache\\index'
2026-04-14 04:09:22,140 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG size is 323, Max size: 100000000
2026-04-14 04:09:22,156 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000001 size is 41, Max size: 100000000
2026-04-14 04:09:22,156 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\temp\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\temp\\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp'
2026-04-14 04:09:22,156 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\temp\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\temp\\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp'
2026-04-14 04:09:22,156 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\default\6ff088e8-aaa2-4072-9649-feb065e97630.tmp does not exist, skipping
2026-04-14 04:09:22,156 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\default\7dadc225-9d11-47ef-aadc-71d10289ac30.tmp does not exist, skipping
2026-04-14 04:09:22,156 [root] WARNING: File at path c:\users\pgabriel\appdata\local\temp\80b5107f-8821-4775-bc73-d3dff4e26f4e.tmp does not exist, skipping
2026-04-14 04:09:22,156 [root] INFO: Error dumping file from path "c:\users\pgabriel\appdata\local\temp\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp": [Errno 13] Permission denied: 'c:\\users\\pgabriel\\appdata\\local\\temp\\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp'
2026-04-14 04:09:22,156 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\default\data_reduction_proxy_leveldb\000038.dbtmp does not exist, skipping
2026-04-14 04:09:22,156 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Browser size is 106, Max size: 100000000
2026-04-14 04:09:22,171 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\129c29e3-0c30-4763-9ad5-ab6034b32198.tmp does not exist, skipping
2026-04-14 04:09:22,171 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,187 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,187 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,203 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,203 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,218 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,218 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,218 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,218 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,234 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,234 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache size is 950, Max size: 100000000
2026-04-14 04:09:22,234 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,249 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,265 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\default\766bcae1-de0e-45b0-89f4-6a050c3a979f.tmp does not exist, skipping
2026-04-14 04:09:22,265 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,281 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,296 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOCK size is 0, Max size: 100000000
2026-04-14 04:09:22,312 [lib.common.results] INFO: File C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG size is 0, Max size: 100000000
2026-04-14 04:09:22,328 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\49f92ecc-3c92-4e05-98cf-93924d4c677e.tmp does not exist, skipping
2026-04-14 04:09:22,328 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\effd3eb4-84ba-43b9-a169-f52dcfeac960.tmp does not exist, skipping
2026-04-14 04:09:22,328 [root] WARNING: File at path c:\users\pgabriel\appdata\local\google\chrome\user data\default\e7334b49-97cb-4c32-82ea-ec7b681db51b.tmp does not exist, skipping
2026-04-14 04:09:22,328 [root] WARNING: Folder at path "C:\wzMwqPEfuI\debugger" does not exist, skipping
2026-04-14 04:09:22,328 [root] INFO: Uploading files at path "C:\wzMwqPEfuI\tlsdump"
2026-04-14 04:09:22,328 [lib.common.results] INFO: File C:\wzMwqPEfuI\tlsdump\tlsdump.log size is 4384, Max size: 100000000
2026-04-14 04:09:22,343 [root] INFO: Analysis completed

Machine

Name Label Manager Started On Shutdown On Route
win7office2k3flash2800137TWN3H106 win7office2k3flash2800137TWN3H106 KVM 2026-04-14 10:06:30 2026-04-14 10:09:33 internet

File Details

File Name Silver Birch _ 217_.html
File Size 27094 bytes
File Type HTML document, UTF-8 Unicode text, with CRLF line terminators
MD5 65a27e394fa8a4aa14e7ec4d5d695fda
SHA1 5bb5ff4e1eb0390e53bf5daa225f8866a9f617e4
SHA256 c17489cfc96c1a040dc3ce6532563e223a8c664f400597bdad90adb56d936a03
SHA512 cf54bbe0505e0dff4f025aaebe2b00a100dbd466e389c49e7bf623dae1f48799396c805c68e1e5f8d8b551f15c709f90274cc22949f8597f401d401f07ebc6a6
SHA3-384 bd08648332f3a10e45bccafa5eed9dd51c32adb8cbe63800374ba4ceb497168b03d8c5d7455fed8bad53c0768b0533db
CRC32 04BFD427
TLSH T1AEC29336A9C0143601B353BA6A719F58FFA38207D6025A0635BE56DB2FF6C808D67F5C
Ssdeep 384:Xt4QhLNmT5oxCvymv61AAoO5Hm8L9D+cpkqQEvVvjtMB:Xt4eLNmT5vv6EqXBEqQSiB
File
                                    
                                
<!doctype html>
<html lang="en" class="h-100">
<head>
  
  <!-- Required meta tags -->
  <meta charset="utf-8">
  <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">
  <title>Silver Birch – 217 m² sold £59k | SA66 7LF</title>
  <meta name="description"
    content="Shows plot boundary on a map, planning applications. Value of £274 per sqm (25/ft²) on 2002-11-08.">
  <meta name="geo.region" content="GB">
  <meta name="geo.placename" content="United Kingdom">
  <meta name="language" content="en-GB">
  
  
  <link rel="shortcut icon" href="https://dfwqq1t8g50i2.cloudfront.net/static/favicon.ico">
  <link rel="apple-touch-icon" sizes="180x180" href="https://dfwqq1t8g50i2.cloudfront.net/static/apple-touch-icon.png">
  <!-- Nullify requests for other sizes and precomposed versions -->
  <link rel="apple-touch-icon" sizes="120x120" href="data:,">
  <link rel="apple-touch-icon-precomposed" href="data:,">
  <link rel="apple-touch-icon" sizes="120x120-precomposed" href="data:,">

  
<link rel="canonical"
    href="https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch" />


  
  <link rel="stylesheet" href="https://cdn.jsdelivr.net/npm/bootstrap@5.0.0-beta1/dist/css/bootstrap.min.css">
  

  
  <script>window.STATIC_CDN_URL = "https://dfwqq1t8g50i2.cloudfront.net";</script>
  <!-- Global site tag (gtag.js) - Google Analytics -->
  <script async src="https://www.googletagmanager.com/gtag/js?id=G-LL8JR2NFTT"></script>
  <script>
    window.dataLayer = window.dataLayer || [];

    function gtag() {
      dataLayer.push(arguments);
    }
    gtag('js', new Date());

    gtag('config', 'G-LL8JR2NFTT');
  </script>
  

  
<style>
    /*custom description list styling - used by all users*/
    .custom-dl dt {
        width: 100%;
    }

    @media (min-width: 768px) {
        .custom-dl dt {
            width: 25%;
        }
    }

    .custom-dl dd {
        width: 100%;
    }

    @media (min-width: 768px) {
        .custom-dl dd {
            width: 75%;
        }
    }

    /* Premium content styles - only load for premium users */
    
</style>

<!-- Structured Data for SEO -->
<script type="application/ld+json">
{
  "@context": "https://schema.org",
  "@type": "House",
  "name": "Silver Birch SA66 7LF",
  "description": "Property sold for £59,500 in November 2002. 217 square metres (2,336 square feet). Price per square metre: £274. Has 1 planning application on record.",
  "url": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
  "address": {
    "@type": "PostalAddress",
    "streetAddress": "Silver Birch",
    "addressLocality": "Llandissilio",
    "postalCode": "SA66 7LF",
    "addressCountry": "GB"
  },
  
  "floorSize": {
    "@type": "QuantitativeValue",
    "value": 217,
    "unitCode": "MTK"
  },
  
  
  "additionalProperty": [
    {
      "@type": "PropertyValue",
      "name": "Last Sold Price",
      "value": 59500,
      "unitCode": "GBP"
    }
    ,{
      "@type": "PropertyValue",
      "name": "Sale Date",
      "value": "2002-11-08"
    }
    ,{
      "@type": "PropertyValue",
      "name": "Price per square metre",
      "value": 274,
      "unitCode": "GBP"
    }
    
    
    
    
    ,
    {
      "@type": "PropertyValue",
      "name": "Planning Application 1",
      "value": "Full and householder planning - Approved (July 2008)"
    }
    
  ],
  
  
  "hasMap": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
  
  "publisher": {
    "@type": "Organization",
    "name": "HouseMetric",
    "url": "https://housemetric.co.uk"
  }
}
</script>





