ID: 260417 Cookbook: browseurl.jbs Time: 11:19:18 Date: 10/08/2020 Version: 29.0.0 Ocean Jasper Table of Contents

Table of Contents 2 Analysis Report http://incels.co 4 Overview 4 General Information 4 Detection 4 Signatures 4 Classification 4 Startup 4 Malware Configuration 4 Yara Overview 4 Sigma Overview 4 Signature Overview 4 Mitre Att&ck Matrix 5 Behavior Graph 5 Screenshots 6 Thumbnails 6 Antivirus, Machine Learning and Genetic Malware Detection 7 Initial Sample 7 Dropped Files 7 Unpacked PE Files 7 Domains 7 URLs 7 Domains and IPs 8 Contacted Domains 8 Contacted URLs 8 URLs from Memory and Binaries 8 Contacted IPs 10 Public 10 General Information 11 Simulations 12 Behavior and APIs 12 Created / dropped Files 12 Static File Info 42 No static file info 42 Network Behavior 42 Network Port Distribution 42 TCP Packets 42 UDP Packets 44 DNS Queries 45 DNS Answers 45 HTTP Request Dependency Graph 46 HTTP Packets 46 HTTPS Packets 46 Code Manipulations 47 Statistics 47 Behavior 47 System Behavior 47 Analysis Process: iexplore.exe PID: 6856 Parent PID: 800 47 General 47 File Activities 47 Registry Activities 48 Analysis Process: iexplore.exe PID: 6904 Parent PID: 6856 48 General 48 File Activities 48 Registry Activities 48

Copyright null 2020 Page 2 of 48 Disassembly 48

Copyright null 2020 Page 3 of 48 Analysis Report http://incels.co

Overview

General Information Detection Signatures Classification

Sample URL: incels.co HHTTMLL tttiiitttlllee ddooeess nnoottt maatttcchh UURRLL Analysis ID: 260417 HTML title does not match URL Most interesting Screenshot: HTML title does not match URL

Ransomware

Miner Spreading

mmaallliiiccciiioouusss

malicious

Evader

sssuusssppiiiccciiioouusss Score: 0 suspicious

cccllleeaann Range: 0 - 100 clean

Exploiter Banker Whitelisted: false Confidence: 80%

Spyware Trojan / Bot

Adware

Startup

System is w10x64 iexplore.exe (PID: 6856 cmdline: 'C:\Program Files\ Explorer\iexplore.exe' -Embedding MD5: 6465CB92B25A7BC1DF8E01D8AC5E7596) iexplore.exe (PID: 6904 cmdline: 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6856 CREDAT:17410 /prefetch:2 MD5: 071277CC2E3DF41EEEA8013E2AB58D5A) cleanup

Malware Configuration

No configs have been found

Yara Overview

No yara matches

Sigma Overview

No Sigma rule has matched

Signature Overview

Copyright null 2020 Page 4 of 48 • Phishing • Networking • System Summary

Click to jump to signature section

There are no malicious signatures, click here to show all signatures .

Mitre Att&ck Matrix

Command Remote Initial Privilege Defense Credential Lateral and Network Service Access Execution Persistence Escalation Evasion Access Discovery Movement Collection Exfiltration Control Effects Effects Impact Valid Windows Path Process Masquerading 1 OS File and Remote Data from Exfiltration Encrypted Eavesdrop on Remotely Modify Accounts Management Interception Injection 1 Credential Directory Services Local Over Other Channel 2 Insecure Track Device System Instrumentation Dumping Discovery 1 System Network Network Without Partition Medium Communication Authorization Default Scheduled Boot or Boot or Process LSASS Application Remote Data from Exfiltration Non- Exploit SS7 to Remotely Device Accounts Task/Job Logon Logon Injection 1 Memory Window Desktop Removable Over Application Redirect Phone Wipe Data Lockout Initialization Initialization Discovery Protocol Media Bluetooth Layer Calls/SMS Without Scripts Scripts Protocol 2 Authorization Domain At (Linux) Logon Script Logon Obfuscated Files Security Query SMB/Windows Data from Automated Application Exploit SS7 to Obtain Delete Accounts (Windows) Script or Information Account Registry Admin Shares Network Exfiltration Layer Track Device Device Device (Windows) Manager Shared Protocol 3 Location Cloud Data Drive Backups Local At (Windows) Logon Script Logon Binary Padding NTDS System Distributed Input Scheduled Ingress SIM Card Carrier Accounts (Mac) Script Network Component Capture Transfer Tool Swap Billing (Mac) Configuration Object Model Transfer 1 Fraud Discovery

