Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c ipconfig /all |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c systeminfo |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c nltest /domain_trusts |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c net view /all |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c nltest /domain_trusts /all_trusts |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c net view /all /domain |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &ipconfig= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c net group "Domain Admins" /domain |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /Node:localhost /Namespace:\\root\SecurityCenter2 Path AntiVirusProduct Get * /Format:List |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\wbem\wmic.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c net config workstation |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c wmic.exe /node:localhost /namespace:\\root\SecurityCenter2 path AntiVirusProduct Get DisplayName | findstr /V /B /C:displayName || echo No Antivirus installed |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /c whoami /groups |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &systeminfo= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &domain_trusts= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &domain_trusts_all= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &net_view_all_domain= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &net_view_all= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &net_group= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &wmic= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &net_config_ws= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &net_wmic_av= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &whoami_group= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "pid": |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "%d", |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "proc": |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "%s", |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "subproc": [ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &proclist=[ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "pid": |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "%d", |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "proc": |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "%s", |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "subproc": [ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &desklinks=[ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: *.* |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "%s" |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Update_%x |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Custom_update |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: .dll |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: .exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Error |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: runnung |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %s/%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\Windows\System32\cmd.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: front |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: /files/ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Lotus |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Content-Type: application/x-www-form-urlencoded |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Cookie: |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: POST |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: GET |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: curl/7.88.1 |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Tob 1.1) |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Tob 1.1) |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: CLEARURL |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: URLS |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: COMMAND |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: ERROR |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: PfuKfm6FWKILm6aBzHjfLsa3TbcSQ0bEvuuBSDX954aW9VNS4Y7b3kV3NeqZsB8n |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: counter=%d&type=%d&guid=%s&os=%d&arch=%d&username=%s&group=%lu&ver=%d.%d&up=%d&direction=%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: counter=%d&type=%d&guid=%s&os=%d&arch=%d&username=%s&group=%lu&ver=%d.%d&up=%d&direction=%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: counter=%d&type=%d&guid=%s&os=%d&arch=%d&username=%s&group=%lu&ver=%d.%d&up=%d&direction=%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: [{"data":" |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: "}] |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &dpost= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: https://tynifinilam.com/test/ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: https://horetimodual.com/test/ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: \*.dll |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: AppData |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Desktop |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Startup |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Personal |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Local AppData |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\WINDOWS\SYSTEM32\rundll32.exe %s,%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: <!DOCTYPE |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %s%d.dll |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: C:\WINDOWS\SYSTEM32\rundll32.exe %s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Tob 1.1) |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: <html> |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Content-Type: application/dns-message |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Content-Type: application/ocsp-request |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: Content-Length: 0 |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: 12345 |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: 12345 |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &stiller= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %s%d.exe |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %x%x |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &mac= |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %02x |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: :%02x |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &computername=%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: &domain=%s |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %04X%04X%04X%04X%08X%04X |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %04X%04X%04X%04X%08X%04X |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: \Registry\Machine\ |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: LogonTrigger |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: TimeTrigger |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: PT0H%02dM |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: %04d-%02d-%02dT%02d:%02d:%02d |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: PT0S |
Source: 6.0.explorer.exe.8380000.0.raw.unpack | String decryptor: \update_data.dat |
Source: | Binary string: UxTheme.pdb source: NVIDIA Notification.exe, 00000004.00000003.2176267619.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: netutils.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2185208618.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: oleacc.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2186161817.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\u\workspace\03_27\cefwinauto\build\Release\x86_64\src\NVIDIA Notification.pdb source: NVIDIA Notification.exe, 00000004.00000002.3368806704.00007FF607A47000.00000002.00000001.01000000.00000006.sdmp, NVIDIA Notification.exe, 00000004.00000000.2152261554.00007FF607A47000.00000002.00000001.01000000.00000006.sdmp, NVIDIA Notification.exe, 00000004.00000003.2156076643.000002AD18EF0000.00000004.00001000.00020000.00000000.sdmp, NVIDIA Notification.exe.1.dr |