    



    




<script type="application/ld+json">
{
  "@context": "https://schema.org",
  "@type": "BreadcrumbList",
  "itemListElement": [{
  "@type": "ListItem",
  "item": "https://housemetric.co.uk",
  "name": "Home",
  "position": 1
},{
  "@type": "ListItem",
  "item": "https://housemetric.co.uk/analysis/sector/SA66-7/Llandissilio",
  "name": "SA66 7",
  "position": 2
},{
  "@type": "ListItem",
  "item": "https://housemetric.co.uk/house-prices/na/SA66-7LF/",
  "name": "SA66 7LF",
  "position": 3
},{
  "@type": "ListItem",
  "item": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
  "name": "Silver Birch",
  "position": 4
}]
}
</script>


  
</head>

<body class="d-flex flex-column h-100">

  

  <nav class="navbar navbar-expand-md navbar-dark pt-2 pb-2 mb-2" style="background-color: #234e70;" aria-label="navbar">
    <div class="container-fluid">
      <a class="navbar-brand pt-0" href="/">
        <span class="mb-0 fs-4">HouseMetric</span>
      </a>
      <button class="navbar-toggler" type="button" data-bs-toggle="collapse" data-bs-target="#navbarsExample04" aria-controls="navbarsExample04" aria-expanded="false" aria-label="Toggle navigation">
        <span class="navbar-toggler-icon"></span>
      </button>

      <div class="collapse navbar-collapse" id="navbarsExample04">
        <ul class="navbar-nav me-auto mb-2 mb-md-0">
          <li class="nav-item">
            <a class="nav-link hover-underline" 
            
            href="/map/SA66-7/">
            
            Map</a>
          </li>
          <li class="nav-item dropdown">
            <a class="nav-link dropdown-toggle hover-underline" href="#" id="market-analysis-dropdown" data-bs-toggle="dropdown" aria-expanded="false">
              Analysis
            </a>
            <ul class="dropdown-menu" aria-labelledby="market-analysis-dropdown">
              <li><a class="dropdown-item hover-underline" href="/geography-search">Local analysis</a></li>
              <li><a class="dropdown-item hover-underline" href="/custom-charts">Custom histogram</a></li>
            </ul>
          </li>
          <li class="nav-item dropdown">
            <a class="nav-link dropdown-toggle hover-underline" href="#" id="rawDataDropdown" role="button" data-bs-toggle="dropdown" aria-expanded="false">
              Search
            </a>
            <ul class="dropdown-menu" aria-labelledby="rawDataDropdown">
              <li><a class="dropdown-item hover-underline" href="/basic-search">Basic search</a></li>
              <li><a class="dropdown-item hover-underline" href="/advanced-search">Advanced search</a></li>
              <li><a class="dropdown-item hover-underline" href="/epc-search">EPC search</a></li>
              <li><a class="dropdown-item hover-underline" href="/company-search">Company search</a></li>
            </ul>
          </li>
        </ul>
        <ul class="navbar-nav">
          
            <li class="nav-item">
              <a class="nav-link hover-underline" href="/login">Login</a>
            </li>
          
        </ul>
      </div>
    </div>
  </nav>

  <style>
  .hover-underline {
    position: relative;
    text-decoration: none;
  }
  
  .hover-underline::after {
    content: '';
    position: absolute;
    width: 100%;
    height: 2px;
    bottom: 0;
    left: 0;
    background-color: #fff;
    transform: scaleX(0);
    transition: transform 0.3s ease-out;
  }
  
  .hover-underline:hover::after {
    transform: scaleX(1);
  }
  
  .dropdown-menu {
    background-color: #234e70;
  }
  
  .dropdown-item {
    color: rgba(255, 255, 255, 0.55);
  }
  
  .dropdown-item:hover, .dropdown-item:focus {
    background-color: rgba(255, 255, 255, 0.1);
    color: #fff;
  }
  
  .dropdown-item.hover-underline::after {
    bottom: 2px;
  }
  </style>


  <!-- BEGIN page content (includes messages and app_content)-->
  
  <main>
    <div class="container-xxl">
      <!-- messageblock -->
      
      
      
      
      
      <!-- app_content block-->
      
<!-- Breadcrumbs -->
<div>
    <nav aria-label="breadcrumb">
        <ol class="breadcrumb">
            
            <li class="breadcrumb-item"><a
                    href="https://housemetric.co.uk/analysis/sector/SA66-7/Llandissilio">SA66 7</a></li>
            