Behavior Graph

Copyright null 2020 Page 5 of 48 Hide Legend Behavior Graph Legend: ID: 260417 Process URL: http://incels.co Signature Startdate: 10/08/2020 Created File Architecture: WINDOWS DNS/IP Info Score: 0 Is Dropped

Is Windows Process

Number of created Registry Values

incels.co started Number of created Files

Visual Basic

Delphi

iexplore.exe Java .Net C# or VB.NET

C, C++ or other language 13 87 Is malicious

Internet started

iexplore.exe

6 340

cs491.wac.edgecastcdn.net incels.co

192.229.233.25, 443, 49724, 49725 104.24.113.146, 443, 49717, 49718 4 other IPs or domains EDGECASTUS CLOUDFLARENETUS United States United States

Screenshots

Thumbnails This section contains all screenshots as thumbnails, including those not shown in the slideshow.

Copyright null 2020 Page 6 of 48 Antivirus, Machine Learning and Genetic Malware Detection

Initial Sample

No Antivirus matches

Dropped Files

No Antivirus matches

Unpacked PE Files

No Antivirus matches

Domains

No Antivirus matches

URLs

Source Detection Scanner Label Link www.wikipedia.com/ 0% URL Reputation safe www.wikipedia.com/ 0% URL Reputation safe

Copyright null 2020 Page 7 of 48 Domains and IPs

Contacted Domains

Name IP Active Malicious Antivirus Detection Reputation incels.co 104.24.113.146 true false unknown cs491.wac.edgecastcdn.net 192.229.233.25 true false high platform.twitter.com unknown unknown false high

Contacted URLs

Name Malicious Antivirus Detection Reputation incels.co/ false unknown

URLs from Memory and Binaries

Name Source Malicious Antivirus Detection Reputation https://incels.co/forums/offtRoot {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://theporndude.com/R ~DF27B7031CDF0F00E2.TMP.1.dr false high https://incel.blog/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/foru {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/what {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incel.blog/re {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/forums/offt {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/threads/rules-terminology-and- {204245A9-DB36-11EA-90E5-ECF4B false unknown faq.799/~Rules BEA1588}.dat.1.dr https://incels.co/ Y2UXKYG3.htm.2.dr false unknown https://incels.co/forums/offtopic.4/page-2j ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://embed.redditmedia.com/widgets/platform.js core-compiled[1].js.2.dr false high https://incels.co/threads/rules-terminology-and-faq.799/ rules-terminology-and-faq[1].htm.2.dr false unknown https://fontawesome.com css[1].css.2.dr false high https://incels.co/thre {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/login/registerb ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co offtopic[1].htm.2.dr, {204245A9-DB36- false unknown 11EA-90E5-ECF4BBEA1588}.dat.1.dr https://incels.co/logi {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://raw.githubusercontent.com/stefanpenner/es6- widgets[1].js.2.dr false unknown promise/master/LICENSE https://incel.blog/reads/rules-terminology-and-faq.799/ ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co/logo/fav32.png imagestore.dat.2.dr false unknown https://embedr.flickr.com/assets/client-code.js core-compiled[1].js.2.dr false high https://github.com/timdown/rangyinputs vendor-compiled[1].js.2.dr false high https://github.com/Audentio/xf2theme- offtopic[1].htm.2.dr false high issues/issues/1055 https://incels.co/forums/offt3626 {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr www.reddit.com/ msapplication.xml5.1.dr false high https://incels.co/members/ members[1].htm.2.dr false unknown https://incels.wiki offtopic[1].htm.2.dr false unknown https://incels.co/F {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/members/posts/1152517/ ~DF27B7031CDF0F00E2.TMP.1.dr false unknown ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co/members/posts/1152517/s://incels.co/member s/ https://incels.co/forums/offtopic.4/VOffTopic {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr leafo.net vendor-compiled[1].js.2.dr false high https://incels.co/whats-new/posts/1152517/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr, 1152517[1].htm.2.dr, ~DF27B7031CDF0F00E2.TMP.1.dr

