Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
http://sobeteracotafancris.ro

Overview

General Information

Sample URL:http://sobeteracotafancris.ro
Analysis ID:1426627

Detection

Score:56
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Multi AV Scanner detection for domain / URL
Multi AV Scanner detection for submitted file
Stores files to the Windows start menu directory

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 7044 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument http://sobeteracotafancris.ro/ MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 4800 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2084 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 2712 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=3348 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 4872 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5416 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: http://sobeteracotafancris.ro/Virustotal: Detection: 6%Perma Link
Source: http://sobeteracotafancris.roVirustotal: Detection: 6%Perma Link
Source: https://www.youtube.com/embed/cjJVAxyfZKUHTTP Parser: No favicon
Source: https://www.youtube.com/embed/9sfY1al0iAMHTTP Parser: No favicon
Source: unknownHTTPS traffic detected: 23.36.68.63:443 -> 192.168.2.16:49763 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.36.68.63:443 -> 192.168.2.16:49775 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49815 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49861 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.211.108
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 23.36.68.63
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: sobeteracotafancris.roConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: unknownDNS traffic detected: queries for: sobeteracotafancris.ro
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49860
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49859
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49858
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49857
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 49812 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49858 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 49777 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49722
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49843
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 49760 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49833
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 49811 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49828
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49826
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49788
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 49813 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49779
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49802 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49857 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49797 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 49818 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 49746 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49826 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49763 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49861 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49688 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49797
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49856 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49808 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49842 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49779 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49859 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49833 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49818
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49815
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49813
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49812
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49811
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49788 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49808
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49804
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49802
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49783 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49821 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49722 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49854 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49843 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49761 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49804 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
Source: unknownHTTPS traffic detected: 23.36.68.63:443 -> 192.168.2.16:49763 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.36.68.63:443 -> 192.168.2.16:49775 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49815 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49861 version: TLS 1.2
Source: classification engineClassification label: mal56.win@20/86@42/273
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument http://sobeteracotafancris.ro/
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2084 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=3348 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5416 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2084 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=3348 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5416 --field-trial-handle=1964,i,17521867618890892961,605158566127346576,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
Registry Run Keys / Startup Folder
1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Registry Run Keys / Startup Folder
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media2
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive3
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
Ingress Tool Transfer
Traffic DuplicationData Destruction

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
http://sobeteracotafancris.ro7%VirustotalBrowse
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://sobeteracotafancris.ro/7%VirustotalBrowse
NameIPActiveMaliciousAntivirus DetectionReputation
youtube-ui.l.google.com
64.233.176.93
truefalse
    high
    sobeteracotafancris.ro
    194.36.141.112
    truefalse
      unknown
      googleads.g.doubleclick.net
      173.194.219.154
      truefalse
        high
        play.google.com
        108.177.122.101
        truefalse
          high
          gazduiredesite.ro
          89.42.218.138
          truefalse
            unknown
            i.ytimg.com
            142.250.105.119
            truefalse
              high
              photos-ugc.l.googleusercontent.com
              64.233.177.132
              truefalse
                high
                secure.trafic.ro
                89.35.7.133
                truefalse
                  high
                  www.google.com
                  173.194.219.99
                  truefalse
                    high
                    s.w.org
                    192.0.77.48
                    truefalse
                      high
                      static.doubleclick.net
                      74.125.138.149
                      truefalse
                        high
                        yt3.ggpht.com
                        unknown
                        unknownfalse
                          high
                          www.youtube.com
                          unknown
                          unknownfalse
                            high
                            www.gazduiredesite.ro
                            unknown
                            unknownfalse
                              unknown
                              www.sobeteracotafancris.ro
                              unknown
                              unknownfalse
                                unknown
                                NameMaliciousAntivirus DetectionReputation
                                http://sobeteracotafancris.ro/trueunknown
                                https://www.youtube.com/embed/cjJVAxyfZKUfalse
                                  high
                                  https://www.sobeteracotafancris.ro/false
                                    unknown
                                    https://www.youtube.com/embed/9sfY1al0iAMfalse
                                      high
                                      • No. of IPs < 25%
                                      • 25% < No. of IPs < 50%
                                      • 50% < No. of IPs < 75%
                                      • 75% < No. of IPs
                                      IPDomainCountryFlagASNASN NameMalicious
                                      194.36.141.112
                                      sobeteracotafancris.roRomania
                                      50939SPACE-ASROfalse
                                      64.233.176.95
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      64.233.176.93
                                      youtube-ui.l.google.comUnited States
                                      15169GOOGLEUSfalse
                                      173.194.219.99
                                      www.google.comUnited States
                                      15169GOOGLEUSfalse
                                      173.194.219.154
                                      googleads.g.doubleclick.netUnited States
                                      15169GOOGLEUSfalse
                                      89.42.218.138
                                      gazduiredesite.roRomania
                                      205275ROMARGROfalse
                                      108.177.122.139
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      89.35.7.133
                                      secure.trafic.roRomania
                                      40975CHML-ASROfalse
                                      64.233.177.132
                                      photos-ugc.l.googleusercontent.comUnited States
                                      15169GOOGLEUSfalse
                                      64.233.177.154
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      142.250.9.94
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      64.233.185.84
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      172.217.215.94
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      74.125.138.95
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      74.125.138.149
                                      static.doubleclick.netUnited States
                                      15169GOOGLEUSfalse
                                      1.1.1.1
                                      unknownAustralia
                                      13335CLOUDFLARENETUSfalse
                                      142.250.9.139
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      173.194.219.102
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      142.250.105.119
                                      i.ytimg.comUnited States
                                      15169GOOGLEUSfalse
                                      239.255.255.250
                                      unknownReserved
                                      unknownunknownfalse
                                      173.194.219.119
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      64.233.185.93
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      108.177.122.101
                                      play.google.comUnited States
                                      15169GOOGLEUSfalse
                                      64.233.185.95
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      64.233.176.103
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      74.125.136.132
                                      unknownUnited States
                                      15169GOOGLEUSfalse
                                      IP
                                      192.168.2.16
                                      192.168.2.4
                                      Joe Sandbox version:40.0.0 Tourmaline
                                      Analysis ID:1426627
                                      Start date and time:2024-04-16 12:33:18 +02:00
                                      Joe Sandbox product:CloudBasic
                                      Overall analysis duration:
                                      Hypervisor based Inspection enabled:false
                                      Report type:full
                                      Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                      Sample URL:http://sobeteracotafancris.ro
                                      Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                      Number of analysed new started processes analysed:16
                                      Number of new started drivers analysed:0
                                      Number of existing processes analysed:0
                                      Number of existing drivers analysed:0
                                      Number of injected processes analysed:0
                                      Technologies:
                                      • EGA enabled
                                      Analysis Mode:stream
                                      Analysis stop reason:Timeout
                                      Detection:MAL
                                      Classification:mal56.win@20/86@42/273
                                      • Exclude process from analysis (whitelisted): svchost.exe
                                      • Excluded IPs from analysis (whitelisted): 142.250.9.94, 173.194.219.102, 173.194.219.101, 173.194.219.100, 173.194.219.139, 173.194.219.113, 173.194.219.138, 64.233.185.84, 34.104.35.123, 64.233.185.95, 172.217.215.94
                                      • Excluded domains from analysis (whitelisted): fonts.googleapis.com, fs.microsoft.com, clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, fonts.gstatic.com, clientservices.googleapis.com, clients.l.google.com
                                      • Not all processes where analyzed, report is missing behavior information
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2673
                                      Entropy (8bit):3.9849183914199515
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:A05C75BA6179317A0099AE8FBB43BA4E
                                      SHA1:7444A8DD736498F20B19D18797A78A75F296EA8D
                                      SHA-256:1120FFBF730A519DACF6966E72D7BD0B68343CD09A99D26A85FCBDD3E850D987
                                      SHA-512:43A09BED0D351B3961B1E35268433572B2953F1194EAF6684B9E9111427944563A3D579086C18E96B4AF00D00F986A02633D6B92231979148C3EE403E3A1E2E4
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,......p....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V.X9T...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2675
                                      Entropy (8bit):4.000605085952997
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:DCB255E7C8913C78ED11A604B9F5CB70
                                      SHA1:CEFB9EFF794A76D7CC4BC927E090FD01ACB4B729
                                      SHA-256:20C3696E1D26516D6FB4B265DAE70F3C268BC2B29DF8B28AA163058DC088C6C0
                                      SHA-512:444AC55FDAC44805E50937ED92897AD0B613ADD3C5FA8F5A126D4C599337B6555CA120526151AC8BD9DF90DEB7A36380969EAC18F3E92148FF4CA2442862138B
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,....7.d....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V.X9T...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2689
                                      Entropy (8bit):4.007785200201508
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:F725EF4FA94B179F7E9C1B9DD2DEDAAB
                                      SHA1:8623D695BC175083E36B162C34AD36E887E8921F
                                      SHA-256:0A7F685443894BBBB4B7FC8909B81F9BC18559A6DBE07E4BB754FCD8B286DA13
                                      SHA-512:C68989D0F8B327E32FFB1FF3C30A8D2D30EA35FC8BCF6A745B1AA18F1CBFC401D16957C914AD1812A19612DA1BB6FC058FFAABBA7A84A6AF98F1F8F4757FBBFB
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2677
                                      Entropy (8bit):3.9997476547144517
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:AFA720FA0CFC7DA52C0F6808654E89E9
                                      SHA1:01626ACE1FAB6427F0E720AB0B96B2433020905F
                                      SHA-256:D91E09DBA3125DED8FAD05BED94C6E1890E0973013A853000D6739C9BAE2AAAF
                                      SHA-512:92FB67CE51385F025952BF554C2A00EB284EFD46BDB21DF9D7E41CC35C378674E09629879AC0AA547B89C0787F1716A200E0AA8481395E3FF089F37BC7762A90
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,......_....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V.X9T...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2677
                                      Entropy (8bit):3.9872278251094575
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:75C9139F1817C87247F8B600401AE414
                                      SHA1:BB04B5257314A92561140266A248F3CA7404B167
                                      SHA-256:2CA969DABA0114DB26BDA3BD191445794E4ABFD524D051F36406E53A78154814
                                      SHA-512:E6EB253BDA5E36BE347F42B05F47F79A357C3D6248AA55195BB7B8CDD4F28362723E78876936463CE42CF5E7CBD369C0F89D2356DC063C4F30B793A1B1A6E169
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,.....yj....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V.X9T...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                      Category:dropped
                                      Size (bytes):2679
                                      Entropy (8bit):3.995303664626986
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:963F9C85D395F42C82A98E4E08E99CFB
                                      SHA1:2907607AEA5F82C17D1593E60BFC213EE1A78D73
                                      SHA-256:7C4147FA6A269EDC58E2DD0E0CA75A7943AE354FA0CDA1E8F40F45F20E464544
                                      SHA-512:23FAF9330FCAE75F5A997DC47C4371C2A39D378603C9CBD554A57A75E67DB0DAD4EC6C5CDCF0758F07DD6E01C20E48A28C0F92DD417B1A81CD3F65316CB3D3BC
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:L..................F.@.. ...$+.,....c.V....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I.X1T....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.X8T....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V.X8T....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V.X8T..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V.X9T...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............[3\.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (1572)
                                      Category:downloaded
                                      Size (bytes):7966
                                      Entropy (8bit):5.452100848289376
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:BED50F5CF8761AA612D80407C2F79DD8
                                      SHA1:8FBFFB620D9539028155CF8F841938368D76BABE
                                      SHA-256:578F91A2C1BF95C8D38FA70919AACCF2B81DB30646CE3174165FCD8C7DF70013
                                      SHA-512:A4B39A3CE02BB97B5CD0DE9EF3C6E38D1E6FD2F1666F1E482266271004CAC7BD749B012B4997796753BB453315674430709FC7A1797E99D9A6592A3D5747F7B8
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.googleapis.com/css?family=Open+Sans:800|Roboto:500