             <truncated>
<button class="navbar-toggler" type="button" data-bs-toggle="collapse" data-bs-target="#navbarsExample04" aria-controls="navbarsExample04" aria-expanded="false" aria-label="Toggle navigation">
While most of HouseMetric is free, a modest contribution helps cover the costs of resource intensive features like image archives, advanced searches and fast data updates.
<dd><b>July 2008</b> <a href="https://planning.agileapplications.co.uk/pembrokeshire/application-details/19658" target="_blank" rel="nofollow">08/0241/PA</a></dd>
<a class="nav-link dropdown-toggle hover-underline" href="#" id="rawDataDropdown" role="button" data-bs-toggle="dropdown" aria-expanded="false">
<a class="nav-link dropdown-toggle hover-underline" href="#" id="market-analysis-dropdown" data-bs-toggle="dropdown" aria-expanded="false">
<dd class="col-sm-8">Extension to existing dwelling and conversion of existing double garage into annex accommodation.</dd>
<input class="form-check-input" type="radio" name="product_type" id="oneTime" value="onetime" checked>
<input type="email" class="form-control" id="email" name="email" required placeholder="Enter your email">
<input class="form-check-input" type="radio" name="product_type" id="recurring" value="recurring">
<nav class="navbar navbar-expand-md navbar-dark pt-2 pb-2 mb-2" style="background-color: #234e70;" aria-label="navbar">
<link rel="apple-touch-icon" sizes="180x180" href="https://dfwqq1t8g50i2.cloudfront.net/static/apple-touch-icon.png">
<dd>Infer the current value by seeing what similar properties have sold for recently. To view
<div class="modal fade join-modal" id="joinModal" tabindex="-1" aria-labelledby="joinModalLabel" aria-hidden="true">
<span class="text-muted">Easy recurring monthly payment - cancel anytime</span>
<link rel="stylesheet" href="https://cdn.jsdelivr.net/npm/bootstrap@5.0.0-beta1/dist/css/bootstrap.min.css">
<button type="button" class="btn-close" data-bs-dismiss="modal" aria-label="Close"></button>
document.querySelectorAll('.lightbox-thumb[data-lightbox-group="floorplan"]').forEach(function(el) {
<li><a class="dropdown-item hover-underline" href="/geography-search">Local analysis</a></li>
<li><a class="dropdown-item hover-underline" href="/advanced-search">Advanced search</a></li>
items.push({ src: el.dataset.lightboxSrc, caption: el.dataset.lightboxCaption || '', el: el });
items.push({ src: el.dataset.lightboxSrc, caption: el.dataset.lightboxCaption || '', el: el });
<li><a class="dropdown-item hover-underline" href="/custom-charts">Custom histogram</a></li>
<p class="text-center text-muted mt-3 mb-4 small">Secure payment powered by Stripe</p>
<button type="button" class="btn btn-primary me-2" id="lightboxPrev">Previous</button>
<li><a class="dropdown-item hover-underline" href="/company-search">Company search</a></li>
href="https://housemetric.co.uk/analysis/sector/SA66-7/Llandissilio">SA66 7</a></li>
document.querySelectorAll('.lightbox-thumb[data-lightbox-group="photo"]').forEach(function(el) {
<button type="button" class="btn btn-secondary" data-bs-dismiss="modal">Close</button>
<li><a class="dropdown-item hover-underline" href="/basic-search">Basic search</a></li>
href="https://housemetric.co.uk/analysis/sector/SA66-7/Llandissilio">
<button type="submit" class="btn btn-primary">Start Your Premium Access</button>
if (e.target.id === 'lightboxModal') document.removeEventListener('keydown', handleKeydown);
<li><a class="dropdown-item hover-underline" href="/epc-search">EPC search</a></li>
<li class="py-1">Extra map layers (growth rates & planning apps)</li>
<button type="button" class="btn btn-primary" id="lightboxNext">Next</button>
if (e.target.id === 'lightboxModal') document.addEventListener('keydown', handleKeydown);
<dd><b>19 January 2024</b> - energy performance certificate grade E</dd>
<dd><b>03 October 2008</b> - energy performance certificate grade D</dd>
<h5 class="modal-title fw-bold" id="joinModalLabel">Unlock Premium Access</h5>
<script src="https://cdn.jsdelivr.net/npm/bootstrap@5.3.2/dist/js/bootstrap.bundle.min.js"
<link rel="shortcut icon" href="https://dfwqq1t8g50i2.cloudfront.net/static/favicon.ico">
For context, homes in Llandissilio are now selling for between
<a href="#" data-bs-toggle="modal" data-bs-target="#joinModal"
<div class="modal-dialog modal-dialog-centered modal-xl" style="margin: 0.5rem auto;">
according to latest <a href="#epc-section">EPC inspection</a>
document.getElementById('joinModal').addEventListener('show.bs.modal', function (event) {
<meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">
<script async src="https://www.googletagmanager.com/gtag/js?id=G-LL8JR2NFTT"></script>
59,500 in November 2002. 217 square metres (2,336 square feet). Price per square metre:
<li class="py-1">No quibbles refund if you're not happy</li>
<div class="modal-footer d-flex justify-content-between align-items-center">
<!-- JavaScript Bundle with Popper as we need it for sort by dropdowns, and modals -->
integrity="sha384-C6RzsynM9kWDrMNeT87bh95OGNyZPhcTNXj1NW7RuBCsyN/o0jlpcV8Qyq46cDfL"
<dd class="col-sm-8">Silver Birch, MAENCLOCHOG, Clunderwen</dd>
style="object-fit: contain; max-height: calc(90vh - 40px);" alt="">
The data were last updated 2026-04-11. See <a href="/faq">FAQs</a> for further
<br><small class="text-muted">Use arrow keys to navigate</small>
bsModal = new bootstrap.Modal(document.getElementById('lightboxModal'));
analysis of Llandissilio SA66-7</a> housing market.
<li class="py-1">Valuation comparables search tool</li>
<script>window.STATIC_CDN_URL = "https://dfwqq1t8g50i2.cloudfront.net";</script>
<div class="card-header h2" id="epc-section">EPC Inspections</div>
<form id="joinForm" method="POST" action="/create-quick-checkout">
document.getElementById('lightboxPrev').addEventListener('click', function() {
document.getElementById('lightboxNext').addEventListener('click', function() {
if (currentIndex < items.length - 1) { currentIndex++; updateLightbox(); }
<ul class="dropdown-menu" aria-labelledby="market-analysis-dropdown">
href="https://housemetric.co.uk/house-prices/na/SA66-7LF/">
Walls: Cavity wall, as built, insulated (assumed).
Walls: Cavity wall, as built, insulated (assumed).
} else if (e.key === 'ArrowRight' && currentIndex < items.length - 1) {
<strong class="d-block mb-1">1 Month Access:
<span class="text-muted">One time payment of
<strong class="d-block mb-1">Ongoing access:
<dt class="col-sm-4 text-sm-right">Description:</dt>
<label class="form-check-label" for="recurring">
<div class="modal fade" id="lightboxModal" tabindex="-1" aria-hidden="true">
content="Shows plot boundary on a map, planning applications. Value of
caption.textContent = text ? text + ' \u2014 ' + counter : counter;
"item": "https://housemetric.co.uk/analysis/sector/SA66-7/Llandissilio",
data-source="valuation-comp">join now</a>.
<label class="form-check-label" for="oneTime">
<link rel="apple-touch-icon" sizes="120x120-precomposed" href="data:,">
<a class="nav-link hover-underline" href="/login">Login</a>
<ul class="dropdown-menu" aria-labelledby="rawDataDropdown">
using the valuation comparables search tool,
<dt class="col-sm-4 text-sm-right">Address:</dt>
<input type="hidden" name="source" id="sourceInput">
<div class="card-header h2">Planning applications</div>
"hasMap": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
<!-- <div class="card-header">Silver Birch </div> -->
<li class="py-1">Floor plans & photos</li>
<li class="py-1">Custom chart builder</li>
href="https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch" />
"value": "Full and householder planning - Approved (July 2008)"
<!-- Hides if psqm_median is missing -->
Full and householder planning application
Roof: Roof room(s), insulated (assumed).
Crown copyright and database right 2024. This data is licensed under
<!-- Nullify requests for other sizes and precomposed versions -->
"item": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
"url": "https://housemetric.co.uk/5962480/SA66-7LF/Silver+Birch",
Roof: Pitched, 200 mm loft insulation.
<!-- js needed to pass source for logging which link was clicked-->
if (currentIndex > 0) { currentIndex--; updateLightbox(); }
<div class="collapse navbar-collapse" id="navbarsExample04">
<div class="card"> <!--Div Individual property card-->
<img id="lightboxImg" src="" class="d-block w-100"
<li class="breadcrumb-item active">Silver Birch </li>
square foot) total internal area</dd>
square foot) total internal area</dd>
var caption = document.getElementById('lightboxCaption');
var counter = (currentIndex + 1) + ' of ' + items.length;
e.preventDefault(); currentIndex--; updateLightbox();
e.preventDefault(); currentIndex++; updateLightbox();
"item": "https://housemetric.co.uk/house-prices/na/SA66-7LF/",
<!-- BEGIN page content (includes messages and app_content)-->
</div> <!--Div Individual property card body-->
Heating: Boiler and radiators, oil.
Heating: Boiler and radiators, oil.
document.getElementById('sourceInput').value = source || '';
<div class="card-header h2">Property data</div>
nextBtn.disabled = (currentIndex === items.length - 1);
/* Premium content styles - only load for premium users */
var prevBtn = document.getElementById('lightboxPrev');