Source: | Binary string: msvcrt.pdbGCTL source: NVIDIA Notification.exe, 00000004.00000003.2159703697.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp, msvcrt.dll.1.dr |
Source: | Binary string: bcrypt.pdb source: NVIDIA Notification.exe, 00000004.00000003.2178561411.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: ucrtbase.pdb source: NVIDIA Notification.exe, 00000004.00000003.2160814015.000002AD18CB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: msvcrt.pdb source: NVIDIA Notification.exe, 00000004.00000003.2159703697.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp, msvcrt.dll.1.dr |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\msvcp140_1.amd64.pdbGCTL source: msvcp140_1.dll.1.dr |
Source: | Binary string: rpcrt4.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2160112251.000002AD18CE0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: cryptsp.pdb source: NVIDIA Notification.exe, 00000004.00000003.2186795564.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: UxTheme.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2176267619.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: dxgi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2175379554.000002AD18CA0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: advapi32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2170273985.000002AD18C60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: winmm.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2186424764.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140_1.amd64.pdb source: vcruntime140_1.dll.1.dr |
Source: | Binary string: crypt32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2160486051.000002AD18D10000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: urlmon.pdb source: NVIDIA Notification.exe, 00000004.00000003.2171284836.000002AD18D90000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: winspool.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2185030133.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: QimasteredudfhelpUDFJOLIETvolumelabelItemOrderItemPos%s (%d).%sData\Program Files\.cdxml.cer.automaticdestinations-ms.cat.appxbundle.appxpackageWindows.old\.appxWindows\$Windows.~BT\Program Files (x86)\ProgramData\Data\Windows\Program Files\Data\Program Files (x86)\Data\ProgramData\.msp.msu.msip.msm.mpb.msi.jar.mp.etl.fon.dsft.efi.der.dmp.cookie.customdestinations-ms.partial.pdb.p7s.p7x.p7m.p7r.p7b.p7c.p10.p12.ost.otf.ocx.olb.mui.nst.vmcx.vmrs.ttc.vbs.sst.sys.spc.spkg.rll.sft.psc1.psf.pfx.ps1xml.pem.pfm.xapWININET.winmd.wsf.wfs.wim.vsi.vsix\shellft%06dBrowserFlagsAlwaysShowExtNeverShowExtIfExecTopicL source: NVIDIA Notification.exe, 00000004.00000003.2165863950.000002AD19300000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: wlanapi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2174063390.000002AD18C30000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shlwapi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2159538014.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shlwapi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2159538014.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: dwmapi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2183164557.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: kernel32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2158501136.000002AD18C70000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: user32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2161163241.000002AD18D50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: cryptui.pdbGCTL source: NVIDIA Notification.exe, 00000004.00000003.2177293426.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: win32u.pdb source: NVIDIA Notification.exe, 00000004.00000003.2161719031.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: dwmapi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2183164557.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: srvcli.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2184691366.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: srvcli.pdb source: NVIDIA Notification.exe, 00000004.00000003.2184691366.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: imm32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2173581509.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\msvcp140.amd64.pdb source: msvcp140.dll.1.dr |
Source: | Binary string: ws2_32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2159903231.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: winspool.pdb source: NVIDIA Notification.exe, 00000004.00000003.2185030133.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: iphlpapi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2174728445.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: iphlpapi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2174728445.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: ntdll.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2157678976.000002AD18DA0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: winmm.pdb source: NVIDIA Notification.exe, 00000004.00000003.2186424764.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: d3d9.pdb source: NVIDIA Notification.exe, 00000004.00000003.2181880784.000002AD18D80000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdb source: vcruntime140.dll.1.dr |
Source: | Binary string: ole32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2168103368.000002AD18CE0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: win32u.pdbGCTL source: NVIDIA Notification.exe, 00000004.00000003.2161719031.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\JobRelease\win\Release\custact\x86\DataUploader.pdb] source: MSIB6EB.tmp.1.dr, MSI28B1.tmp.1.dr |
Source: | Binary string: cryptui.pdb source: NVIDIA Notification.exe, 00000004.00000003.2177293426.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: imm32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2173581509.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: iertutil.pdb source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: msvcp_win.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2164081106.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp, msvcp_win.dll.1.dr |
Source: | Binary string: advapi32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2170273985.000002AD18C60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: oleaut32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2169862564.000002AD18C80000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: combase.pdb source: NVIDIA Notification.exe, 00000004.00000003.2169126439.000002AD18F10000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Windows.Storage.pdb source: NVIDIA Notification.exe, 00000004.00000003.2187945112.000002AD19350000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: profapi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2186628091.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: urlmon.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2171284836.000002AD18D90000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: netutils.pdb source: NVIDIA Notification.exe, 00000004.00000003.2185208618.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: kernelbase.pdb source: NVIDIA Notification.exe, 00000004.00000003.2159080582.000002AD18E90000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: WLDP.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2189245256.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: rpcrt4.pdb source: NVIDIA Notification.exe, 00000004.00000003.2160112251.000002AD18CE0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: d3d11.