                                      Preview:/* cyrillic-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 800;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v40/memSYaGs126MiZpBA-UvWbX2vVnXBbObj2OVZyOOSr4dVJWUgshZ1x4taVIGxA.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 800;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v40/memSYaGs126MiZpBA-UvWbX2vVnXBbObj2OVZyOOSr4dVJWUgshZ1x4kaVIGxA.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 800;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v40/memSYaGs126MiZpBA-UvWbX2vVnXBbObj2OVZyOOSr4dVJWUgshZ1x4saVIGxA.woff2) format('woff2');. unicode-range: U+1F00-1FFF;.}./* greek */.@font-fa
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):10145
                                      Entropy (8bit):5.080262665895187
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:40444221B85AB406277BF3CA7499CEA2
                                      SHA1:A501E9325D8103D32656FD6138E37B4F942BF484
                                      SHA-256:A1E683ED3C4B45135DB0B27F0E206CCF3C819A014D00E2342278AA98B6F753BF
                                      SHA-512:314AB34502EDC141775838EE73349D62944F2012EF1C4B6DAD85DD7931AEAAC87336C58B23BF2E31EE7436D4CFB7B963E8954A08DABA3FF92A144F21E9DA1DD6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/assets/jplayer/css/jplayer.blue.monday.css?ver=17.8.4
                                      Preview:div.jp-audio,.div.jp-audio-stream,.div.jp-video{background-color:#EEE;color:#666;font-family:Verdana,Arial,sans-serif;font-size:1.25em;line-height:1.6;position:relative}..div.jp-video-full{height:270px;position:static!important;width:100%}.div.jp-video-full div.jp-jplayer,div.jp-jplayer > video{height:100%!important}.div.jp-video-full div div{z-index:1000}.div.jp-video-full div.jp-jplayer{left:0;overflow:hidden;position:fixed!important;top:0}.div.jp-video-full div.jp-gui{height:100%;left:0;position:fixed!important;top:0;width:100%;z-index:1001}.div.jp-video-full div.jp-interface{bottom:0;left:0;position:absolute!important}..div.jp-interface{-moz-box-sizing:border-box;bottom:0;position:absolute;width:100%; height: 45px; }.div.jp-controls-holder{clear:both;height:0;overflow:hidden;top:-8px;width:440px;margin:0 auto}.div.jp-interface ul.jp-controls{list-style-type:none;overflow:hidden;margin:0;padding:0}.div.jp-audio ul.jp-controls{width:380px;padding:20px 20px 0}.div.jp-audio-stream ul.j
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (8428), with no line terminators
                                      Category:downloaded
                                      Size (bytes):8428
                                      Entropy (8bit):4.893013299948761
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:160F2338560B79EB0814D236B48B04FA
                                      SHA1:301ABF368F41F578EF7E956140E0F8D466CDA78D
                                      SHA-256:C38BC4D28CB6DD5263A68B3EFA74CD5B746F9083484871C54F4CD437C828B40E
                                      SHA-512:EE580765EEB935A53EB5010D386CBD0524FA695F9B008D56CF0F3B9707A42D8E6CC87F387A3FA962B526AEF4B458BFFAC68B9E1C7AC5E9D29EDE025283D64717
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/cookie-notice/js/front.min.js?ver=2.3.0
                                      Preview:!function(){function e(e,t){t=t||{bubbles:!1,cancelable:!1,detail:void 0};var n=document.createEvent("CustomEvent");return n.initCustomEvent(e,t.bubbles,t.cancelable,t.detail),n}"function"!=typeof window.CustomEvent&&(e.prototype=window.Event.prototype,window.CustomEvent=e)}(),function(){function t(e){return new RegExp("(^| )"+e+"( |$)")}function e(e,t,n){for(var i=0;i<e.length;i++)t.call(n,e[i])}function n(e){this.element=e}n.prototype={add:function(){e(arguments,function(e){this.contains(e)||(this.element.className+=0<this.element.className.length?" "+e:e)},this)},remove:function(){e(arguments,function(e){this.element.className=this.element.className.replace(t(e),"")},this)},toggle:function(e){return this.contains(e)?(this.remove(e),!1):(this.add(e),!0)},contains:function(e){return t(e).test(this.element.className)},replace:function(e,t){this.remove(e),this.add(t)}},"classList"in Element.prototype||Object.defineProperty(Element.prototype,"classList",{get:function(){return new n(this)
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (11126)
                                      Category:downloaded
                                      Size (bytes):11224
                                      Entropy (8bit):5.2603128465032745
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:79B4956B7EC478EC10244B5E2D33AC7D
                                      SHA1:A46025B9D05E3DF30D610A8AEF14F392C7058DC9
                                      SHA-256:029E0A2E809FD6B5DBE76ABE8B7A74936BE306C9A8C27C814C4D44AA54623300
                                      SHA-512:217F86FEE871FA36ECA4F25830E3917C7BF57A681140B135C508AA32F2A1E3EFF5A80661F3B5BA46747D0C305AF10B658D207F449550F3D417D9683216FEEA8F
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/jquery-migrate.min.js?ver=3.3.2
                                      Preview:/*! jQuery Migrate v3.3.2 | (c) OpenJS Foundation and other contributors | jquery.org/license */."undefined"==typeof jQuery.migrateMute&&(jQuery.migrateMute=!0),function(t){"use strict";"function"==typeof define&&define.amd?define(["jquery"],function(e){return t(e,window)}):"object"==typeof module&&module.exports?module.exports=t(require("jquery"),window):t(jQuery,window)}(function(s,n){"use strict";function e(e){return 0<=function(e,t){for(var r=/^(\d+)\.(\d+)\.(\d+)/,n=r.exec(e)||[],o=r.exec(t)||[],i=1;i<=3;i++){if(+o[i]<+n[i])return 1;if(+n[i]<+o[i])return-1}return 0}(s.fn.jquery,e)}s.migrateVersion="3.3.2",n.console&&n.console.log&&(s&&e("3.0.0")||n.console.log("JQMIGRATE: jQuery 3.0.0+ REQUIRED"),s.migrateWarnings&&n.console.log("JQMIGRATE: Migrate plugin loaded multiple times"),n.console.log("JQMIGRATE: Migrate is installed"+(s.migrateMute?"":" with logging active")+", version "+s.migrateVersion));var r={};function u(e){var t=n.console;s.migrateDeduplicateWarnings&&r[e]||(r[e]=!0
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, ASCII text, with very long lines (31614), with CRLF, LF line terminators
                                      Category:downloaded
                                      Size (bytes):80983
                                      Entropy (8bit):5.360974444364275
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:C2BBF7C1ED392A3ABB258DCAAC9E851D
                                      SHA1:EA485BAE6D678F8A02ED96C72E35A5A93C61FF74
                                      SHA-256:C41A0BD4FD3D5293145642366C4DD93A06F83818262DF01914D58E0F07D59411
                                      SHA-512:CEDF96798D41EB6784E078D8EB216DC5D988EA0ED0DDE8C5DB5B93750AD818C77DF986FA2104EF83B2DA6CA62DDE24BA140326F78BEF9A2DAA4B3DDFE8DFF8D2
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/
                                      Preview:<!DOCTYPE html>.<html class="no-js" lang="ro-RO" itemscope itemtype="https://schema.org/WebPage">.. head -->.<head>.. meta -->.<meta charset="UTF-8" />.<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1" />.<meta name="description" content="Sobe Teracota Fancris" />.<meta name="keywords" content="sobe teracota, sobe pe roti, sobe pe stativ, sobe fixe, seminee" />..<link rel="shortcut icon" href="https://sobeteracotafancris.ro/wp-content/uploads/2020/11/logo-soba.jpg" />..<link rel="apple-touch-icon" href="https://sobeteracotafancris.ro/wp-content/uploads/2020/11/logo-soba.jpg" />.... wp_head() -->.<title>Sobe Teracota Fancris &#8211; Sobe Teracota Fancris</title>. script | dynamic -->.<script id="mfn-dnmc-config-js">.//<![CDATA[.window.mfn = {mobile_init:1240,nicescroll:40,parallax:"translate3d",responsive:1,retina_js:0};.window.mfn_lightbox = {disable:false,disableMobile:false,title:false,};.window.mfn_sliders = {blog:0,clients:0,offer:
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 18644, version 1.0
                                      Category:downloaded
                                      Size (bytes):18644
                                      Entropy (8bit):7.989286811750618
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:BA9FAAFD151F907A13BBEE2145F330A4
                                      SHA1:E788A7A73FF89AF7A1598AABF73FAAD8046F2545
                                      SHA-256:3403FA778109BCEB18B607B327D3A721F225555E078CCBDACB4238B733856FF7
                                      SHA-512:61C64F1649C299F0FE40E1FEF8DC2D41448F07B2C9051205BBC44E97E59AAF11BEFCEFAB87DB0A866E9C9CA60E0D59C5E7BC518B9D498DE5593900B8A6513778
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/opensans/v40/memSYaGs126MiZpBA-UvWbX2vVnXBbObj2OVZyOOSr4dVJWUgshZ1x4gaVI.woff2
                                      Preview:wOF2......H...........Hl.........................|..Z..h.`?STATZ..0..|........X..#..2..6.$..`. ..........0z.......J.s...&.Vw.E.q.......'.!#...hkU. #..p.V..=b..(..1.....*..%.2...K*........w,-..!>..Qb.Y;..."..@...1.....b...b. .5....b...t.:./.>A.:..@......-...Q..z.F.....=.#4.I......1..>..'.@49.~'!$%....|.....m..^......U..#.L.....3.M(j(*.......3.....Fohc......w*wZ...cQ..J9n..X.,.U%.T..i....=...D.F..k...F.TBRio..l;T..]ufHH!...d.4......3..;.....qk...rc.[c}..y...1.....P...TM....a..?...;...<..j6......:...q....l..)(....}.....c.......Zdi.m...i...N:d....v.....*X....n..a.K...@.'...<......U_.l.l..~.i...wk..J5..6./m.....o#..#[...].....L-K....&..#f.P......(.fdm.HO.REU.W....d.A.`...c...pV.8.......].oC...9f.(c\.....]h.{...]..E..d...Y5.}~..|......R....YZ.(.,MH..d....Xm..G-"D......M..r..#..K,.9..PB.F.{Y..#.c.[...F....JJ...b.5Ck....juv...>../...P1.,.{..Q.(^.&.dI|......'\R/..p.C..>.......g."Cx...R.^.U...ju^!`...V.....b...kR....i....C.....X..*.. .BP.V).("..P.....-..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (43771)
                                      Category:downloaded
                                      Size (bytes):88932
                                      Entropy (8bit):4.916224699709446
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:B7915926FE42D76E9C802353AB01DAE4
                                      SHA1:3A8192A4312F25F53DE25B100D62829C0F14D67C
                                      SHA-256:D7705700D24D5919255576642AD2C28BFC790390B7183A369038FF5C1E814D51
                                      SHA-512:4B121702618150EC966AF2EF5B6E104AFA2BF9BBC50E4ECCDF7847B7C2819B205E28310E662AB73E343EBC2BA95B35A7AB2649E9999DCFDAA8AFFCFB92C3D9EE
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/css/dist/block-library/style.min.css?ver=6.0.6
                                      Preview:@charset "UTF-8";.wp-block-archives-dropdown label{display:block}.wp-block-avatar.aligncenter{text-align:center}.wp-block-audio{margin:0 0 1em}.wp-block-audio figcaption{margin-top:.5em;margin-bottom:1em}.wp-block-audio audio{width:100%;min-width:300px}.wp-block-button__link{color:#fff;background-color:#32373c;border-radius:9999px;box-shadow:none;cursor:pointer;display:inline-block;font-size:1.125em;padding:calc(.667em + 2px) calc(1.333em + 2px);text-align:center;text-decoration:none;word-break:break-word;box-sizing:border-box}.wp-block-button__link:active,.wp-block-button__link:focus,.wp-block-button__link:hover,.wp-block-button__link:visited{color:#fff}.wp-block-button__link.aligncenter{text-align:center}.wp-block-button__link.alignright{text-align:right}.wp-block-buttons>.wp-block-button.has-custom-width{max-width:none}.wp-block-buttons>.wp-block-button.has-custom-width .wp-block-button__link{width:100%}.wp-block-buttons>.wp-block-button.has-custom-font-size .wp-block-button__link{f
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 225x225, components 3
                                      Category:dropped
                                      Size (bytes):11886
                                      Entropy (8bit):7.951483165839934
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:F01DD4582E4AECB795BFCFB839839666
                                      SHA1:D36804D9AE882663F3E4298F3071DB7945C2FBE0
                                      SHA-256:07CE64EB5BD5F3ABE06EBB0123B3059DEE8453C3847127AF87230A30BF35B24D
                                      SHA-512:AB9E8EA5F4E53582DABCE5097B2D8D3F02C6A4D187562BE60C6327444D3A864554A7552F485245E33046A74C2E464FFD9B1BE65E5200EDB005ACC3B41A09F04C
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:......JFIF...................................................( ..%...!1!%)+0....383-7(-.+...........-% %+2------------7-----------------------------------....................................................T.........................!.1.."AQa.#24qrst.....3BS......56RTb...$Dd....Ce...c....%...............................8........................!13AQ.."2q...abr...#4R..B..C..............?.... ......@... ......@... ......@... ......@O...S<p....3...4.w>.]j......8g...7..7.C...?.......ix7.>.....}..k..L.T.4k..^.dc..~.#...R\.7......3........{Y.f...,j.QB.ja.#...q..7d..dtyL|gr.:..?_.^.1}....s#N.u{.....s.....h...b}_.mo......~*{E.._..G.{'.........S./.z...~$gp>G........?....{..$'........?........B.mo...=..z..U.....?....Oh...z..........~*{G....:..g.OO.....~._....C..|.uk...?........C....a.I..3..+X[|........I.'G,or......c...g_]/....&.[O).sWD..t..$....]v..>..h..V[.<.....r.......+....8.....lL...O.x1..D......H...h.YU.d.j...b.\V... ............t.........D.W..Z..Hd.l.lQ.:G...
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):2449
                                      Entropy (8bit):4.889845521429551
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:E4D4CFFB64803083612228D0E7A423E9
                                      SHA1:A6713651D72216842540255D86D851C99118A7AF
                                      SHA-256:3CCC8643F026C9AB87C4AD59B374793B8DAB43E53E5EBF1A59644D24C06EA723
                                      SHA-512:61BB473018ED4F9DC4369503073B8310F847DFE8014BE9E496D93C5FF307E2F6B16BACD0201B44BA46E7DCBF367A2672F67B7BE8CB415DF3983AC6C1B07835F4
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/js/menu.js?ver=17.8.4
                                      Preview:/**. * MuffinMenu . * . * Horizontal Multilevel Menu with WP MegaMenu Support . * . * 3.0 | Muffin Group. */..(function( $ ){.."use strict";....$.fn.mfnMenu = function( options ){....var menu = $(this);......var defaults = {....addLast..: false,....arrows : false,....delay : 100,....hoverClass : 'hover',....mobileInit.: 768,....responsive.: true...};...options = $.extend( defaults, options );.........var init = function(){........// add '.submenu' class....$( 'li:has(ul)', menu ).addClass( 'submenu' );........// append mobile toggle button....$( 'li:has(ul)', menu ).append( '<span class="menu-toggle"></span>' );........// add '.mfn-megamenu-parent' class....menu.children( 'li:has( ul.mfn-megamenu )' ).addClass( 'mfn-megamenu-parent' );.........// add '.last-item' class....$( '.submenu ul li:last-child', menu ).addClass( 'last-item' );........// add '.last' class....if( options.addLast ) {.....$( '> li:last-child', menu ).addClass( 'last' ).......prev().addClass( 'last' );..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:GIF image data, version 89a, 24 x 24
                                      Category:downloaded
                                      Size (bytes):2545
                                      Entropy (8bit):7.144078312196678
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:4B3AFB84B2B71EF56DF09997A350BD04
                                      SHA1:ACCDAC8A7ABEAB0E21C49539AAD0A973ADDB28EF
                                      SHA-256:9034D5D34015E4B05D2C1D1A8DC9F6EC9D59BD96D305EB9E24E24E65C591A645
                                      SHA-512:D65078B5D13873ADB363472B5C358F6B42C128B530F8FEBA9776F8E4906CC97F20EE7BF1E823336CDA8049147A9C7FA5E4016F07F96EC154F3774FBDE1A564B6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/assets/loader.gif
                                      Preview:GIF89a...........................................vvv......hhh..........................................!..Created with ajaxload.info.!.......!..NETSCAPE2.0.....,........... .$.AeZ...<...Q46.<...A.......H.a....:....ID0.F...a\xG.3...!...O:-....Rj...TJ..*........t...........~."...ds]......)t...-"...i;H>.n.Qg]_*......R.3.....GI?.....v$...j3!.!.......,........... .$.0eZ..y..0..q ..P..W...)";..qX.^..D50......<H3.!.....k-.n..a. .(.i...d.$P@y.w`.J..#.....?..y........o...g.....f....'8..{..'C.p`j.n."...2.{.`x...jy.4...C,.4..o#n.$.....!.!.......,........... .$. eZ...$.2.....q....E. ....p$H@D/.....G.D.j8v#..P((D..... ..N.(3..#.y....(@...gUx*.kK.).....?K...............$..."....*.......K.....W......x..?.G...#.W....n.h.K,.....+.....*!.!.......,........... .$ .eZ..Y.$1..Q(c......O'"............. 1....q.d"..A.....V.x8p..4988.MRC.@....e*.3@.iI.)..'.?I.........@.......,.....#.........5..,.....".E..z...?..@.E...@.....).....*!.!.......,........... .$.(e..$....C.E1..;...('2$..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                      Category:dropped
                                      Size (bytes):1603
                                      Entropy (8bit):5.2727801090429285
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:78FD7C1A980B9162702E6F984A25B7A6
                                      SHA1:E832ABE897CDAA5E36131733AF619F174AD0F9C5
                                      SHA-256:1C5A3539A6FBE5420A519540FF6662EFEACB0BB1B9B8314C74064694A0D52C0B
                                      SHA-512:06B0C9A98D1F6B5BCF81D81574258B7D479579CD80FC51105C58B99263D802EFD64ECF6B5A9A3105C1046FB7EE3F776547E1593436AFC3E6C0820D149C0913BA
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 404 (Not Found)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//www.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (65536), with no line terminators
                                      Category:downloaded
                                      Size (bytes):381266
                                      Entropy (8bit):5.187091322609732
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:0EE2A2FEAD693A415E0FAFE77B8EB5B5
                                      SHA1:9E4071A140B8019E25ADD69C5ECF3118AF26900A
                                      SHA-256:A7A5B6803D9439FC3AE01128AC16617EB9DF87658B3884B7454353779A729DDF
                                      SHA-512:7857B6EC9FFBEEC0F4F77142C48C068AF74207B52EB794A8AFB21E7F3B60BEBA56BABB11ED49593CE91678432D0A3E35A2424C490BE99033F112897EC52A50F8
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.youtube.com/s/player/7ebf4817/www-player.css
                                      Preview:@charset "UTF-8";.html5-video-player{position:relative;width:100%;height:100%;overflow:hidden;z-index:0;outline:0;font-family:"YouTube Noto",Roboto,Arial,Helvetica,sans-serif;color:#eee;text-align:left;direction:ltr;font-size:11px;line-height:1.3;-webkit-font-smoothing:antialiased;-webkit-tap-highlight-color:rgba(0,0,0,0);touch-action:manipulation;-ms-high-contrast-adjust:none;forced-color-adjust:none}.html5-video-player:not(.ytp-transparent),.html5-video-player.unstarted-mode,.html5-video-player.ad-showing,.html5-video-player.ended-mode{background-color:#000}.ytd-video-masthead-ad-primary-video-renderer .html5-video-player:not(.ytp-transparent),.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.unstarted-mode,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ad-showing,.ytd-video-masthead-ad-primary-video-renderer .html5-video-player.ended-mode{background-color:transparent}.ytp-big-mode{font-size:17px}.ytp-autohide{cursor:none}.html5-video-player a{color
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (1723)
                                      Category:downloaded
                                      Size (bytes):1896
                                      Entropy (8bit):5.003221203159586