var nextBtn = document.getElementById('lightboxNext');
document.addEventListener('hidden.bs.modal', function(e) {
<!-- END page content (includes messages and app_content)-->
<link rel="apple-touch-icon" sizes="120x120" href="data:,">
Estimated year built 1996 to 2002
Estimated year built 2003 to 2006
<ul class="benefits-list mb-0 small">
document.addEventListener('shown.bs.modal', function(e) {
box-shadow: 0 0.125rem 0.25rem rgba(0, 0, 0, 0.075);
<div class="d-flex align-items-center mb-3">
<!-- Single lightbox modal for all photos and floorplans -->
/*custom description list styling - used by all users*/
box-shadow: 0 0 0 0.25rem rgba(13, 110, 253, 0.25);
<!-- Hides if psqm is missing -->
<!-- end hide psqm_median -->
<!-- Hides if psqm is missing -->
<link rel="apple-touch-icon-precomposed" href="data:,">
this list for Silver Birch,
var img = document.getElementById('lightboxImg');
var thumb = e.target.closest('.lightbox-thumb');
if (e.key === 'ArrowLeft' && currentIndex > 0) {
<!-- Global site tag (gtag.js) - Google Analytics -->
<meta name="geo.placename" content="United Kingdom">
<dt>Valuation comparables</dt>
</div> <!--Div Individual property card-->
const source = button.getAttribute('data-source');
<span id="lightboxCaption"></span>
(est. today's value:
<ul class="navbar-nav me-auto mb-2 mb-md-0">
217 square metres (2,336
, has 8 habitable rooms.
, has 9 habitable rooms.
<div class="modal-dialog modal-dialog-centered">
document.addEventListener('click', function(e) {
<span class="mb-0 fs-4">HouseMetric</span>
if (items[i].el === thumbEl) return i;
Contains HM Land Registry & EPC & OS data
<span class="navbar-toggler-icon"></span>
<dt>Council tax band</dt>
if (index >= 0 && index < items.length) {
<a class="nav-link hover-underline"
<div class="container" style="padding-top: 1em">
Application approved
<dt>Reason for EPC:</dt>
<dd> Owner-occupied</dd>
<dt>Reason for EPC:</dt>
<dd> Owner-occupied</dd>
<div class="form-check">
<div class="form-check">
<p class="text-muted small">
prevBtn.disabled = (currentIndex === 0);
for (var i = 0; i < items.length; i++) {
background-color: rgba(255, 255, 255, 0.1);
<!-- end hide psqm -->
<dt>Property type:</dt>
<dt>Property type:</dt>
var text = items[currentIndex].caption;
<footer class="footer mt-auto py-3 bg-white">
the Open Government Licence v3.0.<br />
window.dataLayer = window.dataLayer || [];
.dropdown-item:hover, .dropdown-item:focus {
<dl class="row custom-dl">
<dt>Internal area</br>
<dl class="row custom-dl">
<dt>Planning ref:</dt>
<dl class="row custom-dl">
<dd>marketed sale</dd>
<dl class="row custom-dl">
<dd>marketed sale</dd>
<dt>Sale history</dt>
274. Has 1 planning application on record.",
<a class="navbar-brand pt-0" href="/">
<!-- for the Join (subscribe) modal -->
<div class="modal-header py-2">
<li class="breadcrumb-item"><a
<li class="breadcrumb-item"><a
<!-- Planning applications -->
Detached House
<dd>217 sqm (2,336
<dt>Comments:</dt>
Detached House
<dd>161 sqm (1,733
<dt>Comments:</dt>
.join-modal .benefits-list li:before {
14.99 gives full access for a month</span>
img.src = items[currentIndex].src;
.dropdown-item.hover-underline::after {
<dt>Bedrooms</dt>
<dt>Summary:</dt>
<dt>Summary:</dt>
transition: all 0.2s ease-in-out;
<div class="text-center">
<meta name="language" content="en-GB">
<li class="nav-item dropdown">
<li class="nav-item dropdown">
transition: transform 0.3s ease-out;
square feet)
</dl> <!--Div row-->
<dt>Status:</dt>
<dt>Tenure:</dt>
<dt>Tenure:</dt>
<div class="modal-body p-0">
currentIndex = findIndex(thumb);
<meta name="geo.region" content="GB">
"name": "Price per square metre",
"name": "Planning Application 1",
<body class="d-flex flex-column h-100">
<div class="card-body">
<div class="card-body">
<div class="card-body">
const button = event.relatedTarget;
img.src = items[index].src;
"addressLocality": "Llandissilio",
"url": "https://housemetric.co.uk"
"item": "https://housemetric.co.uk",
<dt>Type:</dt>
<dt>Area:</dt>
<dt>Area:</dt>
padding: 1.5rem 1.5rem 0.5rem;
<div class="mb-3">
<div class="mb-4">
color: rgba(255, 255, 255, 0.55);
SA66 7LF</a></li>
</br>
Nov 2002.
. See the
<!-- -->
<dt>Type</dt>
Detached
<!-- end hide flrplns -->
.join-modal .form-control:focus {
crossorigin="anonymous"></script>
"description": "Property sold for
"streetAddress": "Silver Birch",
<h1> Silver Birch, SA66 7LF</h1>
2002
<div class="modal-body">
</label>
</label>
gtag('config', 'G-LL8JR2NFTT');
<script type="application/ld+json">
"@context": "https://schema.org",
<script type="application/ld+json">
"@context": "https://schema.org",
.join-modal .form-check:hover {
.join-modal .benefits-list li {
<div class="modal-content">
<div class="modal-content">
"name": "Silver Birch SA66 7LF",
</div>
background-color: #f8f9fa;
background-color: #f8f9fa;
border: 1px solid #e9ecef;
background-color: #ffffff;
background-color: #ffffff;
background-color: #ffffff;
border: 1px solid #dee2e6;
var img = new Image();
if (!items.length) return;
preload(currentIndex - 1);
preload(currentIndex + 1);
preload(currentIndex + 2);
"@type": "QuantitativeValue",
<div class="container-fluid">
<li class="nav-item">
.hover-underline:hover::after {
<nav aria-label="breadcrumb">
<div>
</dd>
</dd>
<dl class="row"></dl>
<dl class="row"></dl>
<dl class="row"></dl>
function findIndex(thumbEl) {
dataLayer.push(arguments);
<!-- Structured Data for SEO -->
"name": "Last Sold Price",
href="/map/SA66-7/">
</div> <!-- end of container -->
.join-modal .benefits-list {
<small class="text-muted">
@media (min-width: 768px) {
@media (min-width: 768px) {
"@type": "PropertyValue",
"@type": "PropertyValue",
"@type": "PropertyValue",
"@type": "PropertyValue",
<li class="nav-item">
<ul class="navbar-nav">
<div class="container-xxl">
<!-- app_content block-->
<ol class="breadcrumb">
<div class="col-md-12">
<dd> na
na
.join-modal .modal-header {
.join-modal .form-control {
function updateLightbox() {
function handleKeydown(e) {
<div class="container-xxl">
<html lang="en" class="h-100">
background-color: #234e70;
<a
<div class="card">
<div class="card">
margin-bottom: 1.2rem;
border-radius: 0.5rem;
border-color: #dee2e6;
border-color: #86b7fe;
.join-modal .btn-primary {
</div>
</div>
<!-- Required meta tags -->
"@type": "PostalAddress",
"postalCode": "SA66 7LF",
<!-- Descriptive list -->
</dt>
</dd>
per square meter (foot)</dt>
(
(
</dd>
</dd>
</dd>
</dd>
</dd>
</dd>
</dd>
</dd>
</dd>
<div class="container-fluid">
.join-modal .modal-body {
.join-modal .form-check {
</ul>
function preload(index) {
"@type": "Organization",
"@type": "BreadcrumbList",
<dd>
<dd>
<dt>
<dd>
<dd>
<dd>
<dd>
<dd>
<dd>
<dd>
<dd>
<dd>
border-bottom: none;
gtag('js', new Date());
"value": "2002-11-08"
.hover-underline::after {
background-color: #fff;
<!-- messageblock -->
padding-left: 2rem;
position: relative;
position: absolute;
function buildItems() {
if (!thumb) return;
e.preventDefault();
<meta name="description"
"addressCountry": "GB"
"name": "Sale Date",
"name": "HouseMetric",
text-decoration: none;
<hr />
font-size: 1.1rem;
padding: 0.875rem;
font-size: 1.1rem;
padding: 0.5rem 0;
font-weight: bold;
</div>
</div>
</div>
"additionalProperty": [
"name": "Silver Birch",
transform: scaleX(0);
transform: scaleX(1);
<div class="page-header">
</dl>
</dl>
</dl>
padding: 0.75rem;
font-weight: 500;
list-style: none;
<div>
var currentIndex = 0;
updateLightbox();
<meta charset="utf-8">
padding: 1.5rem;
padding-left: 0;
.custom-dl dt {
width: 25%;
.custom-dl dd {
width: 75%;
"unitCode": "GBP"
"unitCode": "GBP"
"itemListElement": [{
position: relative;
position: absolute;
color: #198754;
</form>
var bsModal = null;
if (!bsModal) {
bsModal.show();
<title>Silver Birch
59k | SA66 7LF</title>
"@type": "ListItem",
"@type": "ListItem",
"@type": "ListItem",
"@type": "ListItem",
Analysis
2,820 per square metre
</div>
</div>
padding: 1rem;
</div>
</div>
</div>
<link rel="canonical"
function gtag() {
"unitCode": "MTK"
"value": 59500,
"name": "SA66 7LF",
<div class="row">
10 per month</strong>
<div>
buildItems();
width: 100%;
width: 100%;
Search
.hover-underline {
<!-- Breadcrumbs -->
261 per square foot)
width: 100%;
information.
.custom-dl dt {
.custom-dl dd {
"@type": "House",
"value": 274,
"name": "SA66 7",
Map</a>
var items = [];
items = [];
) on 2002-11-08.">
.dropdown-menu {
.dropdown-item {
</div>
</div>
content: "
</div>
</div>
</div>
</div>
"value": 217,
"name": "Home",
</ul>
</ul>
</li>
return 0;
"floorSize": {
"publisher": {
</a>
</a>
content: '';
width: 100%;
height: 2px;
color: #fff;
bottom: 2px;
left: 0;
<!doctype html>
"position": 1
"position": 2
"position": 3
"position": 4
</button>
</li>
</li>
</li>
25 per sqft) in
"address": {
bottom: 0;
</div>
14.99</strong>
</div>
</div>
</small>
</ul>
</ul>
</ol>
59,500 on Nov
(function() {
</div>
left: 0;
</script>
274 per sqm
});
});
</footer>
sqm (25/ft
<script>
</a>
</div>
</style>
</nav>
1,980 and
</div>
</div>
</div>
</div>
</div>
}
}
</script>
</script>
<style>
</script>
}
}
}
}
</script>
</main>
</style>
</nav>
<main>
169,517)
183 and
</style>
<script>
<script>
<style>
</head>
<style>
});
});
});
});
});
</body>
</html>
<head>
sold
,{
,{
</div>
</div>
</div>
</div>
}
}
}
}
}
{
}
}
}
,
{
}
<div>
}
}
}
}
}
}
}
}
}
}
}
}
}
}
}
})();