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2177799711.000002AD18E20000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: `OTHER`TEMP`PACKED<%s return value>internal error: failed to write debug data to pdb streaminternal error: failed to add section contributioninternal warning: PDB Error string is "%S"internal error: failed to close debug infointernal error: failed to close PDBinternal error: failed to open PDB for writing in streaminternal error: failed to create debug info in PDBinternal error: failed to add code section to debug infointernal error: failed to add module to debug infointernal error: failed to create type info in PDBinternal error: failed to create inline type info in PDBinternal error: failed to create source file store in PDBinternal error: failed to close source file store in PDBinternal error: failed to close module in debug infointernal error: failed to commit type info in PDBinternal error: failed to commit inline type info in PDBinternal error: failed to add section header to debug infointernal error: failed to append section header to pdbinternal error: failed to close section header in debug infointernal error: failed to close debug info in PDBinternal error: failed to commit PDBinternal error: PDB data too largeinternal error: PDB stream truncatedinternal error: failed to close source file storeinternal error: failed to close type infointernal error: pdb append failedfxl_4_0too many arguments to target TXtoo many outputs to target TXclip not supported in texture shadersinvalid reference to input semantic '%s%d'invalid reference to output semantic '%s%d'0123456789abcdef.pdbVPosSV_ViewportArrayIndexColorFailed to log error, redirecting to debug output: source: NVIDIA Notification.exe, 00000004.00000003.2179169164.000002AD19000000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: cryptsp.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2186795564.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: gdiplus.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2176930589.000002AD18D60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shcore.pdb source: NVIDIA Notification.exe, 00000004.00000003.2184430657.000002AD18C60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\JobRelease\win\Release\custact\x86\AICustAct.pdb source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdbGCTL source: vcruntime140.dll.1.dr |
Source: | Binary string: d3d9.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2181880784.000002AD18D80000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: oleacc.pdb source: NVIDIA Notification.exe, 00000004.00000003.2186161817.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shell32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2165863950.000002AD19300000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: msvcp_win.pdb source: NVIDIA Notification.exe, 00000004.00000003.2164081106.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp, msvcp_win.dll.1.dr |
Source: | Binary string: wlanapi.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2174063390.000002AD18C30000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: gdi32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2162153115.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D3DCompiler_47.pdbGCTL source: NVIDIA Notification.exe, 00000004.00000003.2179169164.000002AD19000000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: msimg32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2177463857.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: combase.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2169126439.000002AD18F10000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\JobRelease\win\Release\custact\x86\DataUploader.pdb source: MSIB6EB.tmp.1.dr, MSI28B1.tmp.1.dr |
Source: | Binary string: oledlg.pdbGCTL source: NVIDIA Notification.exe, 00000004.00000003.2189077926.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: gdi32full.pdb source: NVIDIA Notification.exe, 00000004.00000003.2163307649.000002AD18CC0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\JobRelease\win\Release\custact\x86\AICustAct.pdbn source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr |
Source: | Binary string: d3d11.pdb source: NVIDIA Notification.exe, 00000004.00000003.2177799711.000002AD18E20000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: ucrtbase.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2160814015.000002AD18CB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: gdiplus.pdb source: NVIDIA Notification.exe, 00000004.00000003.2176930589.000002AD18D60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: bcrypt.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2178561411.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: oledlg.pdb source: NVIDIA Notification.exe, 00000004.00000003.2189077926.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shell32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2165863950.000002AD19300000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\vcruntime140_1.amd64.pdbGCTL source: vcruntime140_1.dll.1.dr |
Source: | Binary string: gdi32full.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2163307649.000002AD18CC0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: gdi32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2162153115.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: kernel32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2158501136.000002AD18C70000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: profapi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2186628091.000002AD17290000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: WLDP.pdb source: NVIDIA Notification.exe, 00000004.00000003.2189245256.000002AD172A0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: shcore.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2184430657.000002AD18C60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\msvcp140.amd64.pdbGCTL source: msvcp140.dll.1.dr |
Source: | Binary string: sechost.pdb source: NVIDIA Notification.exe, 00000004.00000003.2171035452.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D:\a\_work\1\s\binaries\amd64ret\bin\amd64\\msvcp140_1.amd64.pdb source: msvcp140_1.dll.1.dr |
Source: | Binary string: ole32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2168103368.000002AD18CE0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Windows.Storage.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2187945112.000002AD19350000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Kernel.Appcore.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2186943772.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: sechost.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2171035452.000002AD18C50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: msimg32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2177463857.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: user32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2161163241.000002AD18D50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: comctl32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2185653824.000002AD18E50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: kernelbase.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2159080582.000002AD18E90000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Kernel.Appcore.pdb source: NVIDIA Notification.exe, 00000004.00000003.2186943772.000002AD17280000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: D3DCompiler_47.pdb source: NVIDIA Notification.exe, 00000004.00000003.2179169164.000002AD19000000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: ntdll.pdb source: NVIDIA Notification.exe, 00000004.00000003.2157678976.000002AD18DA0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: oleaut32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2169862564.000002AD18C80000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: dxgi.pdb source: NVIDIA Notification.exe, 00000004.00000003.2175379554.000002AD18CA0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: comctl32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2185653824.000002AD18E50000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: ws2_32.