Copyright null 2020 Page 8 of 48 Name Source Malicious Antivirus Detection Reputation https://theporndude.com/ {204245A9-DB36-11EA-90E5-ECF4B false high BEA1588}.dat.1.dr https://incel.blog offtopic[1].htm.2.dr false unknown https://incels.co/threads/rules-terminology-and-fRoot {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incel.bloj {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://github.com/marioizquierdo/jquery.serializeJSON vendor-compiled[1].js.2.dr false high https://incels.co/forums/the-sewers.22/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr, ~DF27B7031C DF0F00E2.TMP.1.dr https://schema.org/BreadcrumbList offtopic[1].htm.2.dr false high https://incels.co/login/register {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr, register[1].htm.2.dr, ~DF27B7031CDF0F00E2.TMP.1.dr https://incels.co/whats-new/posts/1152517/XNew {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://looksmax.me rules-terminology-and-faq[1].htm.2.dr false unknown https://twitter.com/IncelsCo Y2UXKYG3.htm.2.dr, rules-terminology- false high and-faq[1].htm.2.dr https://incels.co/#inc {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://schema.org/ListItem offtopic[1].htm.2.dr false high https://incels.co/Root {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://connect.facebook.net/ core-compiled[1].js.2.dr false high https://incels.co/forums/offtopic.4/page- ~DF27B7031CDF0F00E2.TMP.1.dr false unknown 2bcdefghijklmnopqrstuvwxyz https://twitter.com/incelsco offtopic[1].htm.2.dr false high https://incels.co/login/registerVRegister {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://theporndude.co {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr www.opensource.org/licenses/mit-license.php) vendor-compiled[1].js.2.dr false high https://incels.co/help/privacy-policy/ rules-terminology-and-faq[1].htm.2.dr false unknown https://incels.co/attachments/1597001676169- i-dont-really-like-meat[1].htm.2.dr false unknown jpeg.311044/ www.youtube.com/ msapplication.xml8.1.dr false high https://backs.keycaptcha.com/swfs/cap.js captcha.min[1].js.2.dr false high https://incels.wiki/ads/rules-terminology-and-faq.799/ ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co/threads/i-dont-really-like-meat.230348/ i-dont-really-like-meat[1].htm.2.dr, ~DF false unknown 27B7031CDF0F00E2.TMP.1.dr https://incels.wiki/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr www.amazon.com/ msapplication.xml.1.dr false high https://incels.co/login/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr, login[1].htm.2.dr https://zenorocha.github.io/clipboard.js vendor-compiled[1].js.2.dr false unknown www.twitter.com/ msapplication.xml6.1.dr false high https://incels.co/#incels.1ster ~DF27B7031CDF0F00E2.TMP.1.dr false unknown www.opensource.org/licenses/gpl-license.php) vendor-compiled[1].js.2.dr false high https://incels.co/threads/i-dont-really-like-meat.230348/vI {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://www.themehouse.com/? offtopic[1].htm.2.dr false high utm_source=incels.co&utm_medium=xf2product&utm_campai gn=product_branding https://platform.twitter.com/widgets.js core-compiled[1].js.2.dr false high https://fontawesome.com/license css[1].css.2.dr false high https://incels.co/memb {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr www.jacklmoore.com/autosize vendor-compiled[1].js.2.dr false high https://incels.co/forums/offtopic.4/page-2 page-2[1].htm.2.dr, ~DF27B7031 false unknown CDF0F00E2.TMP.1.dr https://incels.co/styles/default/xenforo/bell.png offtopic[1].htm.2.dr false unknown https://incels.co/#incels.1sterg ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co/forums/the-sewers.22/page-2 ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://schema.org/Person i-dont-really-like-meat[1].htm.2.dr false high https://incels.co/forums/offtopic.4/0 ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://incels.co/forums/the-sewers.22/ZThe {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/attachments/311044/ i-dont-really-like-meat[1].htm.2.dr false unknown Copyright null 2020 Page 9 of 48 Name Source Malicious Antivirus Detection Reputation www.nytimes.com/ msapplication.xml4.1.dr false high https://incels.co/forums/the-sewers.22/page-2ZThe {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/forums/the-sewers.22/p ~DF27B7031CDF0F00E2.TMP.1.dr false unknown https://github.com/dbushell/Pikaday vendor-compiled[1].js.2.dr false high https://incels.co/threads/information-and- rules-terminology-and-faq[1].htm.2.dr false unknown resources.78871/ sachinchoolur.github.io/lightGallery/ css[1].css2.2.dr false unknown https://incels.co/#incels.1 {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/logo/logo.png offtopic[1].htm.2.dr false unknown https://incels.co/data/avatars/h/11/11001.jpg? i-dont-really-like-meat[1].htm.2.dr false unknown 1532404328 https://incels.co/forums/offtopic.4/page-2VOffTopic {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://incels.co/threads/rules-terminology-and-fand- {204245A9-DB36-11EA-90E5-ECF4B false unknown faq.799/ BEA1588}.dat.1.dr https://incels.co/forums/offtopic.4/ {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr, ~DF27B7031C DF0F00E2.TMP.1.dr https://incels.co/forums/offtopic.4/j ~DF27B7031CDF0F00E2.TMP.1.dr false unknown briancherne.github.io/jquery-hoverIntent/ jquery.hoverIntent.min[1].js.2.dr false unknown https://www.redditstatic.com/comment-embed.js core-compiled[1].js.2.dr false high https://incels.co/threads/rules-on-ban-appeals.15066/ Y2UXKYG3.htm.2.dr, rules-terminology- false unknown and-faq[1].htm.2.dr https://incels.co/members/dNotable {204245A9-DB36-11EA-90E5-ECF4B false unknown BEA1588}.dat.1.dr https://platform.instagram.com/ core-compiled[1].js.2.dr false high www.wikipedia.com/ msapplication.xml7.1.dr false URL Reputation: safe unknown URL Reputation: safe