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:ECD2988783BB4E49F6A242620D54AC21
                                      SHA1:6863076F3F4C1D0203E511258703AF9F02FC97A7
                                      SHA-256:20FBF71645DE91C6368D758F878B980C72BCE11166A26902BC3E9625EAC51833
                                      SHA-512:4778FC6084A1AEBFE76DA092C485E1451FF50BB2FB9B57CA4657B4BBE821C194B1BD39F0E8BF7B947E320661C4A7F46231A9C0E9EE95D2816E7809EA037F9899
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/assets/animations/animations.min.js?ver=17.8.4
                                      Preview://.Animations v1.4, Copyright 2014, Joe Mottershaw, https://github.com/joemottershaw/.//.==================================================================================..function animateElement(){jQuery(".animate").each(jQuery(window).width()>=960?function(a,n){var n=jQuery(n),i=jQuery(this).attr("data-anim-type"),t=jQuery(this).attr("data-anim-delay");n.visible(!0)&&setTimeout(function(){n.addClass(i)},t)}:function(a,n){var n=jQuery(n),i=jQuery(this).attr("data-anim-type"),t=jQuery(this).attr("data-anim-delay");setTimeout(function(){n.addClass(i)},t)})}function randomClass(){var a=Math.ceil(Math.random()*classAmount);return classesArray[a]}function animateOnce(a,n){"random"==n&&(n=randomClass()),jQuery(a).removeClass("trigger infinite "+triggerClasses).addClass("trigger").addClass(n).one("webkitAnimationEnd oAnimationEnd MSAnimationEnd animationend",function(){jQuery(this).removeClass("trigger infinite "+triggerClasses)})}function animateInfinite(a,n){"random"==n&&(n=randomClass())
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (3537)
                                      Category:downloaded
                                      Size (bytes):52603
                                      Entropy (8bit):5.316331138717284
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:F0A9F2F65F95B61810777606051EE17D
                                      SHA1:872BF131CB4BEFD0242339F072F2F9B9FBF8019F
                                      SHA-256:9CDF2602AC04F7E2BED582D4299C73D464FC4AB069E3AD5A20EE2B6635A015B8
                                      SHA-512:6823914507BA31E0F61B95CC53F09543C3C14E5530E9EF1B00338FBBD7C25D2E398F5F628DF4ED25D6FF88E0F8BEE506EFE62BA704778BA7CFF09AEC9579D9F0
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.gstatic.com/eureka/clank/117/cast_sender.js
                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var f,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},h="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ba=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");.},ca=ba(this),da=function(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&h(c,a,{configurable:!0,writable:!0,value:b})}};.da("Symbol",function(a){if(a)return a;var b=function(g,k){this.g=g;h(this,"description",{configurable:!0,writable:!0,value:k})};b.prototype.toStri
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
                                      Category:downloaded
                                      Size (bytes):37908
                                      Entropy (8bit):7.966028158983167
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:E501B7F6DFEA8894095023EB170B949C
                                      SHA1:559885C8DB6C32EC936D0DD3206A49DCDE0DC0F3
                                      SHA-256:7555A7D794A4962DA1FD218B6BB3B476F1ECB8F8B6A925E27E471491E043D98A
                                      SHA-512:3D7D6A40FDDB101916F51D86546404F6E105C4FEF918A19CF1F318B73CFBEF95B80176183861863310192B1A2EB6F09AA7833A16ABFEE11A5AA3D2DCC74B1635
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://i.ytimg.com/vi/cjJVAxyfZKU/sddefault.jpg
                                      Preview:......JFIF.........................................#.%$"."!&+7/&)4)!"0A149;>>>%.DIC<H7=>;...........;("(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."........................................C........................!1.A.."Qa2q.B..#3R......$4Cbr.S..%..c.D................................%.....................!1..A.Q.a"2q#.............?..<S.N.jakXH...D...p.1..gbh2/..P"..B8..s.....Wh....H."..I..GhPUY*.(.y.(...+%m%.oLM-T6...E.r....m..5.hN.Z..~Rk...wx..!y..*u....F.*....P.......2A/.4$....psD..a...k..G.A..Z.u.g&..M..V.?Mf.r.iB..NWj......c.....Z0.Y...U..*...*...%z...=...2k.?..........n...H....i..|....R.o...jT...,..1..4..}..S.jed*B.6hG.#.F.MA..V.._F....*.Rl.!..)V>Lc./...:6H.....m\o.t~..Iq..g.......%...6G.,...:..@pP.>+5.l0...2..zj*v....y..Tr..sR;.S....../lS....S>.M.....9.5b{(.@Z[....QRV'4{.a....X...F...C.........mD\.Y.6.=c=..`.I..BW..(y&...ACoE.m.U..R....^.j.7.jc.>$4.8KH4.....y......3E...Sc:O....n.... .....#jCP.}.xR*.4..C^)..JA..[z+.P.UDX..r..M..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, ASCII text, with very long lines (25274)
                                      Category:downloaded
                                      Size (bytes):25455
                                      Entropy (8bit):5.001602495454823
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:9C987714777529A5E2B4AFD81A1F2F7F
                                      SHA1:8248EE40C640AE5C4AFB9753C7E30176A3728038
                                      SHA-256:6D4F84A86BB86352E951B6C9AF87C3411920E6BDBC2F407B17AF06E1AB5CAAA4
                                      SHA-512:6051D6BF6D6B952256A6584CC39244B4E2CC734E0E307144325246D1AD87819B342C785BE292020E5A9930BD41774E2087910B9F209554A649E2EEF852BCCBEE
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/ui/sortable.min.js?ver=1.13.1
                                      Preview:/*!. * jQuery UI Sortable 1.13.1. * http://jqueryui.com. *. * Copyright jQuery Foundation and other contributors. * Released under the MIT license.. * http://jquery.org/license. */.!function(t){"use strict";"function"==typeof define&&define.amd?define(["jquery","./mouse","./core"],t):t(jQuery)}(function(u){"use strict";return u.widget("ui.sortable",u.ui.mouse,{version:"1.13.1",widgetEventPrefix:"sort",ready:!1,options:{appendTo:"parent",axis:!1,connectWith:!1,containment:!1,cursor:"auto",cursorAt:!1,dropOnEmpty:!0,forcePlaceholderSize:!1,forceHelperSize:!1,grid:!1,handle:!1,helper:"original",items:"> *",opacity:!1,placeholder:!1,revert:!1,scroll:!0,scrollSensitivity:20,scrollSpeed:20,scope:"default",tolerance:"intersect",zIndex:1e3,activate:null,beforeStop:null,change:null,deactivate:null,out:null,over:null,receive:null,remove:null,sort:null,start:null,stop:null,update:null},_isOverAxis:function(t,e,i){return e<=t&&t<e+i},_isFloating:function(t){return/left|right/.test(t.css("float"))|
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (5326), with no line terminators
                                      Category:downloaded
                                      Size (bytes):5326
                                      Entropy (8bit):4.913766761912826
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:4A4C867CBC5FF57FDA5BC9B5FF3FFF7D
                                      SHA1:E04CE95A1DCB60356FE19138717080215F53FBB6
                                      SHA-256:D2C30641EED11D27CC45AB60849AAEF8D0CEF92B8C75B09648FFB764BD6017C0
                                      SHA-512:D9069CC73F50128990BDA444F9DD21BABC9828743F9A132C5CD274808E7B3D7D3F22137432D659C23477F35B61FA27242A60965FD6BCA52F5CE0A7A86E6832A9
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/cookie-notice/css/front.min.css?ver=6.0.6
                                      Preview:#cookie-notice{position:fixed;min-width:100%;height:auto;z-index:100000;font-size:13px;letter-spacing:0;line-height:20px;left:0;text-align:center;font-weight:400;font-family:-apple-system,BlinkMacSystemFont,Arial,Roboto,"Helvetica Neue",sans-serif}#cookie-notice,#cookie-notice *{-webkit-box-sizing:border-box;-moz-box-sizing:border-box;box-sizing:border-box}#cookie-notice.cn-animated{-webkit-animation-duration:.5s!important;animation-duration:.5s!important;-webkit-animation-fill-mode:both;animation-fill-mode:both}#cookie-notice.cn-animated.cn-effect-none{-webkit-animation-duration:.001s!important;animation-duration:.001s!important}#cookie-notice .cookie-notice-container{display:block}#cookie-notice.cookie-notice-hidden .cookie-notice-container{display:none}#cookie-notice .cookie-revoke-container{display:block}#cookie-notice.cookie-revoke-hidden .cookie-revoke-container{display:none}.cn-position-top{top:0}.cn-position-bottom{bottom:0}.cookie-notice-container{padding:15px 30px;text-align:
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):6704
                                      Entropy (8bit):4.040877761945374
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:AF31B2D759DDAE795F623B8FF403C3EF
                                      SHA1:A45DB8F433AD5D481258E452D75E444F02A0473D
                                      SHA-256:473FBE193000B252278E08104106331B16CD71D1D671D52062D98B283A95B94E
                                      SHA-512:D1DEAB9520E64B246A44EACE6BA9472B69B3386DAAB5998A15F31F0DE579EB66CF1DD213B83D12F7973B06869C72BB39273D014412F6AC10B960B44B619315AF
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/js/parallax/translate3d.js?ver=17.8.4
                                      Preview:/**. * Parallax . * . * Translate3d . * . * 1.0 | Muffin Group. */..var mfnSetup = {. translate: null.};..(function( $ ){. "use strict";. . /* ------------------------------------------------------------------------. * . * mfnSetup. *. * --------------------------------------------------------------------- */. . . // has3d ------------------------------------------------. . var has3d = function(){. .. if ( ! window.getComputedStyle ) {. return false;. }.. var el = document.createElement('div'), . has3d,. transforms = {. 'webkitTransform':'-webkit-transform',. 'OTransform':'-o-transform',. 'msTransform':'-ms-transform',. 'MozTransform':'-moz-transform',. 'transform':'transform'. };.. document.body.insertBefore(el, null);.. for (var t in transforms) {. if (el.style[t] !== undefine
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (401)
                                      Category:downloaded
                                      Size (bytes):114350
                                      Entropy (8bit):5.104935502559055
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:D8C8499711D69E2AE53D083CA52AB002
                                      SHA1:ACB22E8917F9E13103DA7085EC9B8DA6B734095E
                                      SHA-256:6E1308AF060B716955D37845C46A8444F10F56C628068525877AD000C82145A6
                                      SHA-512:9B3E64CD0C7F8409AC3FA340D0908C55E5FDAA1F03AC408C22BB778A9987F24CC11D3F8224EDBA213A934A993C8582AA6BD2CD51B78F70A20378D49C4FD89BF6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/css/layout.css?ver=17.8.4
                                      Preview:/* Global ---------------------------------------------------------------------------- */..rev_slider iframe{max-width:1220px}..rev_slider ul{margin:0!important}..tp-static-layers{z-index:200}.#mfn-layer-slider{position:relative;z-index:28}.#mfn-layer-slider .ls-yourlogo{z-index:29}../* Section --------------------------------------------------------------------------- */..section[data-parallax="3d"]{overflow:hidden}..section .mfn-parallax{position:absolute;left:0;top:0;max-width:none!important;transition:opacity .2s;}..wrap[data-parallax="3d"]{overflow:hidden;position:relative}..wrap[data-parallax="3d"] > .mcb-wrap-inner,.wrap[data-parallax="3d"] > .column{position:relative}..section.center{text-align:center}..section.no-margin .column,.section.no-margin-v .column{margin-bottom:0}..the_content_wrapper pre{margin-bottom:20px}../* Transparent ----------------------------------------------------------------------- */..tr-content #Wrapper,.tr-content #Content{background:none}..tr-header #
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (612)
                                      Category:downloaded
                                      Size (bytes):55032
                                      Entropy (8bit):5.12718550255444
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:1375C6F7A2A74B3822C652E4964009BA
                                      SHA1:1A110757C64CB8E4AB3E2163C3F3ABED725D76F2
                                      SHA-256:7534A381ADE689F4BF08C40C14F9CCFA8298DE40BEE88DD4BE1E2BD0FEACCB5F
                                      SHA-512:12EF4329DB4DB82E96B507CFCE768E5498203C51D8F9323DA7D15704B01840377AA2B3A57F80B785DAAFDD78B6A129232804FF9079E888B78518E2382262885E
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/css/responsive.css?ver=17.8.4
                                      Preview:html,body{overflow-x:hidden}../* > 1240 ------------------------------------------------------------------------------------------------------------- > 1240 */..@media only screen and (min-width: 1240px).{....layout-boxed{padding:25px}...layout-boxed.nice-scroll{padding:25px 25px 25px 15px}...layout-boxed.boxed-no-margin{padding:0;}..#Top_bar.loading{display:none}.....hover_color:hover .hover_color_bg,.hover_color.hover .hover_color_bg{background-color:inherit!important;border-color:inherit!important}.}.../* #Header Creative always Open.1240 - 1489 ----------------------------------------- #Header Creative always Open 1240 - 1489 */..@media only screen and (min-width: 1240px) and (max-width: 1489px).{...body.header-open.......{min-width:0;}...header-open #Wrapper ......{max-width:960px;}.....header-open .section_wrapper,...header-open .container,...header-open.with_aside .content_wrapper.{max-width:940px;}.....header-open.with_aside .section_wrapper.{max-width:100%;}.../* -------------
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
                                      Category:downloaded
                                      Size (bytes):15552
                                      Entropy (8bit):7.983966851275127
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:285467176F7FE6BB6A9C6873B3DAD2CC
                                      SHA1:EA04E4FF5142DDD69307C183DEF721A160E0A64E
                                      SHA-256:5A8C1E7681318CAA29E9F44E8A6E271F6A4067A2703E9916DFD4FE9099241DB7
                                      SHA-512:5F9BB763406EA8CE978EC675BD51A0263E9547021EA71188DBD62F0212EB00C1421B750D3B94550B50425BEBFF5F881C41299F6A33BBFA12FB1FF18C12BC7FF1
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                      Preview:wOF2......<...........<Z.........................d..z..J.`..L.\..<.....<.....^...x.6.$..6. .... ..S..}%.......|....x..[j.E...d..-A...]=sjf$X.o.5......V....i?}.\...;...V......5..mO=,[.B..d'..=..M...q...8..U'..N..G...[..8....Jp..xP...'.?....}.-.1F.C.....%z..#...Q...~.~..3.............r.Xk..v.*.7t.+bw...f..b...q.W..'E.....O..a..HI.....Y.B..i.K.0.:.d.E.Lw....Q..~.6.}B...bT.F.,<./....Qu....|...H....Fk.*-..H..p4.$......{.2.....".T'..........Va.6+.9uv....RW..U$8...p...........H5...B..N..V...{.1....5}p.q6..T...U.P.N...U...!.w..?..mI..8q.}.... >.Z.K.....tq..}.><Ok..w.. ..v....W...{....o...."+#+,..vdt...p.WKK:.p1...3`. 3.......Q.].V.$}.......:.S..bb!I...c.of.2uq.n.MaJ..Cf.......w.$.9C...sj.=...=.Z7...h.w M.D..A.t.....]..GVpL...U(.+.)m..e)..H.}i.o.L...S.r..m..Ko....i..M..J..84.=............S..@......Z.V.E..b...0.....@h>...."$.?....../..?.....?.J.a,..|..d...|`.m5..b..LWc...L...?.G.].i...Q..1.:..LJV.J...bU.2.:\.kt.......t.....k....B..i.z+...........A.....
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (15660)
                                      Category:downloaded
                                      Size (bytes):18617
                                      Entropy (8bit):4.746740754378132
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:32BEB68A374E3AEAC00ABDF9E12B84EA
                                      SHA1:B5D18AA625E8696DD9D07CD0869337717B211AE0
                                      SHA-256:5AAD5FBD4238981A9FF5E2772FF1353DFE1A801FB49542FE157418C1438F7782
                                      SHA-512:8FC41038B4DC2FC2465422FB3144B71C2ACD2F4552607369314FEC9B7F561B7A3919CDC4219DF2089395241168FFBFE29E67DDDA834E66C27E4C88066C8F4496
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/wp-emoji-release.min.js?ver=6.0.6
                                      Preview:/*! This file is auto-generated */.// Source: wp-includes/js/twemoji.min.js.var twemoji=function(){"use strict";var f={base:"https://twemoji.maxcdn.com/v/14.0.2/",ext:".png",size:"72x72",className:"emoji",convert:{fromCodePoint:function(d){d="string"==typeof d?parseInt(d,16):d;if(d<65536)return b(d);return b(55296+((d-=65536)>>10),56320+(1023&d))},toCodePoint:i},onerror:function(){this.parentNode&&this.parentNode.replaceChild(g(this.alt,!1),this)},parse:function(d,u){u&&"function"!=typeof u||(u={callback:u});return("string"==typeof d?function(d,a){return o(d,function(d){var u,f,c=d,e=x(d),b=a.callback(e,a);if(e&&b){for(f in c="<img ".concat('class="',a.className,'" ','draggable="false" ','alt="',d,'"',' src="',b,'"'),u=a.attributes(d,e))u.hasOwnProperty(f)&&0!==f.indexOf("on")&&-1===c.indexOf(" "+f+"=")&&(c=c.concat(" ",f,'="',u[f].replace(t,n),'"'));c=c.concat("/>")}return c})}:function(d,u){var f,c,e,b,a,t,n,r,o,i,s,l=function d(u,f){var c,e,b=u.childNodes,a=b.length;for(;a--;)c=b[a]
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, ASCII text, with very long lines (9720), with no line terminators
                                      Category:downloaded
                                      Size (bytes):9720
                                      Entropy (8bit):5.190875694455323
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:CFB428C02811F0CBE515D5F3DCA61DE6
                                      SHA1:E95F8696FBE29A706E66CCF582B36D9BD650AB9F
                                      SHA-256:679E44F9B4BBBC2AD0C4000C1413FD3A88627D83F1CBA8EBDAC26F81BC7EDB78
                                      SHA-512:B5088A7E5E42E078116D23F82BBE1F0862C029E69FB68CAD655AA73643626AF50CA3335CA64D25624A713EE83C79774949FD9AB4BF2AC598DDB0B2174D3FB326
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/contact-form-7/includes/js/index.js?ver=5.5.6.1
                                      Preview:!function(){"use strict";const e=e=>Math.abs(parseInt(e,10)),t=(e,t)=>{const r=new Map([["init","init"],["validation_failed","invalid"],["acceptance_missing","unaccepted"],["spam","spam"],["aborted","aborted"],["mail_sent","sent"],["mail_failed","failed"],["submitting","submitting"],["resetting","resetting"],["payment_required","payment-required"]]);r.has(t)&&(t=r.get(t)),Array.from(r.values()).includes(t)||(t=`custom-${t=(t=t.replace(/[^0-9a-z]+/i," ").trim()).replace(/\s+/,"-")}`);const n=e.getAttribute("data-status");return e.wpcf7.status=t,e.setAttribute("data-status",t),e.classList.add(t),n&&n!==t&&e.classList.remove(n),t},r=(e,t,r)=>{const n=new CustomEvent(`wpcf7${t}`,{bubbles:!0,detail:r});"string"==typeof e&&(e=document.querySelector(e)),e.dispatchEvent(n)},n=e=>{const{root:t,namespace:r="contact-form-7/v1"}=wpcf7.api;return a.reduceRight(((e,t)=>r=>t(r,e)),(e=>{let n,a,{url:c,path:s,endpoint:o,headers:i,body:l,data:p,...d}=e;"string"==typeof o&&(n=r.replace(/^\/|\/$/g,""),a=o
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (27985), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):28235
                                      Entropy (8bit):5.425780388143953
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:93AF275C0F187CACF4692E0D88A48E0A
                                      SHA1:EBF18943371AEAC1379C3DD07B400FC5FBC22B57
                                      SHA-256:5F4423EA95817FFE96AE0640FAB5AA4E51CFACB1C7A37F608E816DC8C6DA5FCA
                                      SHA-512:E0B4A99FD47F0DE378477CF08251BBE2C913463DC552426AD8621EE1A0BFF4764874B282DC5EFE9D13CA817B278B22BC43B7F197C64F9912FF3337A05D99D7CD
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/js/extensions/revolution.extension.slideanims.min.js?version=5.4.3