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2159903231.000002AD18BB0000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: iertutil.pdbUGP source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: crypt32.pdb source: NVIDIA Notification.exe, 00000004.00000003.2160486051.000002AD18D10000.00000004.00001000.00020000.00000000.sdmp |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:52 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=0BWjyOiUsOubZpJ6MK29JZ84%2FjGj9HPVXsoX191WRm1Yi7wO6X56YlRuziUTZTfCSv0m%2FG6y%2BudEehJ5llW3mnqulH3C6ygyVHm1Gey7F1kLIutp72jRb%2B059TVV4D8PDXM%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d15ad098287-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7267&min_rtt=7255&rtt_var=2746&sent=6&recv=7&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=396846&cwnd=32&unsent_bytes=0&cid=e2254f428238e93d&ts=418&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:53 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=%2Bnd82d7TXO54fHFkx3aXzZRA2kmBWMO00CAifyZM%2BpjBhZ8dgjs2Jf2PxQmPAZery%2FiC6Nc7ZKtQE2ytVNpV%2FgbsO5WWkwBnUcoxo3pPspK7kw%2BRiy7YBYtpw7eFJ0Xqy0CY"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d1b688315a3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1601&min_rtt=1597&rtt_var=607&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1792510&cwnd=129&unsent_bytes=0&cid=efa76328403f60b3&ts=342&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:54 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=SXI4FYCTfqJX6BdN2H0K%2FM5hWPF%2BoXfMRBi4SSEkt7scgnpJFv2ef4dND%2Frtw8l9qwm0%2BQD8LHs5opGFTghNH8Ao30fZSkcOlmYtBKQcFLUP%2FN5z9O8%2FKP1iXr%2BdxLO1zuA%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d212c05c588-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7012&min_rtt=7002&rtt_var=2645&sent=6&recv=7&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=412312&cwnd=32&unsent_bytes=0&cid=33fe88f9f2f6a5e4&ts=441&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:55 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=g22II7Q0ogBbKGtxcse3pEovRe1iz57h00l%2FJERgtdnwOVHJxC74a%2B25Hf72SdaAi%2Fg9ZRwsdjvri4WvdRn1CTI1C197v1ImDiYVLZaTJVjxMIdwXJDrWfKZikn2evb0YSUn"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d26dc930fa1-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1924&min_rtt=1611&rtt_var=828&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1812538&cwnd=252&unsent_bytes=0&cid=940914062c459684&ts=338&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:56 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=%2FJ0KzG1K3STv7KW9VTRk6Mn9SlsZSfn%2FNWhQGttL2w6KxwoXQs4QFtmBuVAMwKEw7Eq1JKRs3in6Wf%2B2d3%2FKa%2Bd4Cxu0aYGQ3XiF3ExyTqHYbBzvsQQFbVIlwWAqEzUAvW4%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d2c0eb68302-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7159&min_rtt=7149&rtt_var=2701&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=403761&cwnd=32&unsent_bytes=0&cid=cf9410b7a01d6e4a&ts=410&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:57 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=8DyHvhI76FPdlvZRJcoXIp1TSCrO6D4weuho4kYANCxtSSEswZZoMEiEXVqXJOzZbzTz3IQWkmZhKXERxdYHOdEnmX5gPwRpi1SfGtUKG%2B4LFEykfMnDbWxrLW5GOVldrNTV"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d317cd4440c-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1710&min_rtt=1702&rtt_var=654&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2841&recv_bytes=1170&delivery_rate=1653454&cwnd=252&unsent_bytes=0&cid=b3d0f5d84674a630&ts=343&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:58 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=OlW8KccfTxnHUUObqpnWdxuqNBSrODx83IY%2BWFysV%2BCVjG6qf1ErX5QyZjkCAOnIuHlgQ4jfLHnEuWr61ov0PrG%2BhvDELRGAQ87%2BDU7Ih6Uxy7G7ZJsTWJR1rmdV4xJRvdc%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d36cb96802d-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7669&min_rtt=7666&rtt_var=2882&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=379467&cwnd=32&unsent_bytes=0&cid=77b5fb0c136957ce&ts=406&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:58 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=NQoe9zAvp9KmLHv4ZzlKZF8J5OyKRysnPGrEOo0RrCk15TSz5ILKXSC0vB1%2F2ETxmpUwo2aKqC7sCZYtUIWDxN0CNBgJk6eLbLBni%2BfpAqCeXCcpVEW3R0uteiW1NXhJT3aX"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d3c38b841f3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1535&min_rtt=1528&rtt_var=587&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1839949&cwnd=225&unsent_bytes=0&cid=b64586008c80e478&ts=345&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:03:59 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=BcowDoz8t4QqXrxzRDYmzDTSvTtxySZy8uS%2BrpxGpnDsq965bnhgTpmc4VsQFy4f1CZ0Wuo4pjRU1Q%2BLlsh71M5r%2Fe4%2Bsi4Y5lo65gwXsSwrKl0QpN7K5p%2BFKHFIlHzLmXo%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d4168cac5ad-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7194&min_rtt=7190&rtt_var=2706&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=403928&cwnd=32&unsent_bytes=0&cid=c37c5c9bdbe732e2&ts=397&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:00 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=eTLrf9DG1EL3jHX9vjybcZD2IJ4PVEus%2BnI8R%2B1hJPeUoMb8LVq6wavh7GTM75jYz7BC%2Bw9xYOM8Bi73fg%2F3tSGYcDAyJKv%2Br7mXomyqyfMwwt4OPv%2FiixpMDlkE5FdPxmwR"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d46cf8215a3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1625&min_rtt=1620&rtt_var=618&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2843&recv_bytes=1170&delivery_rate=1756919&cwnd=129&unsent_bytes=0&cid=267b0c7429f52738&ts=339&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:01 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=lLHLRVf8W0Fmrm1eCzTLI8jfP3CPlLrR3FE7xKnVj4YRIVxya1qtZDcq3k167Wrw4AbS%2B%2FUqgGEVO1WTpjUAEAr6bry2EaRtuU%2BzEUM6Xx%2FWspBJzOSKjmKHRyeQ0lRSwE4%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d4be92a8274-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7177&min_rtt=7168&rtt_var=2695&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=407366&cwnd=32&unsent_bytes=0&cid=d2d46782351dd132&ts=403&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:02 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=wmcXmK3s4C3OqVCaBHZzKga%2F6tFTH4BmM9kxHCrXDE57G0ppIBZ4WoAqxncX6dOyWzpITg09oGnxXRg5xZV4bbQoRLAYCYcg5UIoXRK5qGjWmCgGFTv9Dgd1O9WXd5rZGT9K"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d515bed41f3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1581&min_rtt=1577&rtt_var=601&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2841&recv_bytes=1170&delivery_rate=1808049&cwnd=225&unsent_bytes=0&cid=7a0294e707c8c161&ts=330&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:03 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=7KeGy8RZkLn%2BxRzvAxixfnS8UUfM%2B4KUyf7eY8ipIB99Am2xTgJ9%2BzpjEFY0h1M2SY64zmt8o9EBAR9jSE0EDxD4gkXBRjRYS0cNveNABiDpOtX%2B0MuKw2bHJ5Hlv0JJIis%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d568996825d-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7231&min_rtt=7227&rtt_var=2719&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=401927&cwnd=32&unsent_bytes=0&cid=3538d2a2cb874236&ts=432&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:04 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=JY%2FsgE%2B3gp9UcNRRGM3rSu%2BjCtT1OZBtAoDamlgE2bETsIaxAFlFnhs%2Bpr4ZiNXXFZtO9XkTHho%2Bi84rVpH7pbW7wGFamQcoj0O5xyLQ%2F1MmEiiVnsWPhdb%2F09i2sWwMAjgY"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d5c2b4e41f3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1521&min_rtt=1507&rtt_var=593&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1801357&cwnd=225&unsent_bytes=0&cid=c3616864820611aa&ts=334&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:04 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=xAtw5KhC7yv5OOwlRjqp4yk18W9sl%2BJBwHS3SAt2wODFSVD9nm10dLnV%2FL5H2dI7jDamg0oG029XBMhijmRoz%2BjCuZPuAeRER0W9PujG2wzsWayQEBFah%2Fd222a4vDHh69M%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d61a822c5ab-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7313&min_rtt=7078&rtt_var=2822&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=412545&cwnd=32&unsent_bytes=0&cid=62db1d3714f9f0e9&ts=401&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:05 