Contacted IPs

No. of IPs < 25%

25% < No. of IPs < 50% 50% < No. of IPs < 75%

75% < No. of IPs

Public

IP Country Flag ASN ASN Name Malicious 192.229.233.25 United States 15133 EDGECASTUS false 104.24.113.146 United States 13335 CLOUDFLARENETUS false

Copyright null 2020 Page 10 of 48 General Information

Joe Sandbox Version: 29.0.0 Ocean Jasper Analysis ID: 260417 Start date: 10.08.2020 Start time: 11:19:18 Joe Sandbox Product: CloudBasic Overall analysis duration: 0h 6m 58s Hypervisor based Inspection enabled: false Report type: light Cookbook file name: browseurl.jbs Sample URL: incels.co Analysis system description: w10x64 Windows 10 64 bit v1803 with Office Professional Plus 2016, IE 11, Adobe Reader DC 19, Java 8 Update 211 Number of analysed new started processes analysed: 19 Number of new started drivers analysed: 0 Number of existing processes analysed: 0 Number of existing drivers analysed: 0 Number of injected processes analysed: 0 Technologies: HCA enabled EGA enabled AMSI enabled Analysis Mode: default Analysis stop reason: Timeout Detection: CLEAN Classification: clean0.win@3/314@3/2 Cookbook Comments: Adjust boot time Enable AMSI Browsing link: https://incels.co/ Browsing link: https://incels.co/whats-new/posts/ Browsing link: https://incels.co/members/ Browsing link: https://incels.co/threads/rules- terminology-and-faq.799/ Browsing link: https://incel.blog/ Browsing link: https://incels.wiki/ Browsing link: https://theporndude.com/ Browsing link: https://incels.co/login/ Browsing link: https://incels.co/login/register Browsing link: https://incels.co/#incels.1 Browsing link: https://incels.co/forums/the- sewers.22/