                                      Preview:/************************************************.. * REVOLUTION 5.4 EXTENSION - SLIDE ANIMATIONS.. * @version: 1.7 (17.03.2017).. * @requires jquery.themepunch.revolution.js.. * @author ThemePunch..************************************************/..!function(a){"use strict";var b=jQuery.fn.revolution,c={alias:"SlideAnimations Min JS",name:"revolution.extensions.slideanims.min.js",min_core:"5.0",version:"1.7"};jQuery.extend(!0,b,{animateSlide:function(a,d,e,f,h,i,j,k){return"stop"===b.compare_version(c).check?k:g(a,d,e,f,h,i,j,k)}});var d=function(a,c,d,e){var f=a,g=f.find(".defaultimg"),h=g.data("mediafilter"),i=f.data("zoomstart"),j=f.data("rotationstart");void 0!=g.data("currotate")&&(j=g.data("currotate")),void 0!=g.data("curscale")&&"box"==e?i=100*g.data("curscale"):void 0!=g.data("curscale")&&(i=g.data("curscale")),b.slotSize(g,c);var k=g.attr("src"),l=g.data("bgcolor"),m=c.width,n=c.height,o=g.data("fxof"),p=0;void 0===l&&(l=g.css("backgroundColor")),"on"==c.autoHeight&&(n=c.c.h
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (11760)
                                      Category:downloaded
                                      Size (bytes):11937
                                      Entropy (8bit):5.0591527442655595
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:1D376BE55E51AEA00D432F6659D3E0D1
                                      SHA1:CC5B9F6FA12D0A90B38D3D6E918401C9AD26332B
                                      SHA-256:34934DC0D2652647955344D4D53218860096F14217C81C1EB5B02E54526835B6
                                      SHA-512:658752E7EC7B916BBF9B7F5D14C689A443735154BCC4C57B3CF9AECBFEB78C96882175F42AD4AC5ED2CC7BE0013AA451D3E8FDCB7B29CDD95282DF3E06065312
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/ui/tabs.min.js?ver=1.13.1
                                      Preview:/*!. * jQuery UI Tabs 1.13.1. * http://jqueryui.com. *. * Copyright jQuery Foundation and other contributors. * Released under the MIT license.. * http://jquery.org/license. */.!function(t){"use strict";"function"==typeof define&&define.amd?define(["jquery","./core"],t):t(jQuery)}(function(l){"use strict";var a;return l.widget("ui.tabs",{version:"1.13.1",delay:300,options:{active:null,classes:{"ui-tabs":"ui-corner-all","ui-tabs-nav":"ui-corner-all","ui-tabs-panel":"ui-corner-bottom","ui-tabs-tab":"ui-corner-top"},collapsible:!1,event:"click",heightStyle:"content",hide:null,show:null,activate:null,beforeActivate:null,beforeLoad:null,load:null},_isLocal:(a=/#.*$/,function(t){var e=t.href.replace(a,""),i=location.href.replace(a,"");try{e=decodeURIComponent(e)}catch(t){}try{i=decodeURIComponent(i)}catch(t){}return 1<t.hash.length&&e===i}),_create:function(){var e=this,t=this.options;this.running=!1,this._addClass("ui-tabs","ui-widget ui-widget-content"),this._toggleClass("ui-tabs-collapsib
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 81 x 82, 8-bit colormap, non-interlaced
                                      Category:downloaded
                                      Size (bytes):1391
                                      Entropy (8bit):7.603187803879737
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:3E67D3D8A520A11A7EB1C7B67C3F0812
                                      SHA1:EC2C7CE251DFAA853DD31C8D24927B48512A3929
                                      SHA-256:BE856BC3B1FBA46D4F708C060F1F301AAC9016E5A13D730F3A8E4FE93FA389F1
                                      SHA-512:9A5194C828880465195E7130764B4ABBA6E577A63AA9329EF3501C3146ADFD9909A745A63C60A8A995BF65F51CC3F5139D647327FD00CC20FC8699F768F1E993
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/uploads/2015/03/home_webdesign_offer3_icon.png
                                      Preview:.PNG........IHDR...Q...R...........~PLTE.....................................................................................................................................)tRNS...O.........;..g.w1.IA..._T..)!...Yp..~.f..%...wIDATX..W..0....{.1n..?...]d....IN.....evV..wL.k..Q....."....Q.^......Y.Aw.%...Vy.$2t...6...P.d........7.5k#b...|.V..X..h#.....K..V......ai#d. ..t2....Q..s-I.. ...'..V.N....>BJr]. .u......G.GI.GQ..?.._.M.....K.+G..;.v..`...K3+.w..X.w&..&..I?y.A..W....)........]...bz..*S...bszI....[5.t..F..<...;.......cx...YE.....|.f.x&..+.Z...c.P..u.n.Ir+.d....+..H.arI_.......P.I....z.F.;J.Ilzt...s....R..0Z.`K.L\..uzN.G..l.I.tbE..1.F..Yl.C....E.5..deG2R.r.."...K....:C....Q..$.......1.CRC...v..}..%.mW.q.i.....2#P.U..b..J..I...!.cb.u... "d..u......2Qc...8.^D.i..0s..rsv2.h.{*....D0B.4...DR?.T..V'..7.x.r./w.....sv.o..6MB-hJ*W......oH....L...^..I.wP..2.{..0.Dz....4-<EO].zT..C..)..B........L.c6"c.......1..l..&)j...E{R3...j.....z^.<-!........D=CB...R
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                      Category:dropped
                                      Size (bytes):1599
                                      Entropy (8bit):5.267838660635414
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:5EDBA73F30F0D3A342CECCB3A34BFE45
                                      SHA1:3F39E4C8EF00408D327260F5328162AB3E5D3CAF
                                      SHA-256:F768529B209DB7EDF38AA0DA2A69C1C1DBE5A760D457FE74080D3AD76F14A0C2
                                      SHA-512:C302E3CCC2D9F2E12133ED07082A78260613F1B8C756D9EB2CF0A7AF63C425D4A8956B01EAE3FC3DFAB506DACF6416B0B53929D535CFA2AD81951183A6526FE7
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 404 (Not Found)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//www.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
                                      Category:downloaded
                                      Size (bytes):15344
                                      Entropy (8bit):7.984625225844861
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:5D4AEB4E5F5EF754E307D7FFAEF688BD
                                      SHA1:06DB651CDF354C64A7383EA9C77024EF4FB4CEF8
                                      SHA-256:3E253B66056519AA065B00A453BAC37AC5ED8F3E6FE7B542E93A9DCDCC11D0BC
                                      SHA-512:7EB7C301DF79D35A6A521FAE9D3DCCC0A695D3480B4D34C7D262DD0C67ABEC8437ED40E2920625E98AAEAFBA1D908DEC69C3B07494EC7C29307DE49E91C2EF48
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxK.woff2
                                      Preview:wOF2......;........H..;..........................d..@..J.`..L.T..<.....x.....^...x.6.$..6. ..t. ..I.h|.l....A....b6........(......@e.]...*:..-.0..r.)..hS..h...N.).D.........b.].......^..t?.m{...."84...9......c...?..r3o....}...S]....zbO.../z..{.....~cc....I...#.G.D....#*e.A..b...b`a5P.4........M....v4..fI#X.z,.,...=avy..F.a.\9.P|.[....r.Q@M.I.._.9..V..Q..]......[ {u..L@...]..K......]C....l$.Z.Z...Zs.4........ x.........F.?.7N..].|.wb\....Z{1L#..t....0.dM...$JV...{..oX...i....6.v.~......)|.TtAP&).KQ.]y........'...:.d..+..d..."C.h..p.2.M..e,.*UP..@.q..7..D.@...,......B.n. r&.......F!.....\...;R.?-.i...,7..cb../I...Eg...!X.)5.Aj7...Ok..l7.j.A@B`".}.w.m..R.9..T.X.X.d....S..`XI..1... .$C.H.,.\. ..A(.AZ.................`Wr.0]y..-..K.1.............1.tBs..n.0...9.F[b.3x...*$....T..PM.Z-.N.rS?I.<8eR'.3..27..?;..OLf*.Rj.@.o.W...........j~ATA....vX.N:.3dM.r.)Q.B...4i.f..K.l..s....e.U.2...k..a.GO.}..../.'..%$..ed.*.'..qP....M..j....../.z&.=...q<....-..?.A.%..K..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with no line terminators
                                      Category:downloaded
                                      Size (bytes):16
                                      Entropy (8bit):3.875
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:C78FC4C73991971736F95F00B7C09E4F
                                      SHA1:2BFE006346297E446B58308E3F37169A4BC29046
                                      SHA-256:C70E533105E5FE64092A52295354E975F8D6DDF470DA3F7AE4A6D4F3FC915283
                                      SHA-512:5F85D1EA2C4DB38DF3A6FC5414C03EDA186CF86A84F9D0E4C37053791060936B486A0493B54010319FCBA943ED4E95F58045C3EDD135952E69CED9EE87BD21F0
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAlJSKu-jWy74hIFDbtXVmo=?alt=proto
                                      Preview:CgkKBw27V1ZqGgA=
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (365)
                                      Category:downloaded
                                      Size (bytes):19600
                                      Entropy (8bit):4.943671353848363
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:CF7EACBC2BC887B146299B70F4A21568
                                      SHA1:888EFBB0357EEACF273B870956D266DEA627D465
                                      SHA-256:231DA2E502AA3AFF1A1CBBACC451848EDCB3FE7DB0901D407505A9A704A17720
                                      SHA-512:67292907C30E0D1128F49B4C6011954737DF3C2B3F554F158A4757923AD112105F6F483160DAA22DF43E5A9B2E285C1384514315706B6EE49A54AF98766D52B6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/assets/ui/jquery.ui.all.css?ver=17.8.4
                                      Preview:.ui-helper-hidden{display:none}..ui-helper-hidden-accessible{position:absolute!important;clip:rect(1px,1px,1px,1px)}..ui-helper-reset{border:0;outline:0;line-height:1.3;text-decoration:none;font-size:100%;list-style:none;margin:0;padding:0}..ui-helper-clearfix:before,.ui-helper-clearfix:after{content:"";display:table}..ui-helper-clearfix:after{clear:both}..ui-helper-clearfix{zoom:1}..ui-helper-zfix{width:100%;height:100%;top:0;left:0;position:absolute;opacity:0;filter:Alpha(Opacity=0)}...ui-state-disabled{cursor:default!important}...ui-icon{display:block;text-indent:-99999px;overflow:hidden;background-repeat:no-repeat;width:16px;height:16px;background-image:url(images/ui-icons_222222_256x240.png)}...ui-widget-overlay{position:absolute;top:0;left:0;width:100%;height:100%;background:#aaa url(images/ui-bg_flat_0_aaaaaa_40x100.png) 50% 50% repeat-x;opacity:.3;filter:Alpha(Opacity=30)}...ui-accordion{width:100%}..ui-accordion .ui-accordion-header{cursor:pointer;position:relative;margin-top:
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (682)
                                      Category:downloaded
                                      Size (bytes):327958
                                      Entropy (8bit):5.591298145874855
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:04285CAA68F8C66024F4F2330FED1013
                                      SHA1:372E6AD3EBCB0E28EB277F44D86EA34CA17A94EA
                                      SHA-256:EE0C4CA8A9D1BBF35389905F8A8D98C0FE6008B67EE81CE13ED03E4154608191
                                      SHA-512:B34FD0ECD597A39ECFD1E14AB1E5A179CE1BE8723BD1A69B50B2E0F7A6A0D3F1F94ED0DE564F7038DCCDC324D1F1FDBDC3071E2F65424463C5CC9C140A1C3352
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.youtube.com/s/player/7ebf4817/www-embed-player.vflset/www-embed-player.js
                                      Preview:(function(){'use strict';var m;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}.var ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}.var fa=ca(this);function u(a,b){if(b)a:{var c=fa;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.u("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}.function c(f,g){this.h=f;ba(this,"description",{configurable:!0,writable:!0,va
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 7 x 7, 8-bit/color RGB, non-interlaced
                                      Category:dropped
                                      Size (bytes):959
                                      Entropy (8bit):5.951022567109361
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:2B96FA84C464ABAED9D26D556D483DC3
                                      SHA1:D3DC885273EFDCC03995EEBBFF7C4F797BE8F577
                                      SHA-256:A91ACD8F89ECB11B3B625DBB2CF41456914852C7B869DD911EA7B40FC3E83D72
                                      SHA-512:5A41C0DDA63CA9A52BBA7B35FCD2AB56C77371888F3493D15DD6C8C3FB25C3A572D0DE0CA4C804B083DBECBE30D5BEF64ED7E0A752D28A0FA94E0889B51E76D9
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:.PNG........IHDR.............K0......tEXtSoftware.Adobe ImageReadyq.e<..."iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:EC8591E6C8A711E48B8295D018E8B7B8" xmpMM:DocumentID="xmp.did:EC8591E7C8A711E48B8295D018E8B7B8"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:EC8591E4C8A711E48B8295D018E8B7B8" stRef:documentID="xmp.did:EC8591E5C8A711E48B8295D018E8B7B8"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.G.....3IDATx.btuu}..-.*`........1....B.`...%..5.%...H.........0.H....IEND.B`.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):190
                                      Entropy (8bit):4.564399709813059
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:8311B286DCF9251FF07DCD650B6E069E
                                      SHA1:042DD3BAA3FA332C05B6528DC37A5F603FE7617F
                                      SHA-256:68CAC90431F771257DC3EC04FD0ADCCF63B6602EF714B77236A272FEF0D03695
                                      SHA-512:D5EE8A7123265E2B5571AAA811C53AB40781ECDFC08DFC8032710D87180F48ECE2AB2E38A06945E5F20EA965C42403763DEAED48EE0DC7A47772B87BF5E8A80D
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/right-click-disable-orignal/rightclickdisable.js?ver=6.0.6
                                      Preview:jQuery(document).ready(function().{.jQuery(document).bind("contextmenu", function(){.return false;..});.jQuery('img').bind("contextmenu", function(){ return false;});.});....................
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (54907), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):55158
                                      Entropy (8bit):5.3080163110926035
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:38CDA4E4C0C61BFE4F92BA67FF232686
                                      SHA1:6C51BC4711DE59EE4C2B30A8AD317CF6450E274C
                                      SHA-256:D7F68035B6C4824BF9D5CDE8A94F7380987F31AAE1B33BE4CE1E5E2231389E2C
                                      SHA-512:28FAB4B749EEC2C9A69B90C011F46473DB82DDA43CA1A5E71262F1917181F9E126827925B040F2D84CBAF515EF535D9ABA29C253F4EB4AB38078D3FB5224767B
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/js/extensions/revolution.extension.layeranimation.min.js?version=5.4.3
                                      Preview:/************************************************.. * REVOLUTION 5.4 EXTENSION - LAYER ANIMATION.. * @version: 3.6.2 (06.04.2017).. * @requires jquery.themepunch.revolution.js.. * @author ThemePunch..************************************************/..!function(a){"use strict";function w(a,b,c,d,e,f,g){var h=a.find(b);h.css("borderWidth",f+"px"),h.css(c,0-f+"px"),h.css(d,"0px solid transparent"),h.css(e,g)}var b=jQuery.fn.revolution,e=(b.is_mobile(),b.is_android(),{alias:"LayerAnimation Min JS",name:"revolution.extensions.layeranimation.min.js",min_core:"5.4.0",version:"3.6.2"});jQuery.extend(!0,b,{updateMarkup:function(a,b){var c=jQuery(a).data();if(void 0!==c.start&&!c.frames_added&&void 0===c.frames){var d=new Array,e=t(m(),c.transform_in,void 0,!1),f=t(m(),c.transform_out,void 0,!1),g=t(m(),c.transform_hover,void 0,!1);jQuery.isNumeric(c.end)&&jQuery.isNumeric(c.start)&&jQuery.isNumeric(e.speed)&&(c.end=parseInt(c.end,0)-(parseInt(c.start,0)+parseFloat(e.speed,0))),d.push({frame:"0"
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (634)
                                      Category:downloaded
                                      Size (bytes):52702
                                      Entropy (8bit):5.257055970988569
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:BCFF4F0F0EAAF75435E924EEC527616D
                                      SHA1:FE1E7850635B2A1564E8F7F3195617D2EABA73D7
                                      SHA-256:552825B186D7451E0BF6DF23E2B78B333E0CCC81AEA2DD19055A8ADF4B9FE329
                                      SHA-512:4024F94CEFA21823ABF2B5E43199747565C376DA220756F5051816AA4CE8EC2FE6AF69B483163E566FB82FF46799D3F32D9426700C4C5D24A71E647FE165F784
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/assets/jplayer/jplayer.min.js?ver=17.8.4
                                      Preview:/*. * jPlayer Plugin for jQuery JavaScript Library. * http://www.jplayer.org. *. * Copyright (c) 2009 - 2013 Happyworm Ltd. * Licensed under the MIT license.. * http://opensource.org/licenses/MIT. *. * Author: Mark J Panaghiston. * Version: 2.5.0. * Date: 7th November 2013. */..(function(b,f){"function"===typeof define&&define.amd?define(["jquery"],f):b.jQuery?f(b.jQuery):f(b.Zepto)})(this,function(b,f){b.fn.jPlayer=function(a){var c="string"===typeof a,d=Array.prototype.slice.call(arguments,1),e=this;a=!c&&d.length?b.extend.apply(null,[!0,a].concat(d)):a;if(c&&"_"===a.charAt(0))return e;c?this.each(function(){var c=b(this).data("jPlayer"),h=c&&b.isFunction(c[a])?c[a].apply(c,d):c;if(h!==c&&h!==f)return e=h,!1}):this.each(function(){var c=b(this).data("jPlayer");c?c.option(a||.{}):b(this).data("jPlayer",new b.jPlayer(a,this))});return e};b.jPlayer=function(a,c){if(arguments.length){this.element=b(c);this.options=b.extend(!0,{},this.options,a);var d=this;this.element.bind("remove.jPlaye
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 10 x 10, 8-bit/color RGBA, non-interlaced
                                      Category:downloaded
                                      Size (bytes):974
                                      Entropy (8bit):5.998729674083537
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:B5D66CECE54745F352D2D52E6195A4EE
                                      SHA1:7B7313014426B12F9D51E4DEB9BA237F11759DCF
                                      SHA-256:30CB91834555C22273BD8F0D521BEBAFF6020B2E54BAE4CCFC199F4A1DAAF2EB
                                      SHA-512:9248E6ECF663478A884B75C357E52A477EE11BB59C57C753D984989FC878E41A6519854EED7C84B8A97351E32581B7D2962FD7C7740F8464C31A30E686EDDAF6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/images/stripes/stripes_3_b.png
                                      Preview:.PNG........IHDR..............2.....tEXtSoftware.Adobe ImageReadyq.e<..."iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:28A3907EA2EB11E387E18A936E0E6099" xmpMM:DocumentID="xmp.did:28A3907FA2EB11E387E18A936E0E6099"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:28A3907CA2EB11E387E18A936E0E6099" stRef:documentID="xmp.did:28A3907DA2EB11E387E18A936E0E6099"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>..Hb...BIDATx..;.. ..Pp..O.V...%a.%...Vw.J...$.1.n.&a._..?...\..N...7.....,.=.84....IEND.B`.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 68x68, components 3
                                      Category:dropped
                                      Size (bytes):545
                                      Entropy (8bit):5.574325295699704
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:1B9C37BA766846A22CC2C73D000C13AB
                                      SHA1:C22F41F34CC70D2F2222CDEBC0969EE0174AC741
                                      SHA-256:945D64FCD9160B2FEA415E933343CDB14393B42CA4AAE0B322B99952D6A8EF67
                                      SHA-512:A92165FCA4F16A7890834D8C22D4EB94E024CC15F382DD790F9E0EB06DC087B7990FDFB20ACDC9CF21C292C41F2A81129D400AB53213F627F531040E9D8E159D
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:......JFIF......................................................................................................................................................D.D........................................&.......................5u.....#2A..!...................................................1.....A..............?...OV................[.%....x...R..._.....3.{.9G>.m..3.Lr....[}.?.5.+.....3./..6<.................q.1mf.Ow...s.4..n.e.Q.h..........q.1mf.Ow...s.4..n.e.Q.h..........q.1mf.Ow...s.4..n.e.Q.h.........................