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=aXGMG6x4pjVMVPGqyWB2y6Cd4kl2LN6XGbrxKkZZliyiIbzEnJ%2Fh%2BW9xqYmMRS6ofai%2FOHcf8ioY7qZTSk0w6ylRBOO3BApnMMIMSgI0eMxUTdyjAM%2BYxjGIr%2BzFAB2WMiav"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d66eaa815a3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1623&min_rtt=1615&rtt_var=622&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1738095&cwnd=129&unsent_bytes=0&cid=3f6c6c93f847f7d5&ts=323&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:06 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=x%2FwGyz3iHj4gLHkHvJ9QMU14n%2BaKaOiVA%2Bj0oSzq94MDMMEdn8Q8zSvnZ%2Fo8A9vh2GjszBSz575KluuIHf65HBnr0%2BmxAARVIReXo6m0FgnnNwD4mm%2BCl4SY%2FhghMpzIVIA%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d6cac9282e4-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7181&min_rtt=7141&rtt_var=2759&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=391106&cwnd=32&unsent_bytes=0&cid=50c9e43639d18af3&ts=405&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:07 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=b2gDmKDKd%2BtoqJioQhqeGCivJctbyJXwota%2Fh7aGFHd%2Bdym1%2BiV67Zxl83BZInS6pOxic63yeGGlJAO9ChPU2GchdPcL6%2B2UQUYvwa%2FXLKLPJEDHt%2FjixEHRQoMwZ36sZ4mI"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d720b68440c-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1754&min_rtt=1669&rtt_var=687&sent=6&recv=8&lost=0&retrans=0&sent_bytes=2841&recv_bytes=1170&delivery_rate=1749550&cwnd=252&unsent_bytes=0&cid=1ec6f88d962a37ef&ts=322&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:08 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=V7cmHssjL8Hb8mD8O1gBnkzuRhsK67EHQq7%2BpPcR6%2F0bzcmSSu35ag7PVuAHtP8NpMTV6qIEhQsqTFsNS%2BxhKtaNSzZRu8bDxvJdXsN5IXjBg%2B4HpLe8sH0qR9XQVtO7gDY%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d7788dac59a-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7401&min_rtt=7395&rtt_var=2786&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=392051&cwnd=32&unsent_bytes=0&cid=4caef772acaf18e9&ts=434&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:09 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=3xsXDT36Skk3M8F6eaEhxM1pHLsg2e0qt158s3ny7HLCoFs5tj2ZMjBz4kKI1LgR7Z1rX9MPpBiVeHKtHrFCsNpt5KSrrqEcFyJs37zkGV9qhcuUFCSbnDjYQsPzjRTfjzDv"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d7ceb040fa1-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1498&min_rtt=1497&rtt_var=562&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2841&recv_bytes=1170&delivery_rate=1950567&cwnd=252&unsent_bytes=0&cid=f676e212f81822fe&ts=348&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:10 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=4u%2FYVuBI4Cs4Z1IGVfp1G8qrMnIS30fvAhmJpL8Wh6HtmmEk1OMSoYE%2Bihb7i%2FQga7ts5HXD7OfX6Zmmnm5WHOpwq9%2Bj0lstNc9CyTDtaq1%2BcT2RiXQYl%2Bq3MlMUPcGkcV0%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d824d30c5ae-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7653&min_rtt=7249&rtt_var=3007&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=402814&cwnd=32&unsent_bytes=0&cid=44296c7eddc1e4b5&ts=402&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:11 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=95yldnnMthCGSPsJ2RXrTs0ks8hwGHZP%2Box8M%2BKF6n%2FRojThmo3%2BHaSfuDEAJ61JbyQ9hXTE80RGOMowhZKB5fC%2B26BEPCTmj9iSzy%2FXjvPY5eg4nZ0dxvn0Bpd%2BbMKUsh7H"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d87e81a15a3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1654&min_rtt=1654&rtt_var=827&sent=6&recv=7&lost=0&retrans=1&sent_bytes=4224&recv_bytes=1170&delivery_rate=153579&cwnd=129&unsent_bytes=0&cid=bf1bbee74603d975&ts=365&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:11 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=U46QcxLFacdPyA8HO18rwyQTnXh4GvLfNsLbfsn6Dswv44z54THPrz%2FOHPls02KQWIgLXYPNFr%2Fv6tagqaQeofLesYhbiyy0eakpvMUC%2FmXqq1cI72VNu2GkBkW%2Bfei4ReA%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d8d2d698250-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=10705&min_rtt=7333&rtt_var=5158&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=398199&cwnd=32&unsent_bytes=0&cid=5fc6d4a61ff5edf6&ts=411&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:12 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=SrL2%2BSQ3nevqAz6yqC9nKiqFJ2fLLCudgAM93AB7JE%2F2xqpOiRDYD%2B0jmSsVckOSRd%2BQHNkCut1JUjW20HjkrwTgZeVXs9O%2BQVmmK2GyOJQB4umn63Z5i0tdb4MaBeaN8G2O"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d934d7841f3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1605&min_rtt=1596&rtt_var=616&sent=6&recv=8&lost=0&retrans=0&sent_bytes=2842&recv_bytes=1170&delivery_rate=1749550&cwnd=225&unsent_bytes=0&cid=d5b48acfc620e8cb&ts=446&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:13 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=FtvEvf4j2rnozINAoJI9ME6HiigfdZwKHkmJipGS%2FTBzvsxBEOaFD8N2Uy8nKKZRk%2FKZebfTq3oEWH1pznAk4HhOlCQhHkvV7tS605mWJ0xGP2%2FL8Wco5GbMG%2BroxsMGWv8%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d989c718011-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=8247&min_rtt=8239&rtt_var=3096&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2837&recv_bytes=1169&delivery_rate=354411&cwnd=32&unsent_bytes=0&cid=80103319b9279c21&ts=430&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:14 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=2Zj63eGoiElg1lLb705q2ycgxHl4pwsKC1oov02K%2BlrmuOzpsSygqgNlCKB%2Bbc6B3tuhpSI%2Fz5zeigPr3Yq32WQ1L3pLvKV51UovHNHIcneQ0xyuKD8qOFF4W6uFyed4cKiY"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482d9edd8b41f3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=35365&min_rtt=1592&rtt_var=20673&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2843&recv_bytes=1170&delivery_rate=1834170&cwnd=225&unsent_bytes=0&cid=dbe0832ed8943651&ts=267&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:15 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=ULaEYexCSJXwYfjaZs%2FVZMgMaQkDTgYv2bhdwXDFZzQCNp4kv%2FjetlsjeXR0S8ENaGsXq8nPbkTHe22pvbXn4lne%2FFKG8FVyYHw5mmbC0cglBIfe8TIzKqDd0tFjqqQpidQ%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482da39cb3820e-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7217&min_rtt=7188&rtt_var=2754&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=393318&cwnd=32&unsent_bytes=0&cid=33c5c5a0636f23d5&ts=404&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:16 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=8MAQfIEIay5IiKJ9bSkU7V8S9SAWJH9ubDBPuiYkdKbNpcXvg0IXkJFz723BBDCyw2FpuV8Vvf1vfdf%2BjGMD53pG7IS801qioYoF%2F4y5s%2FHPNSLwqElDrusOkIbj3vXnwY8s"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482da9da59440c-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1711&min_rtt=1706&rtt_var=650&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2843&recv_bytes=1170&delivery_rate=1671436&cwnd=252&unsent_bytes=0&cid=2700d263b1f795f5&ts=340&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:17 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=diIAAauMpdCFh1%2Fo17vMw6R%2BW%2B9IVdTkO4h6sAHY%2BDvh5BiR1Y2C8jAwE9xfcctJXpSChzLGsrKoaW7X%2BBpogLwawf7AtdJrcxjjbYpZtc7cDQkkf9n7CCfxNYwAYOsWYFk%3D"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482daf3d205b35-IADalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=7812&min_rtt=7808&rtt_var=2936&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2836&recv_bytes=1169&delivery_rate=372353&cwnd=32&unsent_bytes=0&cid=9c416ece81822364&ts=409&x=0" |
Source: global traffic | HTTP traffic detected: HTTP/1.1 403 ForbiddenDate: Wed, 19 Feb 2025 18:04:18 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: closecf-cache-status: DYNAMICReport-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=Uou%2FRVfQ7ni%2BX37ad29wjJ8AYYDs4Fi9qhAAsOVyODeUG%2Byds7HLsLn6ZeR2ZaON%2F92dA6KRzhp1xRD%2BM6vU3dMGOXP3VdzzUsQb9iazXw%2F0vKHNzhIYIguH8fqap0McgN71"}],"group":"cf-nel","max_age":604800}NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}Server: cloudflareCF-RAY: 91482db48a3215a3-EWRalt-svc: h3=":443"; ma=86400server-timing: cfL4;desc="?proto=TCP&rtt=1657&min_rtt=1646&rtt_var=639&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2843&recv_bytes=1170&delivery_rate=1683967&cwnd=129&unsent_bytes=0&cid=aa19f8545c29ca41&ts=323&x=0" |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://aia.entrust.net/ts1-chain256.cer01 |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: http://appmap.trafficmanager.net/api/v1/parse?url= |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0 |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0E |