Copyright null 2020 Page 11 of 48 Warnings: Show All Exclude process from analysis (whitelisted): MpCmdRun.exe, audiodg.exe, BackgroundTransferHost.exe, ielowutil.exe, WMIADAP.exe, backgroundTaskHost.exe, SgrmBroker.exe, conhost.exe, svchost.exe TCP Packets have been reduced to 100 Created / dropped Files have been reduced to 100 Excluded IPs from analysis (whitelisted): 23.39.70.39, 216.58.215.234, 172.217.168.42, 172.217.168.67, 23.54.113.104, 51.104.139.180, 152.199.19.161, 8.253.207.120, 8.248.113.254, 8.253.204.120, 8.241.126.121, 67.27.157.126, 23.10.249.43, 23.10.249.26, 52.155.217.156 Excluded domains from analysis (whitelisted): gstaticadssl.l..com, arc.msn.com.nsatc.net, fs-wildcard.microsoft.com.edgekey.net, fs- wildcard.microsoft.com.edgekey.net.globalredir.aka dns.net, a1449.dscg2.akamai.net, arc.msn.com, e11290.dspg.akamaiedge.net, iecvlist.microsoft.com, db5eap.displaycatalog.md.mp.microsoft.com.akadn s.net, go.microsoft.com, audownload.windowsupdate.nsatc.net, displaycatalog.mp.microsoft.com, auto.au.download.windowsupdate.com.c.footprint.n et, img-prod-cms-rt-microsoft-com.akamaized.net, prod.fs.microsoft.com.akadns.net, au-bg- shim.trafficmanager.net, displaycatalog- europeeap.md.mp.microsoft.com.akadns.net, fonts.googleapis.com, fs.microsoft.com, ajax.googleapis.com, fonts.gstatic.com, ie9comview.vo.msecnd.net, displaycatalog.md.mp.microsoft.com.akadns.net, e1723.g.akamaiedge.net, ctldl.windowsupdate.com, go.microsoft.com.edgekey.net, wac.apr- 8315.edgecastdns.net, cs9.wpc.v0cdn.net Report size exceeded maximum capacity and may have missing behavior information. Report size exceeded maximum capacity and may have missing network information. Report size getting too big, too many NtCreateFile calls found. Report size getting too big, too many NtDeviceIoControlFile calls found.

Simulations

Behavior and APIs

No simulations

Created / dropped Files

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\W4BIB58S\incels[1].xml Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: ASCII text, with very long lines, with no line terminators Size (bytes): 20563 Entropy (8bit): 5.014155367440874 Encrypted: false MD5: CB3975848B96BF6BA3F9857EEBBCCAEB SHA1: B0EACAF699AF6535D69E3045D20B475832929C33 SHA-256: 8A4F37CE1A1CCCFF629050A5FAD6815BAD63D51B6A95694D7506C44661AFE4EF SHA-512: A451162252268F052669E1661DAC46063E2F259C64171D8F1069ACCF2BC971F08A5CCA1484E2449D14AB54050084A26DF71A1BF5A29CFAF8E695FDCB27C6230C Malicious: false Reputation: low