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 576 x 298, 8-bit/color RGB, non-interlaced
                                      Category:downloaded
                                      Size (bytes):196996
                                      Entropy (8bit):7.982385717433592
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:937746C9B26425A749A7F5FC8F8913FB
                                      SHA1:B325946D1445B4DE1142CF8868963B4E0A417226
                                      SHA-256:D9A6BB4411D3231E192BA8C703D8B6708A2B1B3C73F15A7FC30A81F7C2D992F7
                                      SHA-512:0F2891415A50A474929AC736ECF0345964A26DF47F16D1695B8D69781E89528C66010FD86D832ED268591608AB4F405EEAE0330F4803F4D0516A58C433A45A3B
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/uploads/2020/11/centrale.png
                                      Preview:.PNG........IHDR...@...*.....r.x.....pHYs...#...#.x.?v...UiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c145 79.163499, 2018/08/13-16:40:22 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stEvt="http://ns.adobe.com/xap/1.0/sType/ResourceEvent#" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmp:CreatorTool="Adobe Photoshop CC 2019 (Windows)" xmp:CreateDate="2020-11-06T13:30:18+02:00" xmp:MetadataDate="2020-11-06T13:30:18+02:00" xmp:ModifyDate="2020-11-06T13:30:18+02:00" xmpMM:InstanceID="xmp.iid:b26a7f85-53cb-e740-bb99-e3d05394b344" xmpMM:DocumentID="adobe:docid:photoshop:9fc2ef55-b5b3-1a48-aa16-17efd7b7e5e8" xmpMM:OriginalDocumentID="xmp.did:98ed39aa-7bba-e444-a421-7bd77bcd613e" photoshop:Co
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (1143)
                                      Category:downloaded
                                      Size (bytes):4272
                                      Entropy (8bit):5.407649241930215
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:B427175FA1078775EB792756E7B6D1E7
                                      SHA1:4C55C0233D3D9002B3449C025F97821F8BB8900D
                                      SHA-256:EE147E859AD0F09AA50367974E38AB53E7C7054C4A51D400A7F45B0EB251454F
                                      SHA-512:AF8D384188363378BC99C2E51523E74E1D18BA77D51BFF7647A377A117499421F9E94477E09907925E46DAD0A908B799A616D0B4855FFFF064BA6350815063D3
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.gstatic.com/cv/js/sender/v1/cast_sender.js
                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';var l=function(){var a=h,b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},m=this||self,n=/^[\w+/_-]+[=]{0,2}$/,p=null,q=function(a){return(a=a.querySelector&&a.querySelector("script[nonce]"))&&(a=a.nonce||a.getAttribute("nonce"))&&n.test(a)?a:""},r=function(a,b){function e(){}e.prototype=b.prototype;a.i=b.prototype;a.prototype=new e;a.prototype.constructor=a;a.h=function(c,g,k){for(var f=Array(arguments.length-2),d=2;d<arguments.length;d++)f[d-2]=arguments[d];.return b.prototype[g].apply(c,f)}},t=function(a){return a};function u(a){if(Error.captureStackTrace)Error.captureStackTrace(this,u);else{var b=Error().stack;b&&(this.stack=b)}a&&(this.message=String(a))}r(u,Error);u.prototype.name="CustomError";var v=function(a,b){a=a.split("%s");for(var e="",c=a.length-1,g=0;g<c;g++)e+=a[g]+(g<b.length?b[g]:"%s");u.call(this,e+a[c])};r(v,u);v.prototype.name="Asse
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (6475), with no line terminators
                                      Category:downloaded
                                      Size (bytes):6475
                                      Entropy (8bit):5.004343301463056
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:61449413A42D2DAAA79DBE7298B40E21
                                      SHA1:D86C474164C603084397BDC50FB0E469D28B5772
                                      SHA-256:F30769EA0B80A5D900C5F0DE30B1AAD1AB461195E69223D5EF63C2C5DE8B6C1A
                                      SHA-512:3D3A6C00A3CE7CAD3B7131C2DCFD31D651CD5F6D66722605DEAAF44A776AE6D5A532A03C421B9550A05481CE42241F5F23055283DCDFB53E9E2592A4110F3BC2
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/dist/vendor/regenerator-runtime.min.js?ver=0.13.9
                                      Preview:var runtime=function(t){"use strict";var r,e=Object.prototype,n=e.hasOwnProperty,o=(m="function"==typeof Symbol?Symbol:{}).iterator||"@@iterator",i=m.asyncIterator||"@@asyncIterator",a=m.toStringTag||"@@toStringTag";function c(t,r,e){return Object.defineProperty(t,r,{value:e,enumerable:!0,configurable:!0,writable:!0}),t[r]}try{c({},"")}catch(e){c=function(t,r,e){return t[r]=e}}function u(t,e,n,o){var i,a,c,u;e=e&&e.prototype instanceof g?e:g,e=Object.create(e.prototype),o=new j(o||[]);return e._invoke=(i=t,a=n,c=o,u=l,function(t,e){if(u===s)throw new Error("Generator is already running");if(u===p){if("throw"===t)throw e;return k()}for(c.method=t,c.arg=e;;){var n=c.delegate;if(n&&(n=function t(e,n){var o=e.iterator[n.method];if(o===r){if(n.delegate=null,"throw"===n.method){if(e.iterator.return&&(n.method="return",n.arg=r,t(e,n),"throw"===n.method))return y;n.method="throw",n.arg=new TypeError("The iterator does not provide a 'throw' method")}return y}return"throw"===(o=h(o,e.iterator,n.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (3391)
                                      Category:downloaded
                                      Size (bytes):58747
                                      Entropy (8bit):5.55982827695861
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:7A1773C5C44AC04205D5A182E7CAFA0D
                                      SHA1:0B1BF4828C39F0A224FECC1C7DBB255C743463E5
                                      SHA-256:1DCBCB6B5819B6D5B7F4342BDCCC2DA6761E76DA37694366972385AE6AFC2881
                                      SHA-512:E02E5FDB668BA31F9C09A339CB84E60D4DBDE1D6270EA6479053D037EF4FD7C6FD6522EB9959C38A38ACB440B8FC0380653BB8E0298977448985C7932764B6E0
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.youtube.com/s/player/7ebf4817/player_ias.vflset/en_US/embed.js
                                      Preview:(function(g){var window=this;/*. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright Google LLC All Rights Reserved... Use of this source code is governed by an MIT-style license that can be. found in the LICENSE file at https://angular.io/license.*/./*.. Copyright 2017 Google LLC. SPDX-License-Identifier: BSD-3-Clause.*/.'use strict';var Zqb=function(a){a.mutedAutoplay=!1;a.endSeconds=NaN;a.limitedPlaybackDurationInSeconds=NaN;g.RS(a)},$qb=function(){return{I:"svg",.X:{height:"100%",version:"1.1",viewBox:"0 0 110 26",width:"100%"},V:[{I:"path",Fc:!0,S:"ytp-svg-fill",X:{d:"M 16.68,.99 C 13.55,1.03 7.02,1.16 4.99,1.68 c -1.49,.4 -2.59,1.6 -2.99,3 -0.69,2.7 -0.68,8.31 -0.68,8.31 0,0 -0.01,5.61 .68,8.31 .39,1.5 1.59,2.6 2.99,3 2.69,.7 13.40,.68 13.40,.68 0,0 10.70,.01 13.40,-0.68 1.5,-0.4 2.59,-1.6 2.99,-3 .69,-2.7 .68,-8.31 .68,-8.31 0,0 .11,-5.61 -0.68,-8.31 -0.4,-1.5 -1.59,-2.6 -2.99,-3 C 29.11,.98 18.40,.99 18.40,.99 c 0,0 -0.67,-0.01 -1.71,0 z m 72.21,.90 0,21.28 2.78,0 .31,-1.37 .
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (65447)
                                      Category:downloaded
                                      Size (bytes):89521
                                      Entropy (8bit):5.289973268315515
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:02DD5D04ADD4759122013C5AB4DC5CC2
                                      SHA1:A45A56E396AC549B4FF39B696CE9E0C16A7612DE
                                      SHA-256:BD4DE6A3FC0FB68D6F76BA7B93514B96A92E585C295B5351C31AD92A4B0777EA
                                      SHA-512:04690D9875E98F5AE6BF94F5C71B7A0177B374BC09609A0F58312E1C337348749A40E07FE226737DC248BD8FE2F6A489071258619AFFC7F1DF644E4255159615
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/jquery.min.js?ver=3.6.0
                                      Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 1878x960, components 3
                                      Category:downloaded
                                      Size (bytes):204882
                                      Entropy (8bit):7.982559894828336
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:EB207440B5E441A649F9441B065BCCBA
                                      SHA1:90FC10BC2BFAE194F31C5AD2671E0914F477F389
                                      SHA-256:223F0E06504F31C55C2D0855F600D5B28627649E38D04471B7452448DEF897AA
                                      SHA-512:9A862C0ACA673EF9D8FA691D3E361D314DA0B6F5E103CD3465426FDBE4C89703EA92C3ADEE18F2104F37E889AB2C22465BA3C486DE1FB24BAADE7AF6582675AE
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/uploads/2020/11/Stovo-L-plus.jpg
                                      Preview:......JFIF.....H.H.....C.....................................%...#... , #&')*)..-0-(0%()(...C...........(...((((((((((((((((((((((((((((((((((((((((((((((((((........V............................................_.........................!1.A."2Qaq.....#3BRr...$4bt.....%56Ccs...S..&7DT....'du......EV..F..................................=.......................!1.AQ.2."aq.3B.#........R.4Cr$.................?.*.{~QN..:=G.|.....{1...2.....A....+....<..........,].$.F.;p.......i_k.....(.${...[b.P...=.-m.X.;.".yH.zl5...(....B..#.....t-.M,.@.af..1..u...5...)qk...|w..[...G..H...'.\n..;9U.M.|.J.8..k.......a.....m.|.....Dq.|.{.l9q..s..ccu6.)r.....0./...S.uu/U.9..8j8....`h.....m..7ap6.z..8..N!......../.....2.....s.....u....z<.L).=='..v..J.....G}.je....'..h.Xji!...j..;6a....#..c.d..e..U.._...!.y.....n...K .,M.FG...8...t..._...'..-sl.S..._.C.8........%...Y..ng1...bWlGu.|....Pb<..b.k.L=..9.,..8.k..lI.kh...~l....8...|<...#}Dl.dy..?K..oz4...q..a|Cz|E.1.$nN..L..5...5...o...b4...(
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 22404, version 1.0
                                      Category:downloaded
                                      Size (bytes):22404
                                      Entropy (8bit):7.989887184341757
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:EDED078156F1437B04FDFF58FC1BC9FC
                                      SHA1:7623A93583ADD5E71039E436659600A0D513F145
                                      SHA-256:E47EF21C70A3D03DC1BB7A44A728E7AA0E7C767C2D44A69C7BAA52366EFFD113
                                      SHA-512:209C3F5AE0DC9D833336DAC0184757D7C0D590F0F51708E493632EDCCE40340D87A2E919F9C1DAEDFE3961A6001DB288E0FD2C2FF4EAB3BE213C1BC371ECE1E6
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/alegreyasans/v24/5aUt9_-1phKLFgshYDvh6Vwt7V9dv21T.woff2
                                      Preview:wOF2......W........$..W!..........................4..H..N.`.....$..m........~.....6.$..(. ..V..6..k...d^......<.o|.%......l.....I..?''c....Y.C..P.O.9M.r...5S...U.....BAxi."..+.sd.pm..A.|..%.D'7.{.s<..s.#..;......."...l.Y.f-2,......4j.S....U`...Q+........s?.5.....z.....8BDT.FT......A....3.....k....?...f..^Uu.E...@r.D.vG..3.=.1H.;..I.$%L....dM.0=...|...<&....H./.H.D...<M.x..[.~.C.."....#...{. lb.U.t.!.*........oA...5..S..3.....%r.`..#.l.qY}.e.6W\"'%H.DN.2.......J.e .e.1...C}.0.}N.p..>..S.*.x....,pZ.? r7p..E.=.r...M.3..S_1.]...).r.KE)4..fm..4yz.-.._.@H&2.6_~m..$...r.E...D.H&....o.~.s1.H:`....F..6.....O.?V..:.{..y...0 M...!P.I..A.I. @.P...p|.....H./%.9.Y.S..r.....UH..l..."wz...USli.I@.4.1......&vH......oI....Zf-...j..7.C...MkdT..$..x.....pv....u.....oL.b$.#.....P.YO..qW.(.N.-AT?..r..pz.c..@x .. $._ ..pY ....$..X.&#....Q..h^.Z)..W.0E.4.M..&...X$...Z.AV...:4bD-..1..c .Q.J .|U.......P.].... ...A.`.`s....e..`.j:......@..7u.f.<...:.%.$.........(4.!..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 11936, version 1.0
                                      Category:downloaded
                                      Size (bytes):11936
                                      Entropy (8bit):7.979587450905817
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:15D8EDE0A816BC7A9838207747C6620C
                                      SHA1:F6E2E75F1277C66E282553AE6A22661E51F472B8
                                      SHA-256:DBB8F45730D91BFFFF8307CFDF7C82E67745D84CB6063A1F3880FADFAD59C57D
                                      SHA-512:39C75F8E0939275A69F8D30E7F91D7CA06AF19240567FB50E441A0D2594B73B6A390D11033AFB63D68C86C89F4E4BF39B3ACA131B30F640D21101DC414E42C97
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu7GxKOzY.woff2
                                      Preview:wOF2..............r....;.........................@..f..0.`....T..<........a..t.....6.$..d. ..t. ..I..f%.....}...g#.>.Q.(.....,...c..2....y!..W...K...g....n...-.X.`.G*...V{.,C........b..H...|NF....E.Q..!.k..Nl.n...1#...XMG.U'.....jq...#4.I.....O#i.^.......*.r..P..&..x4......62...!Y..AK..`L`T..R.GmT.G.(../HX............&U..(...<.....q...I...ts.qv..I....,..0.h.C.\.L..X.X.o.*]I.{.X...vV-....:tj.80.<.............}p....!.....$b.".M.T.v4..D(..x..^}..|..A......`,..c....b.tV.!kK..........,.!.Q..s.W4O......#(?A<...Y..<2..d...=z.. . .4..r..p..~...!D.s...2=#f..tM-fwe.Lgnv...._.=....m...@A..D{..s#..-.n.Op.....p..z.g...@d......}..I.$r.........=...a.}...E......Yej..t.N6U.R. <..0 ....#...ro..]H....}kB..0...\......~...&..&....L.7.#..#.i....;.Az...R......Er.W.......,8u.(.!..>BB2.0.SlD.dS. ..9F..u~...Y.%..4f......@...d v.Cp8.;}?... ..s..N...n2i...I..!....#.R. .I.w ...K.!.n+.`ah.=.$..<...|..k.7q....gT...Q.."Okc2%{o..r.....8."/...7tOp._D.....u.F'|.7^.j....S.Q.{].
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Unicode text, UTF-8 text, with very long lines (19138), with no line terminators
                                      Category:downloaded
                                      Size (bytes):19142
                                      Entropy (8bit):5.211542899822856
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:57459B58FD7665A5E20B2345463DF9C9
                                      SHA1:71C3B177AD1412D5E0B56D99F18BC345148DF88B
                                      SHA-256:6FECB89A29EE2BD397BB1BF58ECAA530A76F0654DB71FADEFD3CC70B0BC302BF
                                      SHA-512:2604A70A70AFF48B6A8F59BD6D3B56BB5EBAFC3BE40CE17FB0A4F00D498154AEC16273EBDBB4335633A56558D3B44DA879600F1D960DAD94ED7E362FEF49390C
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/dist/vendor/wp-polyfill.min.js?ver=3.15.0
                                      Preview:!function(t){"use strict";var n,r,e;r={},(e=function(t){if(r[t])return r[t].exports;var o=r[t]={i:t,l:!1,exports:{}};return n[t].call(o.exports,o,o.exports,e),o.l=!0,o.exports}).m=n=[function(t,n,r){r(1),r(67),r(68),r(72),r(79),t.exports=r(85)},function(n,r,e){var o=e(2),i=e(36),u=e(57),c=e(56);e=e(62);o({target:"Array",proto:!0},{at:function(n){var r=i(this),e=u(r);return(n=0<=(n=c(n))?n:e+n)<0||e<=n?t:r[n]}}),e("at")},function(n,r,e){var o=e(3),i=e(4).f,u=e(40),c=e(43),f=e(34),a=e(50),p=e(61);n.exports=function(n,r){var e,s,l,y=n.target,v=n.global,d=n.stat,b=v?o:d?o[y]||f(y,{}):(o[y]||{}).prototype;if(b)for(e in r){if(s=r[e],l=n.noTargetGet?(l=i(b,e))&&l.value:b[e],!p(v?e:y+(d?".":"#")+e,n.forced)&&l!==t){if(typeof s==typeof l)continue;a(s,l)}(n.sham||l&&l.sham)&&u(s,"sham",!0),c(b,e,s,n)}}},function(t,n){function r(t){return t&&t.Math==Math&&t}t.exports=r("object"==typeof globalThis&&globalThis)||r("object"==typeof window&&window)||r("object"==typeof self&&self)||r("object"==typeof
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (32011)
                                      Category:downloaded
                                      Size (bytes):195867
                                      Entropy (8bit):5.233965631392028
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:436788B818125F41A42025DCAD40FEE1
                                      SHA1:3D5F058AEC1E0977DB367438DC9DDB520EA14D7F
                                      SHA-256:D5D8451A6E9625D61190156D92FBBA3CE6E3035C04D9F970E70A17984CD48E36
                                      SHA-512:E46A2549E4C57A5246B67984CFF927CD6289AE442BEA1074F8DA15F3A9C3F5624634A4752AA9FC57BBD3CCFA1FADF88FCC506D7B95A1D347E3B0CA194AE67657
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/js/plugins.js?ver=17.8.4
                                      Preview:/**. * Before After. * . * TwentyTwenty. * . * http://zurb.com/playground/twentytwenty. */.!function(t){t.fn.twentytwenty=function(e){var e=t.extend({default_offset_pct:.5,orientation:"horizontal"},e);return this.each(function(){var n=e.default_offset_pct,i=t(this),a=e.orientation,s="vertical"===a?"down":"left",d="vertical"===a?"up":"right";i.wrap("<div class='twentytwenty-wrapper twentytwenty-"+a+"'></div>"),i.append("<div class='twentytwenty-overlay'></div>");var r=i.find("img:first"),w=i.find("img:last");i.append("<div class='twentytwenty-handle'></div>");var c=i.find(".twentytwenty-handle");c.append("<span class='twentytwenty-"+s+"-arrow'></span>"),c.append("<span class='twentytwenty-"+d+"-arrow'></span>"),i.addClass("twentytwenty-container"),r.addClass("twentytwenty-before"),w.addClass("twentytwenty-after");var o=i.find(".twentytwenty-overlay");o.append("<div class='twentytwenty-before-label'></div>"),o.append("<div class='twentytwenty-after-label'></div>");var f=function(t){var e