Source: explorer.exe, 00000006.00000000.2292351623.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: http://cacerts.digicert.com/DigiCertGlobalRootG2.crt0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertSHA2AssuredIDTimestampingCA.crt0 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crt0 |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crt0 |
Source: libcef.dll.1.dr, NVIDIA Notification.exe.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://crl.entrust.net/2048ca.crl0 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://crl.entrust.net/ts1ca.crl0 |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl.globalsign.com/codesigningrootr45.crl0U |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl.globalsign.com/gsgccr45evcodesignca2020.crl0 |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.micros |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.microsoft |
Source: explorer.exe, 00000006.00000002.3363875611.0000000000F13000.00000004.00000020.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2287637834.0000000000F13000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://crl.v |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0P |
Source: explorer.exe, 00000006.00000000.2292351623.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: http://crl3.digicert.com/DigiCertGlobalRootG2.crl07 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crl0S |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crl0 |
Source: libcef.dll.1.dr, NVIDIA Notification.exe.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedRootG4.crl0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl3.digicert.com/sha2-assured-ts.crl02 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0: |
Source: explorer.exe, 00000006.00000000.2292351623.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: http://crl4.digicert.com/DigiCertGlobalRootG2.crl0 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://crl4.digicert.com/DigiCertTrustedG4CodeSigningRSA4096SHA3842021CA1.crl0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://crl4.digicert.com/sha2-assured-ts.crl0 |
Source: 77EC63BDA74BD0D0E0426DC8F80085060.1.dr | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
Source: NVIDIA Notification.exe, 00000004.00000003.2160486051.000002AD18D10000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/enRootDirUrl2.5.29.28authroot.st |
Source: explorer.exe, 00000006.00000000.2292351623.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B0B000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009AF9000.00000004.00000001.00020000.00000000.sdmp, NVIDIA Notification.exe.1.dr | String found in binary or memory: http://ocsp.digicert.com0 |
Source: libcef.dll.1.dr, NVIDIA Notification.exe.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.digicert.com0A |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, libcef.dll.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.digicert.com0C |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.digicert.com0O |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.digicert.com0X |
Source: explorer.exe, 00000006.00000000.2292351623.00000000099C0000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.00000000099C0000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: http://ocsp.digicert.comhttp://crl3.digicert.com/DigiCertGlobalRootG2.crlhttp://crl4.digicert.com/Di |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://ocsp.entrust.net02 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://ocsp.entrust.net03 |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.globalsign.com/codesigningrootr450F |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://ocsp.globalsign.com/gsgccr45evcodesignca20200U |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1719B000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284821484.000002AD195B2000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://r10.i.lencr.org/0 |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1719B000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284821484.000002AD195B2000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://r10.o.lencr.org0# |
Source: NVIDIA Notification.exe, 00000004.00000002.3367626962.000002AD1967C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://r11.i.lencr.org/0 |
Source: NVIDIA Notification.exe, 00000004.00000002.3367626962.000002AD1967C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://r11.o.lencr.org0# |
Source: explorer.exe, 00000006.00000002.3370491807.0000000008870000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000006.00000002.3370537405.0000000008890000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000006.00000000.2290536350.0000000007DC0000.00000002.00000001.00040000.00000000.sdmp | String found in binary or memory: http://schemas.micro |
Source: C5C8CC0A7FE31816B4641D04654025600.1.dr | String found in binary or memory: http://secure.globalsign.com/cacert/codesigningrootr45.crt |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://secure.globalsign.com/cacert/codesigningrootr45.crt0A |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://secure.globalsign.com/cacert/gsgccr45evcodesignca2020.crt0? |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://t1.symcb.com/ThawtePCA.crl0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://t2.symcb.com0 |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: http://test.com |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://tl.symcb.com/tl.crl0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://tl.symcb.com/tl.crt0 |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://tl.symcd.com0& |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, NVIDIA Notification.exe.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: http://www.digicert.com/CPS0 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: http://www.entrust.net/rpa03 |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://www.microsoft.co |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1719B000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367626962.000002AD1967C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284821484.000002AD195B2000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://x1.c.lencr.org/0 |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1719B000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367626962.000002AD1967C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195B0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284821484.000002AD195B2000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: http://x1.i.lencr.org/0 |
Source: NVIDIA Notification.exe, 00000004.00000003.2160486051.000002AD18D10000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://%s/%s/%sendcahttps://%s.pinrules.crt/%sRetrieveValidatestaple:OcspGetOcspPostOcspFailoverExp |
Source: explorer.exe, 00000006.00000000.2295377209.000000000C4DC000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000003.3096376389.000000000C547000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3381041865.000000000C4DC000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://activity.windows.com/UserActivity.ReadWrite.CreatedByAppcrobat.exe |
Source: explorer.exe, 00000006.00000002.3368085367.00000000076F8000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2289597745.00000000076F8000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://android.notify.windows.com/iOS |
Source: explorer.exe, 00000006.00000000.2289597745.0000000007637000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3368085367.0000000007637000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://api.msn.com/v1/News/Feed/Windows?apikey=qrUeHGGYvVowZJuHA3XaH0uUvg1ZJ0GUZnXk3mxxPF&ocid=wind |