Copyright null 2020 Page 12 of 48 C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\W4BIB58S\incels[1].xml Preview: ..0xf7ba1b59,0x01d66f420x f7ba1b59,0x01d66f42....0xf7ba1b59,0x01d66f420 xf7ba1b59,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 653 Entropy (8bit): 5.136636593331645 Encrypted: false MD5: 04107C7344917755963F6FEBBE6CECD8 SHA1: 87791BDB8A64F85EBADDB287110CA57C9C5CC93C SHA-256: A839CD69C7E958912A17FA421580326E4214752BCAA0572E7D670275125E8A9A SHA-512: 2DFF91A2B089FCB7C49BBD7B11BE2B4F0235C5E399F107FC3A2D04FB16F47511908CCA3D4F3DC9C20995E83EC6B2C20913A8E741E5362E9E05B92A61E3F42AE E Malicious: false Reputation: low Preview: ..0xf76b6dd2,0x01d66f420xf76b6dd2,0x01d66f42....0xf76b6dd2,0x01d66f420xf 76dd02e,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 662 Entropy (8bit): 5.154778919351062 Encrypted: false MD5: 06149318F599F827E88902EC7471AA90 SHA1: 07B165CCC14301BA5135CED5ADD4E22E63166E97 SHA-256: 208C3884D6B007945FF2000939E5BF32AEC71C093682B62F55CE494BE514790E SHA-512: 968E1B3FD72D677F2A600B406D5C7D24D374C96500A0F24736795993908870804ABAA0B70B32527FE2501C67A340DB7D25D7DD6985607FD58C328C000AA38757 Malicious: false Reputation: low Preview: ..0xf7ba1b59,0x01d66f42 0xf7ba1b59,0x01d66f42....0xf7ba1b59,0x01d66f420xf7ba1b59,0x01d66f42..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 410 Entropy (8bit): 5.157960056374226 Encrypted: false MD5: 44C1C90C616138390E23FAA40E0D3BA2 SHA1: 559C1BA1764924F7CA23A734A95CA8D6EF2A1DBC SHA-256: 8F3D09AD665893791A88160D5C98DEA5FD83B419BF0641401EFCBFAAA016E968 SHA-512: E770B29C6D001C96C4FE5A0AA6D60961A26F4F662B70AB206B14EB5885EF723486479DE0C78A9367D745CB21E96CAC48855D88677F54F75A5F44BD2A4B84BB02 Malicious: false Reputation: low Preview: ..0x259f0d0f,0x01 d52d140xf76dd02e,0x01d66f42\lowres.png..

Copyright null 2020 Page 14 of 48 C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 647 Entropy (8bit): 5.14235538681949 Encrypted: false MD5: 85B642BAA9F3FA7527C3FE9E2CD8CECE SHA1: EC154F379AD9FC34D17671721D13634274C43DEF SHA-256: 540863612A93512BDC1E02BCFA974B2A3C4FA860AECC0C20E8D384F17042079A SHA-512: 0192726DF3643B69916F582046B4D265395A3695F9AFA78716458D489204139E71AAEBD9B76765C3F28FB4F0C6E4538BAEF11E57F391BAD26E57CC9FA8BCFB32 Malicious: false Reputation: low Preview: ..0xf7b2f467,0x01d66f420xf7b 2f467,0x01d66f42....0xf7b2f467,0x01d66f420xf7b2f467,0x01d6 6f42..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 656 Entropy (8bit): 5.1628009147394724 Encrypted: false MD5: 7AC1C711713174309C55FC3E61FC3466 SHA1: B26A4CCE9FCDB75F091876D62AE80DFBCF56D07E SHA-256: BCB4FD77A59580482AE092D07E1848B754AB3BB1F1E26E9C2F28DEA1817AAA6E SHA-512: A68BCB9505809F00677113163FED2F171C520C578A07B327044041FFB8B09E2446F94DFE5CCB1F4C2EA3C4930DA59CD815611E6FF62E7E66CFCC218B63E18A44 Malicious: false Reputation: low Preview: ..0xf7ba1b59,0x01d66f42< accdate>0xf7ba1b59,0x01d66f42....0xf7ba1b59,0x01d66f420 xf7bc7db4,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 653 Entropy (8bit): 5.131241430556792 Encrypted: false MD5: FD439666CFE1BD225039F551AC2A7E07 SHA1: 86E98625A54A829BA13C3ADC08F17CA2527D0E96 SHA-256: 9539FCC9A365223C106128A6F4270FCA31FC6D91E2EA4993D5F6402F89762660 SHA-512: C6D66FBA71BE1FC70A57AD15C3BE5B631CB99D3847E26A3247438A561798C3F424DC99B5968CF397AFFBBADF0592DAA96EBB5BB9D0A1FEEC05FDC111631DF D53 Malicious: false Reputation: low Preview: ..0xf7b7b910,0x01d66f420xf 7b7b910,0x01d66f42....0xf7b7b910,0x01d66f420xf 7b7b910,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 656 Entropy (8bit): 5.171559653374907 Encrypted: false MD5: 0A5894E0945BC858C1ECD3073751FD98 SHA1: 1618F44351B1C540B77184E0F2E3B7B3AC315DDD SHA-256: E9C1DC215A185EBE8571E2435A87F8E1456F2AC8F5E0B928789382E06D6195FD SHA-512: 8C6CEC597E1FCDAD17EC3457C01AC91763EA195D15532D7167BE8B1C781F4CE69699E5B3F9B4101FC0878097097DAC016DB44E218F3503FD30E3942585B78903 Malicious: false Reputation: low