Processing ( 39.91 seconds )

  • 16.295 Suricata
  • 15.176 CAPE
  • 3.724 Zircolite
  • 1.595 BehaviorAnalysis
  • 1.324 Dropped
  • 0.886 NetworkAnalysis
  • 0.705 Fiddler
  • 0.071 ZfileRep
  • 0.064 Deduplicate
  • 0.04 TargetInfo
  • 0.017 AnalysisInfo
  • 0.006 Static
  • 0.004 Strings
  • 0.002 Debug
  • 0.001 ProcDump
  • 0.001 TLSMasterSecrets

Signatures ( 0.51 seconds )

  • 0.115 stealth_file
  • 0.095 guloader_apis
  • 0.065 sigma
  • 0.029 ransomware_files
  • 0.021 masquerade_process_name
  • 0.019 accesses_recyclebin
  • 0.016 ransomware_extensions
  • 0.014 antiav_detectfile
  • 0.011 mimics_filetime
  • 0.01 antivm_generic_disk
  • 0.009 virus
  • 0.009 infostealer_bitcoin
  • 0.008 reads_self
  • 0.007 bootkit
  • 0.006 antianalysis_detectfile
  • 0.005 hancitor_behavior
  • 0.005 antivm_vbox_files
  • 0.005 infostealer_ftp
  • 0.004 decoy_document
  • 0.004 stealth_timeout
  • 0.003 infostealer_im
  • 0.003 poullight_files
  • 0.003 qulab_files
  • 0.002 api_spamming
  • 0.002 banned_exe_write
  • 0.002 Vidar Behavior
  • 0.002 network_tor
  • 0.002 persistence_autorun
  • 0.002 NewtWire Behavior
  • 0.002 neshta_files
  • 0.002 antidbg_devices
  • 0.002 antivm_vmware_files
  • 0.002 infostealer_cookies
  • 0.002 cryptbot_files
  • 0.002 infostealer_mail
  • 0.001 betabot_behavior
  • 0.001 hawkeye_behavior
  • 0.001 kazybot_behavior
  • 0.001 kibex_behavior
  • 0.001 office_write_exe
  • 0.001 rat_nanocore
  • 0.001 stack_pivot_file_created
  • 0.001 tinba_behavior
  • 0.001 antiav_detectreg
  • 0.001 antivm_vbox_devices
  • 0.001 geodo_banking_trojan
  • 0.001 codelux_behavior
  • 0.001 disables_windows_defender_logging
  • 0.001 removes_windows_defender_contextmenu
  • 0.001 apocalypse_stealer_file_behavior
  • 0.001 echelon_files
  • 0.001 modirat_behavior
  • 0.001 rat_pcclient
  • 0.001 territorial_disputes_sigs
  • 0.001 ursnif_behavior

Reporting ( 0.19 seconds )

  • 0.168 TMPFSCLEAN
  • 0.024 JsonDump
  • 0.001 ReSubmitExtractedEXE

Signatures

Network activity detected but not expressed in API logs

Screenshots


Hosts

Direct IP Country Name
N 142.250.151.94 [VT] United States
N 52.222.161.174 [VT] United States
N 192.178.223.84 [VT] United States
Y 8.8.8.8 [VT] United States

DNS

Name Response Post-Analysis Lookup
accounts.google.com [VT] A 192.178.223.84 [VT] 192.178.223.84 [VT]
dfwqq1t8g50i2.cloudfront.net [VT] A 52.222.161.174 [VT]
A 52.222.161.164 [VT]
A 52.222.161.171 [VT]
A 52.222.161.106 [VT]
52.222.161.106 [VT]
_googlecast._tcp.local [VT]
www.gstatic.com [VT] A 142.250.151.94 [VT] 142.250.140.94 [VT]