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):72428
                                      Entropy (8bit):4.770741895067013
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:FEE7BFF8B5FC27937EAC72E51ED08C5C
                                      SHA1:E367ECED25B5C2FB10EB5FFF07A8B8030CBF33B5
                                      SHA-256:2E65AFC32ACF9719E21C69663AC2366AC642001E5875E46791CB37C7518DCC98
                                      SHA-512:D0B65D41981210B0768799A10C71F0D3A51C7C4E095801DF3486DE6ABABB68E350A04E2D758C209C9D9EB74113635EF559CBCA28D3E1A4F10D5E04ADB40D3B49
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/js/scripts.js?ver=17.8.4
                                      Preview:(function($){.. "use strict";... /* ---------------------------------------------------------------------------.. * Global vars.. * --------------------------------------------------------------------------- */.. var scrollticker;.// Scroll Timer | don't need to set this in every scroll. . var rtl ...= $( 'body' ).hasClass( 'rtl' );. var simple...= $( 'body' ).hasClass( 'style-simple' );. . var top_bar_top .= '61px';. var header_H ..= 0;. var mobile_init_W .= ( window.mfn.mobile_init ) ? window.mfn.mobile_init : 1240;.. var lightbox_attr .= false;. . . /* ---------------------------------------------------------------------------.. * Lightbox | Magnific Popup.. * --------------------------------------------------------------------------- */.. if( ! window.mfn_lightbox.disable ){. .if( ! ( window.mfn_lightbox.disableMobile && ( window.innerWidth < 768 ) ) ){. ..lightbox_attr = {.....title : window.mfn_lightbox.title ? window.mfn_lightb
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
                                      Category:dropped
                                      Size (bytes):79634
                                      Entropy (8bit):7.9834933916710416
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:8B9620EF8D3B236A66DFA6158E3B3803
                                      SHA1:19CD328F199CAE286F980EA7C75C641488924B26
                                      SHA-256:641A6909E328D1AF5FD10255D29A4448DA2F373C82AADE80DC09D87B77B32CA4
                                      SHA-512:577D3567A57A03B376349377A5B5047C535E68075B38F4ECC34AB12CA15CB2A84A6937FE07ABD5727D2D7C982FA48C45D6EF2B193E11C3E1E30A336AC313C979
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:.PNG........IHDR...x...*.............pHYs...#...#.x.?v...UiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c145 79.163499, 2018/08/13-16:40:22 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stEvt="http://ns.adobe.com/xap/1.0/sType/ResourceEvent#" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmp:CreatorTool="Adobe Photoshop CC 2019 (Windows)" xmp:CreateDate="2020-11-06T13:35:02+02:00" xmp:MetadataDate="2020-11-06T13:35:02+02:00" xmp:ModifyDate="2020-11-06T13:35:02+02:00" xmpMM:InstanceID="xmp.iid:40cc83a4-6d82-2444-a520-5bd3264d1535" xmpMM:DocumentID="adobe:docid:photoshop:3f956ccb-485f-f943-ae1c-9a3b366b4e55" xmpMM:OriginalDocumentID="xmp.did:1f06ac99-4409-4f4f-af17-1079b6c76a1e" photoshop:Co
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (29418), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):29789
                                      Entropy (8bit):5.093682557255358
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:9F4F00EF6543D1605D902F51FE083C2D
                                      SHA1:EE85E1283C695BE178CF766524AA61EA36372A57
                                      SHA-256:2E81985D6B2A407B4760C2C85A2CDFEBEB13DFA8C07781162C429F7E8381AA45
                                      SHA-512:EE100E7B4F5D3D2D4258299A22FA4E3CB6433384D643CB007E30F763DD836359EACFAE632286FABC0C2FC15FCA93A72DBFEEA19CD83CE220139D92FF333E0564
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/css/settings.css?ver=5.4.3.1
                                      Preview:/*-----------------------------------------------------------------------------....-.Revolution Slider 5.0 Default Style Settings -....Screen Stylesheet....version: .5.4.0..date: .11/02/17..author:..themepunch..email: .info@themepunch.com..website: .http://www.themepunch.com..-----------------------------------------------------------------------------*/..#debungcontrolls,.debugtimeline{width:100%;box-sizing:border-box}.rev_column,.rev_column .tp-parallax-wrap,.tp-svg-layer svg{vertical-align:top}#debungcontrolls{z-index:100000;position:fixed;bottom:0;height:auto;background:rgba(0,0,0,.6);padding:10px}.debugtimeline{height:10px;position:relative;margin-bottom:3px;display:none;white-space:nowrap}.debugtimeline:hover{height:15px}.the_timeline_tester{background:#e74c3c;position:absolute;top:0;left:0;height:100%;width:0}.debugtimeline.tl_slide .the_timeline_tester{background:#f39c12}.debugtimeline.tl_frame .the_timeline_tester{background:#3498db}.debugtimline_txt{color:#fff;fo
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 15920, version 1.0
                                      Category:downloaded
                                      Size (bytes):15920
                                      Entropy (8bit):7.987786667472439
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:3A44E06EB954B96AA043227F3534189D
                                      SHA1:23CEF6993DDB2B2979E8E7647FC3763694E2BA7D
                                      SHA-256:B019538234514166EC7665359D097403358F8A4C991901983922FB4D56989F1E
                                      SHA-512:FAB970B250DD88064730BD2603C530F3503ABB0AF4E4095786877F9660A159BF4AD98C5ABEA2E95EB39AE8C13417736B5772FCB9F87941FF5E0F383CB172997F
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/roboto/v30/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                      Preview:wOF2......>0.......T..=..........................d.....^.`.. .\..<.................6.$.... .... ..S.!.%c.......|y...6..;.s#.....x_<..o..........l...J.`p.m..6...h....U.pD...R.J.$...W..`7w...[..qD....<P......J.x.+J-^....va...:.KW..Ph...."....{.W4C....p..1..........CH.....P.............Q%.=.F.....1.%J....d..X..J.<AU..b.N...<l...d...f..^Y..]..&...VQ.<.....F..{.....&{.+J;.... .2P.:.*5..?.o.|....V[t..M..#..d.fv...........4..`.).h..h......@u........4......~.....r.B...p1.P.T..<....r....Y..8...GQ1.t.....%..-Wh..:W.....1l-...@..hL}...lN.._.j...D`..sn.=(...W..?.Z..p.52..H...X...)..CJ...V..*7.....<|..i...{...R.M+[..|..x-..M3...~!\.l6}.T.o.R'$.)..-.W.T....A...5?.{.2.bR.../....*l..;...{..I>.n..MJ.2........U&. ..(L]].%P.$..p59.LD.f.........V.....z.5~.2\......#.4....9_....%wp.OU.0.....CK..../.x. ..A2e...@...(.i..f./.....`1.......!......@....0 vbt.e v./!...N=>:..A...(...f....?.....iH.F..!k.6.O6S..54.^c..2.G.?6....)b......lv.,h....Y.}.?..uk....L.4d.g..6.\.1u..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian, direntries=1, software=Google], baseline, precision 8, 68x68, components 3
                                      Category:downloaded
                                      Size (bytes):2905
                                      Entropy (8bit):7.795220919432606
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:4FF2FAC3DBC74AE7ED99082CB0F5AD93
                                      SHA1:803AB18148B4CE59F613C2961DF7639867594FB1
                                      SHA-256:4F6E694D790FDC9C2B534992D6DCDD0622FCD1B7A135779F3BFD2C98391419C2
                                      SHA-512:25F232A5D599A2CF2C729375A6D5486AE858F88C5B96977ECF0914DF1C5594BBC01BF933197C73803DBF0CA33A57A0F260AF494A8A1C66DD44BB342F17A4CCFB
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://yt3.ggpht.com/m6gkNZlOVw9vltNRwK9DJifGX76-X60wcDRkiWdp6UilP0kgXDC98NatCbo2g3nPP6QZxl0JJQ=s68-c-k-c0x00ffffff-no-rj
                                      Preview:......JFIF.............*Exif..II*.......1...............Google..............................................................................................................................................D.D............................................8.........................!...1A."2BQq.#a....r.....3S..................................3.......................!.1AQa..Bq.."2...R....#$..............?....a.M1.+R.0.Q+B...,...Z...Z..R..9J..W.1..-....(....LB.O... .][....9^]O....S/....G%.0.R.!..J#...J.a..).h..d5..r.h..(X%.@sj.......h.).L.%!..*...w5.R...^&...R.P.p..h.........u............q..?NT.G....|]c...!Al..m.\.K:#y;x.]P...iEe.]nu...G...u.c.....*..F..Hf.+^....`u'.O..f.......$.>.F`.s..k......k.Tv.p.6...>.~?...a...F.O.?"......Y..._..../.dRqEu<`.y*=....546!....:P..]"....S....5G.....5\...g..(,.2\.H....w .t1[...M.`....YoY.6..1..P.Q.....=.%.P.{1....c....X,....<.....C.+.H..p.oK...u.-+B,PY.+........):J.....|.......n1..=DH ..,Ot*5..M c..G.b.9.C3.......%.f.ie..0.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 21820, version 1.0
                                      Category:downloaded
                                      Size (bytes):21820
                                      Entropy (8bit):7.990408927969737
                                      Encrypted:true
                                      SSDEEP:
                                      MD5:D9EB1619EC469775FC634C44ED34E7D9
                                      SHA1:4EA252177E86B3F8390512CAF26AB112B8B11F03
                                      SHA-256:358B77E66F715BE7F5676FEEC15E05EC8292A165F99EA95B345CF87ADC075EDE
                                      SHA-512:2DC821A0A94CBC413429F260927E858B28FD01A1E412E068DF2C1A7A0F6F0B24BACFB18D91C384580A14735F2747C11A1B29BBD8144967198F3AD5348E496291
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/alegreyasans/v24/5aUz9_-1phKLFgshYDvh6Vwt7VptvQ.woff2
                                      Preview:wOF2......U<.......@..T..............................\..N.`.....$..m.....4..g.....6.$..$. ..^..*..k.6.5.],.t.(..Uq'..g.....DYf#..-.......r.M..c...UE.....)B.e.e.H.F...Z4\U....7...,OrY..#.c..^a.p.M.vN..Y.}....o.^....D...!...O.F.A"...........6....?l.G......e............U..!)..7n...D.*....o..>.....EDDP2EQ.E.rV.3.n..6ou=...E]..F....^..'<A.p(..!..Q.....OJ3.P......d..+.c.W....?2..~CC@.~N,~JNL8=ekC5..6......Z..G.....Q.*L...#.\...............).t...i1....eP.#...s).1.jF.......<.q..a!.6....O...of..u.qe..Z..........j(.t.P...d.rr.....N.h-..~...@I.&...A!i.......... A+...s.A<....Ib[.%..L.!.B. ..4.JQ^S.....F..P....f...........w/.T.L.....(l..._.=..._NK..\..4Dm.0qA....LX.l6.g..C..GX....NQ..F........6f..M..x.C.F.C.?...\...i.E..U..d..d.T*..%.Y...{S...].a.xw.D.."..9R.......w.n../.. .].D,.@@....PP......@.'S.....:.....b.q.b...2.....:..E.ug..e{....p<.V8.S.s.}o.eB...*-..1.!9...w.p..cj..E..7...I.`W;`....i5....H.}o)@.../..d.}...}.w3,b=.I.......m?~.L..g..F#..~.d....
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (2946)
                                      Category:downloaded
                                      Size (bytes):2981
                                      Entropy (8bit):5.174465669703351
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:492F2C1A7EA7EB83FE42E0FF7CB51AA2
                                      SHA1:DB36A77F6AAA2063BFBEC02C2C0E967438C5A245
                                      SHA-256:E174A58A503AB84B3D1B9DE12FD3895788204485170F1289E445F7B5B98EC789
                                      SHA-512:EEE6A1C268A519F4F281B2D76B5193BB068E94D1410372EF062587888589E139B20BB635E2331E97C857D7D835E9372F50822C5DAED29B139AB91FF5633C7A7F
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/comment-reply.min.js?ver=6.0.6
                                      Preview:/*! This file is auto-generated */.window.addComment=function(v){var I,C,h,E=v.document,b={commentReplyClass:"comment-reply-link",commentReplyTitleId:"reply-title",cancelReplyId:"cancel-comment-reply-link",commentFormId:"commentform",temporaryFormId:"wp-temp-form-div",parentIdFieldId:"comment_parent",postIdFieldId:"comment_post_ID"},e=v.MutationObserver||v.WebKitMutationObserver||v.MozMutationObserver,r="querySelector"in E&&"addEventListener"in v,n=!!E.documentElement.dataset;function t(){d(),e&&new e(o).observe(E.body,{childList:!0,subtree:!0})}function d(e){if(r&&(I=g(b.cancelReplyId),C=g(b.commentFormId),I)){I.addEventListener("touchstart",l),I.addEventListener("click",l);function t(e){if((e.metaKey||e.ctrlKey)&&13===e.keyCode)return C.removeEventListener("keydown",t),e.preventDefault(),C.submit.click(),!1}C&&C.addEventListener("keydown",t);for(var n,d=function(e){var t=b.commentReplyClass;e&&e.childNodes||(e=E);e=E.getElementsByClassName?e.getElementsByClassName(t):e.querySelectorA
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 21904, version 1.0
                                      Category:downloaded
                                      Size (bytes):21904
                                      Entropy (8bit):7.989891638054775
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:F9E9240E2C6A14E481F2AAD7194EDB93
                                      SHA1:38A45EB7E0102BF57F2F993140B6B2279C5E7A58
                                      SHA-256:839B1145547CE6DCBA32C1AEB4F578ED46847751FE8F5C7D2E427BE44B9E03C2
                                      SHA-512:3E69BDDB7AB4F9AAFBBD9FB5EB3D2DE0438F964BB2580D5F665ACE05A8D52BC579FE1A04851EFC6FC3FA15B7AD24AA9F61F5B954A3650A7DDDBB2BDB0C7B7190
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/alegreyasans/v24/5aUu9_-1phKLFgshYDvh6Vwt5eFIqEp2iw.woff2
                                      Preview:wOF2......U...........U*.............................t..N.`.....$..m.....t..).....6.$..$. ..F..*..k..........T.6.~.(......f.j.8....".....2......UA..e.\i.....%.p....gG.R.R.......,<.;~C.py.w\<.....}.E.~.......Y..`d..f..'2F|F.m.....j..I...<...J.C..F.....".q.#.$yy.{...1.....B..#....Qgr.0..uu....9.w..E..&.AB.!F..3.$!.D......h...v]...:...k...............f..W...1......bC.n.T.~.v....C".4.4..5.r.......n......S....R. ...Ct.R.....CW.V.V-...k.B.l.I..3(.......t..kM..<@. .6}.[...I....l{.^....y3.T&b../.n.6.R.Z..g.$(.D......--l....+..?k....v..A.......7..G.]..N.|...I.....9.n'e....l....m.@..0.0....J..iN...yG.......X...%x.Y.......E./W..u.j....._..e.....RU@.J.....X.......Gk..{..Tf.L..R..J..*IS..(...4U.......o1.....S.x.u.dO{........o.s8....1..../%.r......'.X.q....w58.NDFH.........-...w..... AD."C?~v....rP.)...m..0..(..7~.n..."KPP...2...6.$... .......%.......-.D@.".../....DE.bd..T.R...b.d.(.9... K.l..d.. .{..`(.@......A.....+R..9....g.v...E..v......~..e.....
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format (Version 2), TrueType, length 21496, version 1.0
                                      Category:downloaded
                                      Size (bytes):21496
                                      Entropy (8bit):7.988399836387388
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:43FC644DCA9FEEC31FDA0887A4FD7451
                                      SHA1:EF9A6F172F3EEB6E94CF9D01C85826A5B30234A6
                                      SHA-256:3975D32AD727A7A56954C0491BEE4AF7FF1F3578CD3FC27C53802F3F604B2F05
                                      SHA-512:A318B5BB86EB2F3F0AAF0833BDF0667C645844AD0BF57149EEDBD63537B0BEAADFC01C722C767BEA2C6BBA53C64DBE66D743472D86D58635B32274AAAC910CF4
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.gstatic.com/s/alegreyasans/v24/5aUu9_-1phKLFgshYDvh6Vwt5fFPqEp2iw.woff2
                                      Preview:wOF2......S........X..S..............................\..N.`.....$..m.....t..E.....6.$..$. ..8..*..k.n.%l.F=....&.b.F.;H....G"l..tm..'$7d(.A]k..!f.eeb9......a.X..a+.J..L.z.uX..U....:...1.&UyB./>..Q.n..MQ.f;=X...2..B.F.q.Z...C.c..R..`..B.PH.yx....Qs..y9..Y;....%wTGU`..Y.8.....|.@0....L.*..0"g..+77]t_o.e..r..+.IW._U... ...Z.C..}...ph.......8..K..a...2fDq#gV.&d.'..v.....D.X...Y.K.a.....lskx.P..C......._Nn...k.z,...2.@....,5..C.X..;Mu#W.T...hn[E...U.!.E..]..B.."....G..s~.4........l.J..H..".h.B.ff.s...........l....y......B]IE...Q6l..C.}....tT.)ju...r.....]M&.|7..W...B.t.....-.E."..m...T.W.Zi..H.d..Y...2."..&[...Y...%%`..@P..e.BRQ......9.iu4....T..g..................;o......+.M..G..Y8]]_j..6X...5.5..A$..j.IHHL.prB"...D...?...)..abjF.....4P...x.d...Mz.."Ed.6.wF6G`kv..y.p....y.....l.,..hG]..\{.1....;w.p.p..(8.{.@I.u..........G.....0.@A"@Q. .)HN.J..Jg...A.. .RP.FP...y.Q.@.,.M.......z.f[.......e.A.a.J`ns;w....t............mQ..l...e..Q......W.)9..v..