Source: explorer.exe, 00000006.00000003.3096920537.00000000035FA000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2288467195.00000000035FA000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3366290986.00000000035FA000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://arc.msn.coml |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com/ |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/ |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/YV |
Source: NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1714C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/detoxik.php |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/oxik.php |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/oxik.phpqy |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://dimidroli.com:7999/oxik.php~j |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com/ |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com/%W7 |
Source: NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1717A000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/ |
Source: NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17107000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000003.2284837013.000002AD1714C000.00000004.00000020.00020000.00000000.sdmp, NVIDIA Notification.exe, 00000004.00000002.3364770115.000002AD17145000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/detoxik.php |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/detoxik.php-W |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/detoxik.phpCT |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/detoxik.phpaV |
Source: NVIDIA Notification.exe, 00000004.00000002.3367444627.000002AD195A0000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://domskufidona.com:7999/detoxik.phpmV |
Source: explorer.exe, 00000006.00000003.3097934264.0000000009C21000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B96000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000003.3094549832.0000000009B96000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009B96000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://excel.office.com |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C81C000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/ |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/5163 |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/G |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C806000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.00000000099C0000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3385242431.000000000C954000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3386190217.000000000E54E000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/ |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/( |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/.dlle |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/5N |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/MenuArray_211928 |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009B41000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/dll |
Source: explorer.exe, 00000006.00000002.3386190217.000000000E54E000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/test/p |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://horetimodual.com/w |
Source: NVIDIA Notification.exe, 00000004.00000003.2187945112.000002AD19350000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://http:///WopiFrame.aspx? |
Source: explorer.exe, 00000006.00000002.3371568894.0000000009C96000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000003.3095864327.0000000009C92000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000003.3094549832.0000000009B96000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000000.2292351623.0000000009B96000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://outlook.com |
Source: explorer.exe, 00000006.00000000.2295377209.000000000C460000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3381041865.000000000C460000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://powerpoint.office.comcember |
Source: wscript.exe, 00000000.00000003.2155667898.000001E5E4E41000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059963773.000001E5E4F89000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000002.2159095038.000001E5E4F2A000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059915765.000001E5E4F89000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059739506.000001E5E4F7F000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059842625.000001E5E4F89000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2156325419.000001E5E4F29000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059598394.000001E5E4F8D000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2154834081.000001E5E559E000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2059804702.000001E5E4F89000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://streameqst.live/calma.php |
Source: wscript.exe, 00000000.00000003.2155996859.000001E5E4F26000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2155667898.000001E5E4E41000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000002.2159020526.000001E5E4F27000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2157281400.000001E5E4F27000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://streameqst.live/calma.php%= |
Source: ~DF8DC5CFD1594AA996.TMP.1.dr, ~DFA98222D31730BED6.TMP.1.dr, ~DFA825109037B3B642.TMP.1.dr, ~DF436A4AB611BAE051.TMP.1.dr, ~DF696240437B048E25.TMP.1.dr, inprogressinstallinfo.ipi.1.dr | String found in binary or memory: https://streameqst.live/calma.php0 |
Source: ~DF6E36B2C392B216EA.TMP.1.dr | String found in binary or memory: https://streameqst.live/calma.php2056014544311630860 |
Source: wscript.exe, 00000000.00000003.2155996859.000001E5E4F26000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2155667898.000001E5E4E41000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000002.2159095038.000001E5E4F2A000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2156325419.000001E5E4F29000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://streameqst.live/calma.phpE6qA |
Source: wscript.exe, 00000000.00000003.2156426809.000001E5E3054000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000002.2158668800.000001E5E305E000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2157369304.000001E5E305D000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2156104046.000001E5E304E000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://streameqst.live/calma.phpined |
Source: MSI28B1.tmp.1.dr | String found in binary or memory: https://streameqst.live/dort.phpAI_DOWNGRADE4010AI_DpiContentScaleDpiContentScaleAI_EnableDebugLogEn |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C81C000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/ |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/122658-3693405117-2476756634-1003NT9 |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/Microsoft |
Source: explorer.exe, 00000006.00000002.3385871043.000000000C9F9000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/S |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C81C000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3385242431.000000000C954000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/test/ |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C81C000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/test/L7 |
Source: explorer.exe, 00000006.00000002.3385242431.000000000C954000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/test/S |
Source: explorer.exe, 00000006.00000002.3383830644.000000000C862000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://tynifinilam.com/test/eSP |
Source: explorer.exe, 00000006.00000000.2292351623.00000000099C0000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.00000000099C0000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://wns.windows.com/)s |
Source: explorer.exe, 00000006.00000000.2292351623.00000000099C0000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000006.00000002.3371568894.00000000099C0000.00000004.00000001.00020000.00000000.sdmp | String found in binary or memory: https://word.office.comon |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: https://www.advancedinstaller.com |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: https://www.digicert.com/CPS0 |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: https://www.entrust.net/rpa0 |