Summary

C:\Windows\Globalization\Sorting\sortdefault.nls
\??\pipe\crashpad_2416_MXVKAIBVGKLVBKYE
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\reports
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome.dll
C:\Windows\System32\oleaccrc.dll
C:\Program Files\Google\Chrome\Application\92.0.4515.131\icudtl.dat
C:\Program Files\Google\Chrome\Application\92.0.4515.131\v8_context_snapshot.bin
\??\PIPE\wkssvc
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-69DE1FC4-970.pma
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome_100_percent.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome_200_percent.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\Locales\en-US.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources.pak
\??\Nsi
\DEVICE\NETBT_TCPIP_{7F6B1AE5-804D-4272-AD8A-B0FE1231F5C7}
\DEVICE\NETBT_TCPIP_{846EE342-7039-11DE-9D20-806E6F6E6963}
C:\Windows\System32\drivers\etc\hosts
\??\pipe\mojo.2416.2540.709755646842323512
C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm
\??\pipe\mojo.2416.2540.15778532132677200456
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_0
\??\pipe\mojo.2416.2540.1379105788163177410
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\lockfile
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Version
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_3
\??\PIPE\samr
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
\??\pipe\mojo.2416.2540.18054219616049510743
\??\pipe\mojo.2416.2540.8658788887849001408
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Visited Links
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\wasm\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Address Validation Rules
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old~RF13b691.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Login Data For Account
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Trusted Vault
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources\web_store\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources\pdf\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.10_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.10_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.10_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000001.dbtmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.10_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.2_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.2_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_metadata\computed_hashes.json
C:\Program Files\Google\Chrome\Application\92.0.4515.131\WidevineCdm\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\pnacl\0.57.44.2492\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\manifest.json
C:\Program Files\Google\Chrome\Application\92.0.4515.131\MEIPreload\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Floc\1.0.6\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OriginTrials\1.0.0.8\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crowd Deny\2021.8.2.1142\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Floc\1.0.6\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\hyphen-data\94.0.4605.0\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\hyphen-data\94.0.4605.0\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Subresource Filter\Unindexed Rules\9.28.0\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7d32e619-f9a0-467f-ab1c-214f845e1f49.tmp
C:\Program Files\Google\Chrome\Application\92.0.4515.131\default_apps\external_extensions.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_3
\??\pipe\mojo.2416.2700.8909175226232723482
\??\pipe\mojo.2416.2700.18072532917841406812
\??\pipe\mojo.2416.2540.15088668660338866035
\??\pipe\mojo.2416.2540.4872777213475951213
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old~RF13baf6.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_3
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old~RF13bc4e.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\wasm\index-dir\the-real-index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\the-real-index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\dasherSettingSchema.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\icons\app\icon-16.png
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\manifest.js
\??\pipe\mojo.2416.2700.3873627333688407937
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\solve\script.js
\??\pipe\mojo.2416.2540.14903452208908704262
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_locales\en\messages.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crowd Deny\2021.8.2.1142\Preload Data
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\solve\reset-button.css
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\content\setup.js
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal
\??\pipe\mojo.2416.2700.6970298780376707427
\??\pipe\mojo.2416.2540.16335396142633635254
C:\Users\pgabriel\AppData\Local\Temp\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp
C:\Users\pgabriel\AppData\Local\Temp\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp
C:\Users\pgabriel\AppData\Local\Temp\Silver Birch _ 217_.html
C:\Windows\System32\tzres.dll
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6ff088e8-aaa2-4072-9649-feb065e97630.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bd87.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7dadc225-9d11-47ef-aadc-71d10289ac30.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bda6.TMP
\Device\Afd\Endpoint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\background\index.html
\??\pipe\mojo.2416.2540.12229236660368854495
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old~RF13be04.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History-journal
C:\Users\pgabriel\AppData\Local\Temp\80b5107f-8821-4775-bc73-d3dff4e26f4e.tmp
C:\Users\pgabriel\AppData\Local\Temp\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Session_13358475346077945
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Session_13420638407628351
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\common.js
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_locales\en\messages.json
\??\pipe\mojo.2416.2540.10410846439887349727
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG.old~RF13c0b3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old~RF13c101.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\000003.log
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\4115B847987746DC19A7DDAEAEE475CB706D1486
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\50898D7FA8C7376F068EC639F8C8211ED8704579
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\5FECE117293132B5AA39AECD9ECABB7A95BC91C8
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\7156BF4D09609656B4EA58A16D2AF7E85AEC54A7
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\73B42F65751749073832809A62801A542A21F9EA
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\D394539080B1A12E1F64A1F908870C18C0BFAAB8
C:\Windows\System32\rsaenh.dll
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\BE0C02830C55CE69FC619697772E65381FBECA89
\??\pipe\mojo.2416.2540.665560977221425299
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\5CE1AA9FFF95D4C0EEB245B298445ED9B5F2FDC2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Tabs_13420638409297351
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\blob_storage\0f07aa28-642e-461e-85d9-b49db9fb5dc3
C:\Windows\System32\en-US\kernel32.dll.mui
\??\usb#root_hub20#4&2d0b3f6d&0#{f18a0e88-c30c-11d0-8815-00a0c906bed8}
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-66299726-990.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CrashpadMetrics.pma
C:
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\PreferredApps
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\heavy_ad_intervention_opt_out.db
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old~RF13d852.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Translate Ranker Model
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Shortcuts
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000036
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000037.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000039.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000038
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000038.dbtmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FontLookupTableCache\font_unique_name_table.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT~RF13dac3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Browser
C:\Windows\System32\en-US\DWrite.dll.mui
C:\Program Files\Google\Chrome\Application\92.0.4515.131\MEIPreload\preloaded_data.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\download_file_types.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\crl-set
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\AutofillRegex\2021.2.22.1142\data.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\english_wikipedia.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ClientSidePhishing\25\client_model.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\male_names.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\passwords.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\DesktopSharingHub\20210609.1\desktop_sharing_hub.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\ssl_error_assistant.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\us_tv_and_film.txt
C:\Windows\System32\en-US\KERNELBASE.dll.mui
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\129c29e3-0c30-4763-9ad5-ab6034b32198.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF13dc69.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old~RF13df67.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG.old~RF13dfa5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG.old~RF13dfc4.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.old~RF13e032.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\000003.log
C:\Program Files\WinRAR\RarExt.dll
C:\Windows\System32\webcheck.dll
C:\Program Files\Microsoft Office\Office15\OLKFSTUB.DLL
C:\Program Files\Microsoft Office\Office15\NAMEEXT.DLL
C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL
C:\Program Files\Microsoft Office\Office15\VISSHE.DLL
C:\Program Files\Microsoft Office\Office15\ONFILTER.DLL
C:\Program Files\Common Files\Microsoft Shared\OFFICE15\msoshext.dll
C:\Program Files\Microsoft Office\Office15\MSOHEVI.DLL
C:\Program Files\7-Zip\7-zip.dll
C:\Windows\System32\mf.dll
C:\Windows\System32\shdocvw.dll
C:\Windows\System32\ntshrui.dll
C:\Windows\System32\shell32.dll
C:\Windows\System32\syncui.dll
C:\Program Files\Notepad++\NppShell_06.dll
C:\Windows\System32\cscui.dll
C:\Program Files\Windows Sidebar\sbdrop.dll
C:\Windows\System32\stobject.dll
C:\Windows\System32\EhStorShell.dll
C:\Windows\System32\cryptext.dll
C:\Windows\System32\colorui.dll
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old~RF13e37d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old~RF13e38d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old~RF13e39d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache
\??\pipe\mojo.2416.2540.5780910877237049589
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.old~RF13e3cc.TMP
\??\pipe\mojo.2416.2540.12737336776229500981
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG.old~RF13e3db.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\766bcae1-de0e-45b0-89f4-6a050c3a979f.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13e4e5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\optimization-hints.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG.old~RF13e591.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG.old~RF13e66b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\49f92ecc-3c92-4e05-98cf-93924d4c677e.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF140acc.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\effd3eb4-84ba-43b9-a169-f52dcfeac960.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF141ec1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\e7334b49-97cb-4c32-82ea-ec7b681db51b.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14315f.TMP
\??\pipe\mojo.2416.2540.17575491797989789560
\??\pipe\mojo.2416.2540.8683994010338760292
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\97a0e7ae-abee-48b5-bf85-621e32813eff.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF1476f3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\499ba427-d98b-4c88-b825-0f3d41930144.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF1479f1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\7d540aa6-fa06-4cfd-a5e6-a29ad14dea8e.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF147a10.TMP
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\BFDB3F1E00E5F8707E5B7D7B2064ED1BD9CC87C3
\??\pipe\mojo.2416.2540.16483629821155657598
\??\pipe\mojo.2416.2540.6085735929983555609