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Unicode text, UTF-8 text, with very long lines (8189)
                                      Category:downloaded
                                      Size (bytes):20715
                                      Entropy (8bit):5.303600522104169
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:6AAF0A4E8EAC131DEFEA126F5B1B5FBF
                                      SHA1:24DA0326AF36303E5A1E9799A3C26F7A1077928C
                                      SHA-256:240B702419D6C39ECC4896F0132CCFC9BC517E9AEF0C782D99580E0C678B47D5
                                      SHA-512:A81796898EFEB3673291B036432910026486146CCF28E2BE0D802AFAC689104E9B99D969CE89048EA300AFED2604977ECFA4B40BE914C20A2F1C69F7B723DE52
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/ui/core.min.js?ver=1.13.1
                                      Preview:/*! jQuery UI - v1.13.1 - 2022-01-20.* http://jqueryui.com.* Includes: data.js, disable-selection.js, escape-selector.js, focusable.js, form-reset-mixin.js, form.js, ie.js, jquery-1-7.js, keycode.js, labels.js, plugin.js, position.js, safe-active-element.js, safe-blur.js, scroll-parent.js, tabbable.js, unique-id.js, version.js, widget.js.* Copyright jQuery Foundation and other contributors; Licensed */.!function(t){"use strict";"function"==typeof define&&define.amd?define(["jquery"],t):t(jQuery)}(function(x){"use strict";var t,e,i,n,W,C,o,s,r,l,a,h,u;function E(t,e,i){return[parseFloat(t[0])*(a.test(t[0])?e/100:1),parseFloat(t[1])*(a.test(t[1])?i/100:1)]}function L(t,e){return parseInt(x.css(t,e),10)||0}function N(t){return null!=t&&t===t.window}x.ui=x.ui||{},x.ui.version="1.13.1",./*!. * jQuery UI :data 1.13.1. * http://jqueryui.com. *. * Copyright jQuery Foundation and other contributors. * Released under the MIT license.. * http://jquery.org/license. */.x.extend(x.expr.pseudos,{dat
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                      Category:dropped
                                      Size (bytes):1609
                                      Entropy (8bit):5.268171846580519
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:20D444971B8254AC39C8145D99D6CA4C
                                      SHA1:72E41F2A340F4A6E3A748CB57D293631390B733A
                                      SHA-256:A04F41837D317573EA61EA29ABBA7C4FF4E38C9177DA68F4706B9C13921A8D82
                                      SHA-512:BEA16497D014481EE10EB80A129846B7B184AB1ECA242FA38B84255C6461C748A62F1BD6C15D1807F8B5E926E550C30AB47F8A40AE43BE229E6AB857C4EA6F6F
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 405 (Method Not Allowed)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:u
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):284
                                      Entropy (8bit):4.790175641013505
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:1977B66AE42E43541E03FA407835EDE6
                                      SHA1:669794FE401533EBC5990F6174EDA01B4191C1E2
                                      SHA-256:3521C4873AC88CB86B5A117A13B1274666BE77BCADE661565DE0D89EA74C8A4E
                                      SHA-512:1748E399F67EEB0B56A1B5DBE6CA63517E4D36676A4129784E1DDC6118F5C9E9CB1747B7FF5B176363F8955CCA8A84C651277C59FDDF592A98B4736CF12B5DE1
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/style.css?ver=17.8.4
                                      Preview:/*.Theme Name: Betheme.Author: Muffin group.Description: The biggest WordPress Theme ever.Theme URI: http://themes.muffingroup.com/betheme.Author URI: http://muffingroup.com.License: Themeforest Split Licence.License URI: -.Version: 17.8.4..All css files are placed in /css/ folder.*/
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (8470), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):8706
                                      Entropy (8bit):5.227713457104942
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:69382024A64C601DD0A5799A60605A95
                                      SHA1:CB44103CEA058F00FC0A6C872E2BDB5EDB910771
                                      SHA-256:DFCE7D2F9C8534CA192C3BE06F56317918D669CC1CE978FFCB95792CBEB6E468
                                      SHA-512:AEB7519D827879668A5F201B4E551C021E8AA69DCAFB9A413411799E0F8BB673EFE1CAFE33FE710372FD74E73289529048F0C0DC0E02F9D07964C54B85DCAC0A
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/js/extensions/revolution.extension.actions.min.js?version=5.4.3
                                      Preview:/********************************************.. * REVOLUTION 5.4 EXTENSION - ACTIONS.. * @version: 2.0.7 (28.02.2017).. * @requires jquery.themepunch.revolution.js.. * @author ThemePunch..*********************************************/..!function($){"use strict";function getScrollRoot(){var d,a=document.documentElement,b=document.body,c=(void 0!==window.pageYOffset?window.pageYOffset:null)||b.scrollTop||a.scrollTop;return a.scrollTop=b.scrollTop=c+(c>0)?-1:1,d=a.scrollTop!==c?a:b,d.scrollTop=c,d}var _R=jQuery.fn.revolution,_ISM=_R.is_mobile(),extension={alias:"Actions Min JS",name:"revolution.extensions.actions.min.js",min_core:"5.4",version:"2.0.7"};jQuery.extend(!0,_R,{checkActions:function(a,b,c){if("stop"===_R.compare_version(extension).check)return!1;checkActions_intern(a,b,c)}});var checkActions_intern=function(a,b,c){c&&jQuery.each(c,function(c,d){d.delay=parseInt(d.delay,0)/1e3,a.addClass("tp-withaction"),b.fullscreen_esclistener||"exitfullscreen"!=d.action&&"togglefullscreen"!=
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (51956)
                                      Category:downloaded
                                      Size (bytes):53204
                                      Entropy (8bit):5.740940263912164
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:CDD7AE97DA717C5CD5C0794E9E1DBC80
                                      SHA1:93774FDB1927298E20142F2554083AC39C0A5B0F
                                      SHA-256:DE9712156248EDAE5236FF3D033EDB4E2E95F343388E79F76CF5D1DC7F8ABB5F
                                      SHA-512:7E894B0D015271E6B4CD0E8420E02A16499C91F63A4A303BB9015C8789B12757A9EF9F88135EE0C3B8287A91DD40A7918670061ACE48EE7D5188BCC8C1ABA9D9
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.google.com/js/th/3pcSFWJI7a5SNv89Az7bTi6V80M4jnn3bPXR3H-Ku18.js
                                      Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==.(function(){function E(D){return D}var r=function(D){return E.call(this,D)},F=this||self,l=function(D,G,Z,H,N,O,W,J,u,z,X,e){for(X=(z=75,44);;)try{if(z==D)break;else{if(5==z)return J;if(17==z)X=99,J=u.createPolicy(O,{createHTML:r,createScript:r,createScriptURL:r}),z=G;else{if(z==G)return X=44,J;z==H?(F.console[N](e.message),z=G):52==z?z=F.console?H:G:75==z?(J=W,u=F.trustedTypes,z=Z):z==Z?z=u&&u.createPolicy?17:5:95==z&&(X=44,z=52)}}}catch(P){if(44==X)throw P;99==X&&(e=P,z=95)}};(0,eval)(function(D,G){return(G=l(28,90,89,7,"error","ad",null))&&1===D.eval(G.createScript("1"))?function(Z){return G.createScript(Z)}:function(Z){return""+Z}}(F)(Array(7824*Math.random()|0).join("\n")+['//# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):29
                                      Entropy (8bit):4.142295219190901
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:1FA71744DB23D0F8DF9CCE6719DEFCB7
                                      SHA1:E4BE9B7136697942A036F97CF26EBAF703AD2067
                                      SHA-256:EED0DC1FDB5D97ED188AE16FD5E1024A5BB744AF47340346BE2146300A6C54B9
                                      SHA-512:17FA262901B608368EB4B70910DA67E1F11B9CFB2C9DC81844F55BEE1DB3EC11F704D81AB20F2DDA973378F9C0DF56EAAD8111F34B92E4161A4D194BA902F82F
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://static.doubleclick.net/instream/ad_status.js
                                      Preview:window.google_ad_status = 1;.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
                                      Category:dropped
                                      Size (bytes):87585
                                      Entropy (8bit):7.962504454375113
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:8141973548AC147844A27466CE8BFD85
                                      SHA1:524D7DAE849571E2397C76DCADB780760620468F
                                      SHA-256:039147690D115DF0EBE3052878E42C58FD3AAFA5DFEEE0EE54E32D421D5FF6E2
                                      SHA-512:C619931A0AF0C63809BC6B0F2325E32F836DF561249F573896447CE24F31A397411F1F912DCB9941488698D0DAF728434355069EE495B85B95E815797FA4E29B
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:.PNG........IHDR...x...*.............pHYs...#...#.x.?v....iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c145 79.163499, 2018/08/13-16:40:22 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stEvt="http://ns.adobe.com/xap/1.0/sType/ResourceEvent#" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmp:CreatorTool="Adobe Photoshop CC 2019 (Windows)" xmp:CreateDate="2020-11-06T13:39:01+02:00" xmp:MetadataDate="2020-11-06T13:39:01+02:00" xmp:ModifyDate="2020-11-06T13:39:01+02:00" xmpMM:InstanceID="xmp.iid:98bbd648-ac0f-9f44-ba9e-9880b9e62361" xmpMM:DocumentID="adobe:docid:photoshop:6119c8d6-e0f3-0e49-9eba-5f73894dfbf6" xmpMM:OriginalDocumentID="xmp.did:9c6dc9f5-5529-7e40-8188-7b5215d0cb7d" photoshop:Co
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (318)
                                      Category:downloaded
                                      Size (bytes):18439
                                      Entropy (8bit):5.101464182043544
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:B2E5051456ABDBE80A29912CF90F4838
                                      SHA1:FFE71252617BC7458B90CB4C806D8BD08791E5BE
                                      SHA-256:F62629A6B435F10A202D0965D39C4BD7A0A7C5965EA1F89604AEED0FACFA4AA1
                                      SHA-512:D2288F4198A5CF4D9416CCF401DA1A50A1D3ADC51DC62C08E838802D2777C64D107334ACFC15B170D30CAA7DDF9AECF076464167DC42E586BC6E2B20BEBBB834
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/css/skins/gold/style.css?ver=17.8.4
                                      Preview:./********************** Backgrounds **********************/...#Header_wrapper {...background-color: #34353D;..}..#Subheader {...background-color: #F7F7F7;..}....#Footer {...background-color: #34353d;..}....#Sliding-top {...background-color: #34353d;..}..#Sliding-top a.sliding-top-control {...border-right-color: #34353d;..}..../************************ Colors ************************/../* Content font */..body, ul.timeline_items, .icon_box a .desc, .icon_box a:hover .desc, .feature_list ul li a, .list_item a, .list_item a:hover,...widget_recent_entries ul li a, .flat_box a, .flat_box a:hover, .story_box .desc {...color: #626262;..}.../* Theme color */...themecolor, .opening_hours .opening_hours_wrapper li span, .fancy_heading_icon .icon_top,...fancy_heading_arrows .icon-right-dir, .fancy_heading_arrows .icon-left-dir, .fancy_heading_line .title,...button-love a.mfn-love, .format-link .post-title .icon-link, .pager-single > span, .pager-single a:hover,...widget_meta ul, .widget_pages ul
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (27287), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):110563
                                      Entropy (8bit):5.524277155620537
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:A748A9E56B2C639013C770506F1FD529
                                      SHA1:537EDD9B364AC005DF2D1C57BE873945B2FECDF6
                                      SHA-256:6EABB193731278713F4208EA84B8C7334C3DFC98F01CB074778280E1DF536E62
                                      SHA-512:ADE8062894443994D5DC96497426DDE1E238ADFB9600AAB7B3713CE804934ACA5E12AE3267D961268AC8A146BD06754AA110006964AF95E9394DFB1EA5B825B8
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/js/jquery.themepunch.tools.min.js?ver=5.4.3.1
                                      Preview:/********************************************...-.THEMEPUNCH TOOLS Ver. 1.0 -... Last Update of Tools 27.02.2015..*********************************************/....../*..* @fileOverview TouchSwipe - jQuery Plugin..* @version 1.6.9..*..* @author Matt Bryson http://www.github.com/mattbryson..* @see https://github.com/mattbryson/TouchSwipe-Jquery-Plugin..* @see http://labs.skinkers.com/touchSwipe/..* @see http://plugins.jquery.com/project/touchSwipe..*..* Copyright (c) 2010 Matt Bryson..* Dual licensed under the MIT or GPL Version 2 licenses...*..*/........(function(a){if(typeof define==="function"&&define.amd&&define.amd.jQuery){define(["jquery"],a)}else{a(jQuery)}}(function(f){var y="1.6.9",p="left",o="right",e="up",x="down",c="in",A="out",m="none",s="auto",l="swipe",t="pinch",B="tap",j="doubletap",b="longtap",z="hold",E="horizontal",u="vertical",i="all",r=10,g="start",k="move",h="end",q="cancel",a="ontouchstart" in window,v=window.navigator.msPointerEnabled&&!window.navigator.point
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (3233)
                                      Category:downloaded
                                      Size (bytes):3411
                                      Entropy (8bit):5.032593031348849
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:5C38AA6D5B98586CA2BA973AB8B4B6B1
                                      SHA1:8215983363EA0D74F99368336404B0D27217778F
                                      SHA-256:7C4DCAB706E6BF67C64DF89D3F5E137CB19EFA293771613F511AFF1AD563A6DF
                                      SHA-512:840545649BCE2C9B407C58BAF10ECF5116FE8510BE84A0A832BC63F1DD7E232A694E0A1B6B39661313E0472DBC5CDBF9C67BBB2A59D17169A0B4036242E74D40
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/ui/mouse.min.js?ver=1.13.1
                                      Preview:/*!. * jQuery UI Mouse 1.13.1. * http://jqueryui.com. *. * Copyright jQuery Foundation and other contributors. * Released under the MIT license.. * http://jquery.org/license. */.!function(e){"use strict";"function"==typeof define&&define.amd?define(["jquery","./core"],e):e(jQuery)}(function(o){"use strict";var n=!1;return o(document).on("mouseup",function(){n=!1}),o.widget("ui.mouse",{version:"1.13.1",options:{cancel:"input, textarea, button, select, option",distance:1,delay:0},_mouseInit:function(){var t=this;this.element.on("mousedown."+this.widgetName,function(e){return t._mouseDown(e)}).on("click."+this.widgetName,function(e){if(!0===o.data(e.target,t.widgetName+".preventClickEvent"))return o.removeData(e.target,t.widgetName+".preventClickEvent"),e.stopImmediatePropagation(),!1}),this.started=!1},_mouseDestroy:function(){this.element.off("."+this.widgetName),this._mouseMoveDelegate&&this.document.off("mousemove."+this.widgetName,this._mouseMoveDelegate).off("mouseup."+this.widgetNa
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 49 x 45, 8-bit colormap, non-interlaced
                                      Category:downloaded
                                      Size (bytes):914
                                      Entropy (8bit):6.926696608314896
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:57BD96DBB526E26413C959611617D0B0
                                      SHA1:296812AF7A27468B88087CD8657C9D2269572D54
                                      SHA-256:5CDEF13C3D7E8B22DBCE203FB60879B17C48FC4295CC82B7BB9B0298ACF8A9DC
                                      SHA-512:EE677D92AD49D40AE11B76FB199D3482DBF70BE8CF8C35D7DDF1FE444BCCF64A41C48375A4318764A97A22BBD65ED0158111608A5D165AECB794DEEB33941546
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/uploads/2015/03/home_webdesign_ico_c.png
                                      Preview:.PNG........IHDR...1...-.....0Vs.....PLTE...................................................................................................................................................zy#u...0tRNS........{...s(.$MA.....Q9.h5..bl1..U=..ZF..........~IDATH...0.F.....-l.......nHP.....s....w..t. .M.3#X#...UmN.m.i."|D...\sc.0x..}E..0..-W...C..........b.(.p....U.J.q.8......=...$K.K..z...g.......r..\.....(lQ....m.\... .A...S...I....F...'I..v.E.....&.AD..9Q ..0...h.@.A.k..4B@..!.=...a...=..bTP.O....e..i..L......ZD..s..7E..@..s.1'..\..R/e..N#..E.....:.M.,.g...].7.../<.t..@.q.g1D....Gy. .E$.......f...{..F.)DK.H......{,..........#.....F.....W.U .~. ..r4.....Go>.F.3.v.Q>...9.n8.z.a.uC..0...{;.....D....G7..q...3i.g{0^2.r.Ab.T...g.\.vG..o.s......F.,.....,.c..W1.........=..q.s..w..`...<^l.ySp.js..g{......g...m.....6|..2....~k.3.6..e._..).H..{..N...o....<.7.V.....IEND.B`.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
                                      Category:downloaded
                                      Size (bytes):97339
                                      Entropy (8bit):7.981297205881376
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:B7147BD9C50CC58FF73B3F5A523962CE
                                      SHA1:D40BE6B178BE24A19DFD12445EF47C67469BED93
                                      SHA-256:4B1FE7710233FF081CE40944FE9B0A0B9FF47C6428B1442E97DD30E192125F6B
                                      SHA-512:7946182F8DCB0CF482606AE00C97A298B56DACA87B6DF790991A6B919238C2C5036F64F039F61B27EF49948E973C67A649C0600995F6F5D5532320C07504A5D3
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/uploads/2020/11/sobe-pe-roti.png
                                      Preview:.PNG........IHDR...x...*.............pHYs...#...#.x.?v....iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c145 79.163499, 2018/08/13-16:40:22 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stEvt="http://ns.adobe.com/xap/1.0/sType/ResourceEvent#" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmp:CreatorTool="Adobe Photoshop CC 2019 (Windows)" xmp:CreateDate="2020-11-06T13:37:14+02:00" xmp:MetadataDate="2020-11-06T13:37:14+02:00" xmp:ModifyDate="2020-11-06T13:37:14+02:00" xmpMM:InstanceID="xmp.iid:ffecc568-a93b-2f49-a8cd-fbc0db82060b" xmpMM:DocumentID="adobe:docid:photoshop:1f78f9a9-ee7f-f740-9515-b9ff2651a804" xmpMM:OriginalDocumentID="xmp.did:100408fe-3251-944c-801f-9819d7ec2c98" photoshop:Co
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (2051)
                                      Category:downloaded
                                      Size (bytes):57713
                                      Entropy (8bit):5.1291728142388555
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:C59E77A780F94D3EC5BED7AEC95643AE
                                      SHA1:81165DB90F81BBC4B131092E83577632F853CCB7
                                      SHA-256:1CCF2C61D3C5C40E8F300583C817556A2F7C29E700CE379AB2DFFF4F1BE988BA
                                      SHA-512:A0BB5544CF6DD1FB6C4A97BE643B2B08AA3990266FEC4741DE3F26FF9A2FEE5D576939580EE5811AB0757F04136CB4D91226A8C337A390DB032F79D7B451AF40
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/css/base.css?ver=17.8.4
                                      Preview:/* Reset & Basics -------------------------------------------------------------------- */.html,body,div,span,applet,object,iframe,h1,h2,h3,h4,h5,h6,p,blockquote,pre,a,abbr,acronym,address,big,cite,code,del,dfn,em,img,ins,kbd,q,s,samp,small,strike,strong,tt,var,b,u,i,center,ol,ul,li,fieldset,form,label,legend,table,caption,tbody,tfoot,thead,tr,th,td,article,aside,canvas,details,embed,figure,figcaption,footer,header,hgroup,menu,nav,output,ruby,section,summary,time,mark,audio,video{margin:0;padding:0;border:0;font-size:100%;font:inherit;vertical-align:baseline}.article,aside,details,figcaption,figure,footer,header,hgroup,menu,nav,section{display:block}.body{line-height:1}.ol,ul{list-style:none}.blockquote,q{quotes:none}.blockquote:before,blockquote:after,q:before,q:after{content:'';content:none}.table{border-collapse:collapse;border-spacing:0}../* Basic Styles ---------------------------------------------------------------------- */.html{height:100%}.body{-webkit-font-smoothing:antialiase
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (404)
                                      Category:downloaded
                                      Size (bytes):138688
                                      Entropy (8bit):5.058681083848684