Source: libcef.dll.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: https://www.globalsign.com/repository/0 |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://www.modern.ie/Umbraco/Api/CompatIssueApi/PostCompatIssue |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://www.modern.ie/Umbraco/Api/CompatIssueApi/PostCompatIssue?version=2 |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://www.modern.ie/umbraco/api/readingviewissues/postreadingviewissue |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://www.msn.cn/spartan/ientp?locale%3D%25s%26market%3D%25s%26enableregulatorypsm%3D%25d%26enable |
Source: NVIDIA Notification.exe, 00000004.00000003.2183681340.000002AD18E60000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: https://www.msn.com/spartan/ientp?locale%3D%25s%26market%3D%25s%26enableregulatorypsm%3D%25d%26enabl |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: https://www.thawte.com/cps0/ |
Source: MSIB6CB.tmp.1.dr, MSIB62D.tmp.1.dr, MSIB68C.tmp.1.dr, MSIB6EB.tmp.1.dr, MSIBA38.tmp.1.dr, MSI28B1.tmp.1.dr | String found in binary or memory: https://www.thawte.com/repository0W |
Source: NVIDIA Notification.exe.1.dr | String found in binary or memory: https://www.youtube.com/watch |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF6079F5788 | 4_2_00007FF6079F5788 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF60784E710 | 4_2_00007FF60784E710 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF607854510 | 4_2_00007FF607854510 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF60785C4FA | 4_2_00007FF60785C4FA |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF6078AF450 | 4_2_00007FF6078AF450 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF607A0543C | 4_2_00007FF607A0543C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF607976088 | 4_2_00007FF607976088 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF6079E4DA0 | 4_2_00007FF6079E4DA0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF607850C52 | 4_2_00007FF607850C52 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF60787ACA0 | 4_2_00007FF60787ACA0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF6078C5BD0 | 4_2_00007FF6078C5BD0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF60785EAD1 | 4_2_00007FF60785EAD1 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A740C364 | 4_2_00007FF8A740C364 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E4C80 | 4_2_00007FF8A73E4C80 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A747E864 | 4_2_00007FF8A747E864 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74328BC | 4_2_00007FF8A74328BC |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74158EC | 4_2_00007FF8A74158EC |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74058A0 | 4_2_00007FF8A74058A0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7581740 | 4_2_00007FF8A7581740 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7423720 | 4_2_00007FF8A7423720 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A741B674 | 4_2_00007FF8A741B674 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E6670 | 4_2_00007FF8A73E6670 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7425610 | 4_2_00007FF8A7425610 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74046E4 | 4_2_00007FF8A74046E4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74646F4 | 4_2_00007FF8A74646F4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7437680 | 4_2_00007FF8A7437680 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73EB6A0 | 4_2_00007FF8A73EB6A0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A747C53C | 4_2_00007FF8A747C53C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7587570 | 4_2_00007FF8A7587570 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A758B514 | 4_2_00007FF8A758B514 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73FA5B4 | 4_2_00007FF8A73FA5B4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73F446C | 4_2_00007FF8A73F446C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7419434 | 4_2_00007FF8A7419434 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74244E4 | 4_2_00007FF8A74244E4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7466498 | 4_2_00007FF8A7466498 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7577364 | 4_2_00007FF8A7577364 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7582330 | 4_2_00007FF8A7582330 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E6390 | 4_2_00007FF8A73E6390 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74BD3AC | 4_2_00007FF8A74BD3AC |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7413264 | 4_2_00007FF8A7413264 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7429230 | 4_2_00007FF8A7429230 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74262D4 | 4_2_00007FF8A74262D4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E82F0 | 4_2_00007FF8A73E82F0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7405284 | 4_2_00007FF8A7405284 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E6140 | 4_2_00007FF8A73E6140 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73FA15C | 4_2_00007FF8A73FA15C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A749B114 | 4_2_00007FF8A749B114 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A741812C | 4_2_00007FF8A741812C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74C0118 | 4_2_00007FF8A74C0118 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74121E8 | 4_2_00007FF8A74121E8 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73ED048 | 4_2_00007FF8A73ED048 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A741C06C | 4_2_00007FF8A741C06C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A742D060 | 4_2_00007FF8A742D060 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E30C0 | 4_2_00007FF8A73E30C0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73E8B50 | 4_2_00007FF8A73E8B50 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7427F70 | 4_2_00007FF8A7427F70 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A744BFCC | 4_2_00007FF8A744BFCC |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7461FC4 | 4_2_00007FF8A7461FC4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A747EE20 | 4_2_00007FF8A747EE20 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7422D50 | 4_2_00007FF8A7422D50 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74A6D10 | 4_2_00007FF8A74A6D10 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7423D00 | 4_2_00007FF8A7423D00 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73EADD0 | 4_2_00007FF8A73EADD0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7420C6C | 4_2_00007FF8A7420C6C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7429BF8 | 4_2_00007FF8A7429BF8 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7587B5C | 4_2_00007FF8A7587B5C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74BEB44 | 4_2_00007FF8A74BEB44 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73EBB00 | 4_2_00007FF8A73EBB00 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A746FBF4 | 4_2_00007FF8A746FBF4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7411B9C | 4_2_00007FF8A7411B9C |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A7578A44 | 4_2_00007FF8A7578A44 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A73EDA74 | 4_2_00007FF8A73EDA74 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A74DDADC | 4_2_00007FF8A74DDADC |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00007FF8A741F9B4 | 4_2_00007FF8A741F9B4 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00000003A648EFF0 | 4_2_00000003A648EFF0 |
Source: C:\Users\user\AppData\Roaming\nvidia\NVIDIA Notification.exe | Code function: 4_2_00000003A648E0A1 | 4_2_00000003A648E0A1 |
Source: C:\Windows\explorer.exe | Code function: 6_2_08381A7C | 6_2_08381A7C |
Source: C:\Windows\explorer.exe | Code function: 6_2_08381A8C | 6_2_08381A8C |
Source: C:\Windows\explorer.exe | Code function: 6_2_08382164 | 6_2_08382164 |