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\01d6f4d8-e1b2-4ece-961a-dc9dd5b85237.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF14b66d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\4b493ae4-cbdf-4352-9fd9-f854359cf3b1.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14bc2a.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\48b2942f-250a-42f3-94bd-15e4e07a0c3c.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15024b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\0c774b1f-181d-4fc1-842c-2b5cb2d7e560.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF150c2f.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\77c95fc0-4e9a-4840-9f19-18f43e23bf16.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15481e.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\8fdb5051-34d3-4871-8952-4aa46adb51d5.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF158de2.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6f762fc5-8833-4141-99e7-463c3e1a9227.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15d338.TMP
C:\Windows\Globalization\Sorting\sortdefault.nls
\??\pipe\crashpad_2416_MXVKAIBVGKLVBKYE
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\reports
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome.dll
C:\Windows\System32\oleaccrc.dll
C:\Program Files\Google\Chrome\Application\92.0.4515.131\icudtl.dat
C:\Program Files\Google\Chrome\Application\92.0.4515.131\v8_context_snapshot.bin
\??\PIPE\wkssvc
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-69DE1FC4-970.pma
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome_100_percent.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\chrome_200_percent.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\Locales\en-US.pak
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources.pak
\DEVICE\NETBT_TCPIP_{7F6B1AE5-804D-4272-AD8A-B0FE1231F5C7}
\DEVICE\NETBT_TCPIP_{846EE342-7039-11DE-9D20-806E6F6E6963}
C:\Windows\System32\drivers\etc\hosts
\??\pipe\mojo.2416.2540.709755646842323512
C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm
\??\pipe\mojo.2416.2540.15778532132677200456
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_0
\??\pipe\mojo.2416.2540.1379105788163177410
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_3
\??\PIPE\samr
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
\??\pipe\mojo.2416.2540.18054219616049510743
\??\pipe\mojo.2416.2540.8658788887849001408
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Visited Links
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\wasm\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Address Validation Rules
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Login Data For Account
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Trusted Vault
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources\web_store\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
C:\Program Files\Google\Chrome\Application\92.0.4515.131\resources\pdf\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.10_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.10_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.10_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.10_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.2_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.2_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\_metadata\computed_hashes.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_metadata\computed_hashes.json
C:\Program Files\Google\Chrome\Application\92.0.4515.131\WidevineCdm\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\pnacl\0.57.44.2492\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\manifest.json
C:\Program Files\Google\Chrome\Application\92.0.4515.131\MEIPreload\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Floc\1.0.6\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OriginTrials\1.0.0.8\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crowd Deny\2021.8.2.1142\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Floc\1.0.6\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\hyphen-data\94.0.4605.0\manifest.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\hyphen-data\94.0.4605.0\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Subresource Filter\Unindexed Rules\9.28.0\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_metadata\computed_hashes.json
C:\Program Files\Google\Chrome\Application\92.0.4515.131\default_apps\external_extensions.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\manifest.fingerprint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_3
\??\pipe\mojo.2416.2700.8909175226232723482
\??\pipe\mojo.2416.2700.18072532917841406812
\??\pipe\mojo.2416.2540.15088668660338866035
\??\pipe\mojo.2416.2540.4872777213475951213
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_3
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\wasm\index-dir\the-real-index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\the-real-index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.31.0_0\dasherSettingSchema.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\icons\app\icon-16.png
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\manifest.js
\??\pipe\mojo.2416.2700.3873627333688407937
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\solve\script.js
\??\pipe\mojo.2416.2540.14903452208908704262
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\_locales\en\messages.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crowd Deny\2021.8.2.1142\Preload Data
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\solve\reset-button.css
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\content\setup.js
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal
\??\pipe\mojo.2416.2700.6970298780376707427
\??\pipe\mojo.2416.2540.16335396142633635254
C:\Users\pgabriel\AppData\Local\Temp\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp
C:\Users\pgabriel\AppData\Local\Temp\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp
C:\Users\pgabriel\AppData\Local\Temp\Silver Birch _ 217_.html
C:\Windows\System32\tzres.dll
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6ff088e8-aaa2-4072-9649-feb065e97630.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7dadc225-9d11-47ef-aadc-71d10289ac30.tmp
\Device\Afd\Endpoint
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl\1.2.2_0\src\background\index.html
\??\pipe\mojo.2416.2540.12229236660368854495
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History-journal
C:\Users\pgabriel\AppData\Local\Temp\80b5107f-8821-4775-bc73-d3dff4e26f4e.tmp
C:\Users\pgabriel\AppData\Local\Temp\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Session_13358475346077945
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_metadata\verified_contents.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\common.js
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\9221.427.0.1_0\_locales\en\messages.json
\??\pipe\mojo.2416.2540.10410846439887349727
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\000003.log
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\4115B847987746DC19A7DDAEAEE475CB706D1486
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\50898D7FA8C7376F068EC639F8C8211ED8704579
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\5FECE117293132B5AA39AECD9ECABB7A95BC91C8
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\7156BF4D09609656B4EA58A16D2AF7E85AEC54A7
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\73B42F65751749073832809A62801A542A21F9EA
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\D394539080B1A12E1F64A1F908870C18C0BFAAB8
C:\Windows\System32\rsaenh.dll
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\BE0C02830C55CE69FC619697772E65381FBECA89
\??\pipe\mojo.2416.2540.665560977221425299
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\5CE1AA9FFF95D4C0EEB245B298445ED9B5F2FDC2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\blob_storage\0f07aa28-642e-461e-85d9-b49db9fb5dc3
C:\Windows\System32\en-US\kernel32.dll.mui
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\PreferredApps
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\heavy_ad_intervention_opt_out.db
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Translate Ranker Model
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Shortcuts
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000036
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000037.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FontLookupTableCache\font_unique_name_table.pb
C:\Windows\System32\en-US\DWrite.dll.mui
C:\Program Files\Google\Chrome\Application\92.0.4515.131\MEIPreload\preloaded_data.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\FileTypePolicies\43\download_file_types.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CertificateRevocation\6787\crl-set
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\AutofillRegex\2021.2.22.1142\data.json
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\english_wikipedia.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ClientSidePhishing\25\client_model.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\male_names.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\passwords.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\DesktopSharingHub\20210609.1\desktop_sharing_hub.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SSLErrorAssistant\7\ssl_error_assistant.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ZxcvbnData\1\us_tv_and_film.txt
C:\Windows\System32\en-US\KERNELBASE.dll.mui
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\129c29e3-0c30-4763-9ad5-ab6034b32198.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\000003.log
C:\Program Files\WinRAR\RarExt.dll
C:\Windows\System32\webcheck.dll
C:\Program Files\Microsoft Office\Office15\OLKFSTUB.DLL
C:\Program Files\Microsoft Office\Office15\NAMEEXT.DLL
C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL
C:\Program Files\Microsoft Office\Office15\VISSHE.DLL
C:\Program Files\Microsoft Office\Office15\ONFILTER.DLL
C:\Program Files\Common Files\Microsoft Shared\OFFICE15\msoshext.dll
C:\Program Files\Microsoft Office\Office15\MSOHEVI.DLL
C:\Program Files\7-Zip\7-zip.dll
C:\Windows\System32\mf.dll
C:\Windows\System32\shdocvw.dll
C:\Windows\System32\ntshrui.dll
C:\Windows\System32\shell32.dll
C:\Windows\System32\syncui.dll
C:\Program Files\Notepad++\NppShell_06.dll
C:\Windows\System32\cscui.dll
C:\Program Files\Windows Sidebar\sbdrop.dll
C:\Windows\System32\stobject.dll
C:\Windows\System32\EhStorShell.dll
C:\Windows\System32\cryptext.dll
C:\Windows\System32\colorui.dll
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache
\??\pipe\mojo.2416.2540.5780910877237049589
\??\pipe\mojo.2416.2540.12737336776229500981
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\766bcae1-de0e-45b0-89f4-6a050c3a979f.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\OptimizationHints\292\optimization-hints.pb
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\DownloadMetadata
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\49f92ecc-3c92-4e05-98cf-93924d4c677e.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\effd3eb4-84ba-43b9-a169-f52dcfeac960.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\e7334b49-97cb-4c32-82ea-ec7b681db51b.tmp
\??\pipe\mojo.2416.2540.17575491797989789560
\??\pipe\mojo.2416.2540.8683994010338760292
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\97a0e7ae-abee-48b5-bf85-621e32813eff.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\499ba427-d98b-4c88-b825-0f3d41930144.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\7d540aa6-fa06-4cfd-a5e6-a29ad14dea8e.tmp
C:\Users\pgabriel\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\BFDB3F1E00E5F8707E5B7D7B2064ED1BD9CC87C3
\??\pipe\mojo.2416.2540.16483629821155657598
\??\pipe\mojo.2416.2540.6085735929983555609
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\01d6f4d8-e1b2-4ece-961a-dc9dd5b85237.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\4b493ae4-cbdf-4352-9fd9-f854359cf3b1.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\48b2942f-250a-42f3-94bd-15e4e07a0c3c.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\0c774b1f-181d-4fc1-842c-2b5cb2d7e560.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\77c95fc0-4e9a-4840-9f19-18f43e23bf16.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\8fdb5051-34d3-4871-8952-4aa46adb51d5.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6f762fc5-8833-4141-99e7-463c3e1a9227.tmp
\??\pipe\crashpad_2416_MXVKAIBVGKLVBKYE
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
\??\PIPE\wkssvc
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-69DE1FC4-970.pma
\??\pipe\mojo.2416.2540.709755646842323512
\??\pipe\mojo.2416.2540.15778532132677200456
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_0
\??\pipe\mojo.2416.2540.1379105788163177410
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\lockfile
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Version
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_3
\??\PIPE\samr
\??\pipe\mojo.2416.2540.18054219616049510743
\??\pipe\mojo.2416.2540.8658788887849001408
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Visited Links
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old~RF13b691.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Login Data For Account
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000001.dbtmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_3