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:36DDAA7AA15F775DDE3F2226770F8D07
                                      SHA1:DDB75A26D8F537C3567C94D1E22300B743177DAF
                                      SHA-256:F20AF230E0527C5EA0C4560FFB15AE77D9615E6B4CDD2A8BA869673657063CD7
                                      SHA-512:B05C410D6E5133E94A238016D406DB10621D8E3E03EF1C27BB0A059D975EF47B2FA6F08A1F9256F4F016798D9BEFDBED14F17C5995EEC5EBC8D68488DA394E7C
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/css/shortcodes.css?ver=17.8.4
                                      Preview:/* Dropcaps -------------------------------------------------------------------------- */..dropcap{display:inline-block;float:left;width:35px;height:35px;line-height:35px;font-size:20px;margin:0 10px 5px 0;text-align:center;-webkit-border-radius:5px;border-radius:5px;background-image:url(../images/stripes/stripes_10_w.png)}..dropcap_circle{-webkit-border-radius:100%;border-radius:100%}..dropcap.transparent{background:none!important}..dropcap.size-2{width:50px;height:50px;line-height:50px;font-size:35px}..dropcap.size-3{width:60px;height:60px;line-height:60px;font-size:40px}../* Highlight ------------------------------------------------------------------------- */..highlight{padding:1px 7px;-webkit-border-radius:3px;border-radius:3px;background-image:url(../images/stripes/stripes_10_w.png)}..highlight.highlight_image{padding:0 2px 7px}.../* Tooltip --------------------------------------------------------------------------- */..tooltip{display:inline;position:relative;cursor:help;border-
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (8632)
                                      Category:downloaded
                                      Size (bytes):8814
                                      Entropy (8bit):4.988056328579774
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:98F09B434A4910C56D74BCABC23AC05B
                                      SHA1:C52A1A8E6E5823F859ED4123A00D730237C39893
                                      SHA-256:73E77DA1E0317A722F4C849F2F40227D33EECBDB930B04DF897A78D993180B16
                                      SHA-512:026265CEA039452877C1EB83F1C50C78988E3C5DFABF238DF86E024018ABC27848ADFCED6B92DD6576F7D2DFA0B08804A45027A028B6057FE7239E505215590F
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-includes/js/jquery/ui/accordion.min.js?ver=1.13.1
                                      Preview:/*!. * jQuery UI Accordion 1.13.1. * http://jqueryui.com. *. * Copyright jQuery Foundation and other contributors. * Released under the MIT license.. * http://jquery.org/license. */.!function(e){"use strict";"function"==typeof define&&define.amd?define(["jquery","./core"],e):e(jQuery)}(function(o){"use strict";return o.widget("ui.accordion",{version:"1.13.1",options:{active:0,animate:{},classes:{"ui-accordion-header":"ui-corner-top","ui-accordion-header-collapsed":"ui-corner-all","ui-accordion-content":"ui-corner-bottom"},collapsible:!1,event:"click",header:function(e){return e.find("> li > :first-child").add(e.find("> :not(li)").even())},heightStyle:"auto",icons:{activeHeader:"ui-icon-triangle-1-s",header:"ui-icon-triangle-1-e"},activate:null,beforeActivate:null},hideProps:{borderTopWidth:"hide",borderBottomWidth:"hide",paddingTop:"hide",paddingBottom:"hide",height:"hide"},showProps:{borderTopWidth:"show",borderBottomWidth:"show",paddingTop:"show",paddingBottom:"show",height:"show"},_
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):2731
                                      Entropy (8bit):5.134326161792236
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:E6FAE855021A88A0067FCC58121C594F
                                      SHA1:6299AC3987B5E81725781799DAD361D19AC3B99D
                                      SHA-256:E50F9CCD2D6582A58BA1879FA578E60D25FEA4C5EEDC07DEAFD14482B2403181
                                      SHA-512:B67D641AD4DD65063621F73420A52BFE914F25C58C42C08B0A558A429744154901E05E363A358B56F922C0059FBC3822DF063CAC76AB49E02F100666A46D3F36
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=5.5.6.1
                                      Preview:.wpcf7 .screen-reader-response {..position: absolute;..overflow: hidden;..clip: rect(1px, 1px, 1px, 1px);..clip-path: inset(50%);..height: 1px;..width: 1px;..margin: -1px;..padding: 0;..border: 0;..word-wrap: normal !important;.}...wpcf7 form .wpcf7-response-output {..margin: 2em 0.5em 1em;..padding: 0.2em 1em;..border: 2px solid #00a0d2; /* Blue */.}...wpcf7 form.init .wpcf7-response-output,..wpcf7 form.resetting .wpcf7-response-output,..wpcf7 form.submitting .wpcf7-response-output {..display: none;.}...wpcf7 form.sent .wpcf7-response-output {..border-color: #46b450; /* Green */.}...wpcf7 form.failed .wpcf7-response-output,..wpcf7 form.aborted .wpcf7-response-output {..border-color: #dc3232; /* Red */.}...wpcf7 form.spam .wpcf7-response-output {..border-color: #f56e28; /* Orange */.}...wpcf7 form.invalid .wpcf7-response-output,..wpcf7 form.unaccepted .wpcf7-response-output,..wpcf7 form.payment-required .wpcf7-response-output {..border-color: #ffb900; /* Yellow */.}...wpcf7-form-contro
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1136)
                                      Category:dropped
                                      Size (bytes):1555
                                      Entropy (8bit):5.249530958699059
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:FBE36EB2EECF1B90451A3A72701E49D2
                                      SHA1:AE56EA57C52D1153CEC33CEF91CF935D2D3AF14D
                                      SHA-256:E8F2DED5D74C0EE5F427A20B6715E65BC79ED5C4FC67FB00D89005515C8EFE63
                                      SHA-512:7B1FD6CF34C26AF2436AF61A1DE16C9DBFB4C43579A9499F4852A7848F873BAC15BEEEA6124CF17F46A9F5DD632162364E0EC120ACA5F65E7C5615FF178A248F
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:<!DOCTYPE html>.<html lang=en>. <meta charset=utf-8>. <meta name=viewport content="initial-scale=1, minimum-scale=1, width=device-width">. <title>Error 400 (Bad Request)!!1</title>. <style>. *{margin:0;padding:0}html,code{font:15px/22px arial,sans-serif}html{background:#fff;color:#222;padding:15px}body{margin:7% auto 0;max-width:390px;min-height:180px;padding:30px 0 15px}* > body{background:url(//www.google.com/images/errors/robot.png) 100% 5px no-repeat;padding-right:205px}p{margin:11px 0 22px;overflow:hidden}ins{color:#777;text-decoration:none}a img{border:0}@media screen and (max-width:772px){body{background:none;margin-top:0;max-width:none;padding-right:0}}#logo{background:url(//www.google.com/images/branding/googlelogo/1x/googlelogo_color_150x54dp.png) no-repeat;margin-left:-5px}@media only screen and (min-resolution:192dpi){#logo{background:url(//www.google.com/images/branding/googlelogo/2x/googlelogo_color_150x54dp.png) no-repeat 0% 0%/100% 100%;-moz-border-image:url(//ww
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:Web Open Font Format, TrueType, length 80636, version 1.0
                                      Category:downloaded
                                      Size (bytes):80636
                                      Entropy (8bit):7.994569380955014
                                      Encrypted:true
                                      SSDEEP:
                                      MD5:3DA843D15ED5D4D39E269CFBAD8345FB
                                      SHA1:1D915A3FD051F9E9CF6F545DFE31939FDB368738
                                      SHA-256:F6134456D89988ADA75CFDF21DF40C6ABDCCCCF01B48A669ADD0223F3FA38EC4
                                      SHA-512:BD20900C08F535109C2549A420C7F142572399CE85343C73EF5C092432A6110361C393536A9F92A0650038A9A3C1E26B92535A1A3A2761CB4FB6A766751F0968
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/fonts/mfn-icons.woff?23391439
                                      Preview:wOFF......:................................GSUB...X...;...T .%yOS/2.......C...V>kWQcmap............z..scvt ...l....... .k.nfpgm...........p...Ygasp................glyf.......s......3head..'....3...6..L.hhea..'....!...$...\hmtx..'.............loca..*....F...F..n.maxp...,... ... ....name...L........9".\post../............aprep..:....z.....A+.x.c`d``.b0`.c`.I,.c.sq..a.b`a...<2.1'3=.......i. f....)Y.H.x.c`d.a......T......B3>`0dd..2.23`..i.)../..13...b.b....(........H.x...W...........A.&(v.EA.,(..E.+b..+6..,..1.$..f..=&.$1...k.p../..!..c..;....`m.]..u.}.A......k...k......^...3..=.{V.<..bgqgIgigYge...g:.v^..yy..U.V-...o._...uH.VG.Qul._'.uR.\..iuz.Yg..uN.[...W_..7..].O.W..A~..ux.Y..q.=..=..#.O.....~./.vm.5.k..~.kj..=.f.....^.]..k.{...F...:.......0..c.l.A....1.`...0l.....0..0.c0..c..c.l....[c..........#v.$.]0..b7L.T.i..{b...{ao.}1..a....8..q...!8..a......#q...h..18...x....<:..q2N..8..c....8.gc1...8....,.......\......\..p5...\..p=n....7..,........p7........<...
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (64278), with CRLF line terminators
                                      Category:downloaded
                                      Size (bytes):64613
                                      Entropy (8bit):5.30773593942888
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:9E0CB44CA244750E4020377345C29755
                                      SHA1:1601C943BC708568798CE0AB4B3B4A5B5C5E727B
                                      SHA-256:16158DDCD7503A0EE4FE385CB273DF2F116B7790845C9D420028D6816F1B3A54
                                      SHA-512:4D84E6A988FF6B12AA57379CD58AAD2E692D70649BBF6BB74BF3F76898CF4D6E6841AEEC2E0910CAEA2FF68048598B3E2464188D96446F554806DE201EFC2534
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/plugins/revslider/public/assets/js/jquery.themepunch.revolution.min.js?ver=5.4.3.1
                                      Preview:/**************************************************************************.. * jquery.themepunch.revolution.js - jQuery Plugin for Revolution Slider.. * @version: 5.4.3 (20.04.2017).. * @requires jQuery v1.7 or later (tested on 1.9).. * @author ThemePunch..**************************************************************************/..!function(jQuery,undefined){"use strict";var version={core:"5.4.3","revolution.extensions.actions.min.js":"2.0.4","revolution.extensions.carousel.min.js":"1.2.1","revolution.extensions.kenburn.min.js":"1.2.0","revolution.extensions.layeranimation.min.js":"3.6.1","revolution.extensions.navigation.min.js":"1.3.3","revolution.extensions.parallax.min.js":"2.2.0","revolution.extensions.slideanims.min.js":"1.7","revolution.extensions.video.min.js":"2.1.1"};jQuery.fn.extend({revolution:function(a){var b={delay:9e3,responsiveLevels:4064,visibilityLevels:[2048,1024,778,480],gridwidth:960,gridheight:500,minHeight:0,autoHeight:"off",sliderType:"standard",sliderLayout:
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                      Category:dropped
                                      Size (bytes):13260
                                      Entropy (8bit):7.9814499703972865
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:EF9B922713188427863D146A4A571A26
                                      SHA1:D461B8D7C1A520186F5E6C4B8BB6754CD8AA667B
                                      SHA-256:6AC136DBCFC672B961A6ED6E73E3AC7D3AFE518AD21919530834790C75AAEDA0
                                      SHA-512:56D347EE0ECD18BE602A514DF10AAD58B2AD9E253811F289868E47A2A4906BDC170307DAD4512EBAB435C6B24FDBDF420B53157DCA0BDC710D4EC893575E376D
                                      Malicious:false
                                      Reputation:unknown
                                      Preview:RIFF.3..WEBPVP8 .3... ...*..h.>.X.O'..&..<....gm.... .....O.3.$h{.....w6.V..;v....o.z.b..>.W._.~K...w._.|qR..z.|...4.....^..3......B..u..NDZ...Uh.|b...6i.v*..S...x.......%.).q...#.#.(4.......@.....V........mf.........!..J .m.tK...`......_apn...1....c....1......I....p.....-...v..W..Y./s\3x.Z.6............e..R..y..aw@K...oJ.4.G.........+p.R7..1......D....r+.@..t....5/<a.K..(.n .x&.../T......U.p.".2..&.....8X..=.K.,.....$...Q..y........_ j..s... K.{.Ee-.\.E&]'.~...r......\...^....8g....+...K...#.y. ..i.|..G?.y..q.]..u..*...*......Up.W.}h<}.Lu....}&.....J6.&.$....D!9q.LN...k8......%..0.g..m.). ...r....9.o.73\.1e..K.ZJ.. .....f}.6.@...(0.?(.r.9j.L!D:.........,x)f(........H....9...v..."...I.;..>...6..&....|N.R..G...D...3.xM.K....Vd2c...X.8....<. .\nj...7.w[.v..8..A5)...^<..>.m............N..f....v....9.O=..n.o.\.T..9iZK......R...6.D>v...|7+.n. .B.M.g.yk........zS....u3=..wA;...&...F.{m..0..O`...;Rx..~c.z.0.`..O.S..v...%.$d.f.
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (543)
                                      Category:downloaded
                                      Size (bytes):120955
                                      Entropy (8bit):5.47714636785239
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:9B6E72DBD9B25BABA0DFA7854440CF2B
                                      SHA1:375A828AFF5FA9CCD6B0251BEC2B78859034D551
                                      SHA-256:E8CB8DF6E5392B3882BFCB18192CFF63CE605567A5259E1FD876B04075002D8D
                                      SHA-512:94505A4E5067BF3B44964AAD26BCC2832D5F1032A262E14AF7C36B33870A3C7484EC4CA87B9473F28279469852E4B7A469368D7190A8AC512C8C5D5F3B187EE8
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.youtube.com/s/player/7ebf4817/player_ias.vflset/en_US/remote.js
                                      Preview:(function(g){var window=this;'use strict';var a8=function(a){g.Fp(a,"zx",Math.floor(2147483648*Math.random()).toString(36)+Math.abs(Math.floor(2147483648*Math.random())^g.kb()).toString(36));return a},b8=function(a,b,c){Array.isArray(c)||(c=[String(c)]);.g.Ega(a.B,b,c)},NAb=function(a){if(a instanceof g.zt)return a;.if("function"==typeof a.Hk)return a.Hk(!1);if(g.ab(a)){var b=0,c=new g.zt;c.next=function(){for(;;){if(b>=a.length)return g.v2;if(b in a)return g.At(a[b++]);b++}};.return c}throw Error("Not implemented");},OAb=function(a,b,c){if(g.ab(a))g.$b(a,b,c);.else for(a=NAb(a);;){var d=a.next();if(d.done)break;b.call(c,d.value,void 0,a)}},PAb=function(a,b){var c=[];.OAb(b,function(d){try{var e=g.Pv.prototype.B.call(this,d,!0)}catch(f){if("Storage: Invalid value was encountered"==f)return;throw f;}void 0===e?c.push(d):g.ula(e)&&c.push(d)},a);.return c},QAb=function(a,b){PAb(a,b).forEach(function(c){g.Pv.prototype.remove.call(this,c)},a)},RAb=function(a){if(a.oa){if(a.oa.locationOverri
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (58508), with no line terminators
                                      Category:downloaded
                                      Size (bytes):58508
                                      Entropy (8bit):5.043797036044922
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:E84EA59F1F6D11B5553E816613EB659F
                                      SHA1:D22C414356217E342565D629CE96A684A5005ABA
                                      SHA-256:E803D4290C5BAEC790ECDE06D9308C6BF17F967C8232E3651844BFD60DD2A9F5
                                      SHA-512:CDCEFFFD5E3FC918A2D9345449A8D43C3D030536E3DFB389A1CDE73EA24EC16BDDCE3FF5B421D3F7B8D91EC42EF7216E0190F2190E928F0D891C05C120EC9D4C
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.sobeteracotafancris.ro/wp-content/themes/betheme/assets/animations/animations.min.css?ver=17.8.4
                                      Preview:.animate,.hover-bounce,.hover-flash,.hover-heartbeat,.hover-panic,.hover-pulsate,.hover-pulse,.hover-shakeH,.hover-shakeV,.hover-slingshotCCW,.hover-slingshotCW,.hover-spinCCW,.hover-spinCW,.hover-strobe,.hover-tada,.hover-wave,.hover-wobble,.trigger{opacity:0;-webkit-animation-duration:1s;-moz-animation-duration:1s;-ms-animation-duration:1s;-o-animation-duration:1s;animation-duration:1s;-webkit-animation-fill-mode:both;-moz-animation-fill-mode:both;-ms-animation-fill-mode:both;-o-animation-fill-mode:both;animation-fill-mode:both}.animate.slow-mo,.hover-bounce.slow-mo,.hover-flash.slow-mo,.hover-heartbeat.slow-mo,.hover-panic.slow-mo,.hover-pulsate.slow-mo,.hover-pulse.slow-mo,.hover-shakeH.slow-mo,.hover-shakeV.slow-mo,.hover-slingshotCCW.slow-mo,.hover-slingshotCW.slow-mo,.hover-spinCCW.slow-mo,.hover-spinCW.slow-mo,.hover-strobe.slow-mo,.hover-tada.slow-mo,.hover-wave.slow-mo,.hover-wobble.slow-mo,.trigger.slow-mo{-webkit-animation-duration:2s;-moz-animation-duration:2s;-ms-animatio
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text, with very long lines (555)
                                      Category:downloaded
                                      Size (bytes):2541942
                                      Entropy (8bit):5.661994653691614
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:A313E336BF114BBDD177631DD91BFDE0
                                      SHA1:0FFBAF2E82DD663B99A57AE0F480E9B337FB3B91
                                      SHA-256:2A37BF65D22180399B97261EC096F8CB8E63C9CBB661FEE1FF29318DF87D0BF6
                                      SHA-512:9971F3492DBC72FD9EDAF28E47CCB345A57076888500358D35E68C436DB45BD78C141986425944BEB9CD845087C2137EC5DA0138EE8D87E6500CD1366C30941C
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://www.youtube.com/s/player/7ebf4817/player_ias.vflset/en_US/base.js
                                      Preview:var _yt_player={};(function(g){var window=this;/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. SPDX-License-Identifier: Apache-2.0.*/./*.. (The MIT License).. Copyright (C) 2014 by Vitaly Puzrin.. Permission is hereby granted, free of charge, to any person obtaining a copy. of this software and associated documentation files (the "Software"), to deal. in the Software without restriction, including without limitation the rights. to use, copy, modify, merge, publish, distribute, sublicense, and/or sell. copies of the Software, and to permit persons to whom the Software is. furnished to do so, subject to the following conditions:.. The above copyright notice and this permission notice shall be included in. all copies or substantial portions of the Software... THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR. IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,. FITNESS FOR A PARTICULAR PURPOSE AND NONIN
                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                      File Type:ASCII text
                                      Category:downloaded
                                      Size (bytes):11681
                                      Entropy (8bit):5.460172425624809
                                      Encrypted:false
                                      SSDEEP:
                                      MD5:03DB2D8996A382A5E8C22B708EB34927
                                      SHA1:E3F5BD7A616E25B0911B602A74B55A95E062EB62
                                      SHA-256:15BBFE5002FAFC6358CC3E702DAA9159209E50D5FB4E7C35EAC1844F4AC21287
                                      SHA-512:F18DF17DF59C9D27EC73A801962EF7016900EE7E7304A5E222ACDAE1FC43AF698252019620EC01128731D442E505BA16C7E1BA119CFD6A258EBD8AB07BC91190
                                      Malicious:false
                                      Reputation:unknown
                                      URL:https://fonts.googleapis.com/css?family=Alegreya+Sans%3A1%2C100%2C300%2C400%2C400italic%2C700&ver=6.0.6
                                      Preview:/* cyrillic-ext */.@font-face {. font-family: 'Alegreya Sans';. font-style: italic;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/alegreyasans/v24/5aUt9_-1phKLFgshYDvh6Vwt7V9dsm1Ttm4.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Alegreya Sans';. font-style: italic;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/alegreyasans/v24/5aUt9_-1phKLFgshYDvh6Vwt7V9du21Ttm4.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Alegreya Sans';. font-style: italic;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/alegreyasans/v24/5aUt9_-1phKLFgshYDvh6Vwt7V9ds21Ttm4.woff2) format('woff2');. unicode-range: U+1F00-1FFF;.}./* greek */.@font-face {. font-family: 'Alegreya Sans';. font-style: italic;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/alegr
                                      No static file info