\??\pipe\mojo.2416.2700.8909175226232723482
\??\pipe\mojo.2416.2700.18072532917841406812
\??\pipe\mojo.2416.2540.15088668660338866035
\??\pipe\mojo.2416.2540.4872777213475951213
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old~RF13baf6.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\index
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_0
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_1
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_2
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\GrShaderCache\GPUCache\data_3
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old~RF13bc4e.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log
\??\pipe\mojo.2416.2700.3873627333688407937
\??\pipe\mojo.2416.2540.14903452208908704262
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal
\??\pipe\mojo.2416.2700.6970298780376707427
\??\pipe\mojo.2416.2540.16335396142633635254
C:\Users\pgabriel\AppData\Local\Temp\bab46678-5e73-4523-9dd3-8bbcef6f3df0.tmp
C:\Users\pgabriel\AppData\Local\Temp\dc84d642-186b-45f8-b9c6-6e17e6feee3f.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6ff088e8-aaa2-4072-9649-feb065e97630.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bd87.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7dadc225-9d11-47ef-aadc-71d10289ac30.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bda6.TMP
\Device\Afd\Endpoint
\??\pipe\mojo.2416.2540.12229236660368854495
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old~RF13be04.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History-journal
C:\Users\pgabriel\AppData\Local\Temp\80b5107f-8821-4775-bc73-d3dff4e26f4e.tmp
C:\Users\pgabriel\AppData\Local\Temp\c12eca5d-579f-400c-ab85-2e06e51eec47.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Session_13420638407628351
\??\pipe\mojo.2416.2540.10410846439887349727
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG.old~RF13c0b3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old~RF13c101.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\000003.log
\??\pipe\mojo.2416.2540.665560977221425299
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sessions\Tabs_13420638409297351
\??\usb#root_hub20#4&2d0b3f6d&0#{f18a0e88-c30c-11d0-8815-00a0c906bed8}
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\heavy_ad_intervention_opt_out.db
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old~RF13d852.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Shortcuts
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000039.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000038
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000038.dbtmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT~RF13dac3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Last Browser
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\129c29e3-0c30-4763-9ad5-ab6034b32198.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF13dc69.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old~RF13df67.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG.old~RF13dfa5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG.old~RF13dfc4.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.old~RF13e032.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old~RF13e37d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old~RF13e38d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old~RF13e39d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOCK
\??\pipe\mojo.2416.2540.5780910877237049589
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.old~RF13e3cc.TMP
\??\pipe\mojo.2416.2540.12737336776229500981
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG.old~RF13e3db.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\766bcae1-de0e-45b0-89f4-6a050c3a979f.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13e4e5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG.old~RF13e591.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG.old~RF13e66b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\49f92ecc-3c92-4e05-98cf-93924d4c677e.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF140acc.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\effd3eb4-84ba-43b9-a169-f52dcfeac960.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF141ec1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\e7334b49-97cb-4c32-82ea-ec7b681db51b.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14315f.TMP
\??\pipe\mojo.2416.2540.17575491797989789560
\??\pipe\mojo.2416.2540.8683994010338760292
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\97a0e7ae-abee-48b5-bf85-621e32813eff.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF1476f3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\499ba427-d98b-4c88-b825-0f3d41930144.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF1479f1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\7d540aa6-fa06-4cfd-a5e6-a29ad14dea8e.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF147a10.TMP
\??\pipe\mojo.2416.2540.16483629821155657598
\??\pipe\mojo.2416.2540.6085735929983555609
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\01d6f4d8-e1b2-4ece-961a-dc9dd5b85237.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF14b66d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\4b493ae4-cbdf-4352-9fd9-f854359cf3b1.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14bc2a.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\48b2942f-250a-42f3-94bd-15e4e07a0c3c.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15024b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\0c774b1f-181d-4fc1-842c-2b5cb2d7e560.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF150c2f.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\77c95fc0-4e9a-4840-9f19-18f43e23bf16.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15481e.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\8fdb5051-34d3-4871-8952-4aa46adb51d5.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF158de2.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\6f762fc5-8833-4141-99e7-463c3e1a9227.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15d338.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000003.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\CURRENT
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old~RF13b691.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\MANIFEST-000001
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOCK
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\000001.dbtmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\7d32e619-f9a0-467f-ab1c-214f845e1f49.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old~RF13baf6.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bd87.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13bda6.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old~RF13be04.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\mpbjkejclgfgadiemmefgebjfooflfhl\LOG.old~RF13c0b3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old~RF13c101.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-66299726-990.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-69DE1FC4-970.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\CrashpadMetrics.pma
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old~RF13d852.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT~RF13dac3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000037.log
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000036
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF13dc69.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old~RF13df67.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_hint_cache_store\LOG.old~RF13dfa5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\optimization_guide_model_and_features_store\LOG.old~RF13dfc4.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.old~RF13e032.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old~RF13e37d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old~RF13e38d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old~RF13e39d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.old~RF13e3cc.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG.old~RF13e3db.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF13e4e5.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\LOG.old~RF13e591.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Download Service\EntryDB\LOG.old~RF13e66b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF140acc.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF141ec1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14315f.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF1476f3.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Module Info Cache~RF1479f1.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF147a10.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF14b66d.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF14bc2a.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15024b.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Local State~RF150c2f.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\BrowserMetrics-spare.pma.tmp
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15481e.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF158de2.TMP
C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Default\Preferences~RF15d338.TMP
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=92.0.4515.131 --initial-client-data=0x138,0x13c,0x140,0x10c,0x144,0x7feed9c5390,0x7feed9c53a0,0x7feed9c53b0
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --no-sandbox --gpu-preferences=UAAAAAAAAADgAAAQAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAHgAAAAAAAAAeAAAAAAAAAAoAAAABAAAACAAAAAAAAAAKAAAAAAAAAAwAAAAAAAAADgAAAAAAAAAEAAAAAAAAAAAAAAADQAAABAAAAAAAAAAAQAAAA0AAAAQAAAAAAAAAAQAAAANAAAAEAAAAAAAAAAHAAAADQAAAAgAAAAAAAAACAAAAAAAAAA= --use-gl=swiftshader-webgl --mojo-platform-channel-handle=1208 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=none --no-sandbox --mojo-platform-channel-handle=1436 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=utility --no-sandbox --mojo-platform-channel-handle=1572 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --no-sandbox --test-type --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --disable-gpu-compositing --lang=en-US --disable-client-side-phishing-detection --origin-trial-disabled-features=SecurePaymentConfirmation --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=8 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2000 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --no-sandbox --test-type --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --disable-gpu-compositing --lang=en-US --disable-client-side-phishing-detection --origin-trial-disabled-features=SecurePaymentConfirmation --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=7 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2028 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --no-sandbox --test-type --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --disable-gpu-compositing --lang=en-US --extension-process --disable-client-side-phishing-detection --origin-trial-disabled-features=SecurePaymentConfirmation --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2208 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --no-sandbox --test-type --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --disable-gpu-compositing --lang=en-US --extension-process --disable-client-side-phishing-detection --origin-trial-disabled-features=SecurePaymentConfirmation --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=6 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=1728 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=service --no-sandbox --mojo-platform-channel-handle=3828 /prefetch:8
"C:\Users\pgabriel\AppData\Local\Google\Chrome\User Data\SwReporter\92.267.200\software_reporter_tool.exe" --engine=2 --scan-locations=1,2,3,4,5,6,7,8,10 --disabled-locations=9,11 --session-id=2RQhTJUmH32BMDn2V+HgnyJeMULiiL6z3oKrwFvM --registry-suffix=ESET --srt-field-trial-group-name=Off
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilWin --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=none --no-sandbox --mojo-platform-channel-handle=3664 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilWin --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=none --no-sandbox --mojo-platform-channel-handle=1908 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --field-trial-handle=1196,10806613949650505913,996102335236657021,131072 --lang=en-US --service-sandbox-type=service --no-sandbox --mojo-platform-channel-handle=608 /prefetch:8
No static analysis available.
Sorry! No behavior.

Hosts

No hosts contacted.

TCP

No TCP connections recorded.

UDP

No UDP connections recorded.

DNS

No domains contacted.

HTTP Requests

No HTTP(s) requests performed.

SMTP traffic

No SMTP traffic performed.

IRC traffic

No IRC requests performed.

ICMP traffic

No ICMP traffic performed.

CIF Results

No CIF Results

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Suricata HTTP

No Suricata HTTP

Sorry! No Suricata Extracted files.
Sorry! No dropped files.
Sorry! No process dumps.