Copyright null 2020 Page 15 of 48 C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml Preview: ..0xf7b2f467,0x01d66f42< accdate>0xf7b2f467,0x01d66f42....0xf7b2f467,0x01d66f420 xf7b7b910,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 659 Entropy (8bit): 5.1335589993500435 Encrypted: false MD5: 37D416A474102C68976BDB040F698C5A SHA1: 012C1911945BA69C8D93424041299D483491BAD2 SHA-256: 8AD3023B220E43C0F8021DE2B79825577DF70579AE1C8E42B1FC56535DF5CA69 SHA-512: 01F173BDF3D7159A78681B0706307128D2C76B5214117E44D1A4911BDF374C5C21D048DB14624EE4E009CC0C3E3FF67FC86CD9A83741D1C60697A6D022657B35 Malicious: false Reputation: low Preview: ..0xf770327b,0x01d66f42 0xf770327b,0x01d66f42....0xf770327b,0x01d66f420xf770327b,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml Process: C:\Program Files\internet explorer\iexplore.exe File Type: XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators Size (bytes): 653 Entropy (8bit): 5.119226675227135 Encrypted: false MD5: 70C0A8F858428E23183C82F2B73AECE8 SHA1: F1B751E1B5BFD8CCB01DAD049F5F01FE72A4E109 SHA-256: D15EB56DF8839A697C19E498FFC4C2269F8ACA699E3B98A58B1FC62818AFF117 SHA-512: 421D0D72231758E37126A2D4AC8662ED1F167C172542F75F126D84F32B90678D6E72EE697EDAF8404CB2E1D928EE2F1C3DA1E7FC2966DE740246D94098CA39EF Malicious: false Reputation: low Preview: ..0xf770327b,0x01d66f420xf770327b,0x01d66f42....0xf770327b,0x01d66f420xf 770327b,0x01d66f42 ..

C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\gee00pr\imagestore.dat Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: data Size (bytes): 1385 Entropy (8bit): 7.704896582244959 Encrypted: false MD5: A9117BDB5BDDC69BCD994853ED3A428D SHA1: DB2F95D6B4A3AE654EA485B609BD4F02478E7E2F SHA-256: 77DB982A932ADD4A1C8DAE89D4B2E0A5CD58CAF403FA48FA773E24413EB671D6 SHA-512: AD091CEED7214F76C15B4F026B760113BF82D78600B97D3AA15E57A4E281889150F285D6EE8D2F742E82A7215C7DAF5DFC65FADAD1E22BCBE9C5725E47F7194 5 Malicious: false Reputation: low Preview: .h.t.t.p.s.:././.i.n.c.e.l.s...c.o./.l.o.g.o./.f.a.v.3.2...p.n.g...... PNG...... IHDR...... IDATx..V..$I...m.m.:..x..k.m.;.^...... 7.^.*....L.LP....u.MWSp...W.{[email protected].% +.~.HU..{..5..>.$)..-...... N...3g/..<..(.MRb..8...... ,:W{...... ]..mY...0,C...!...... +..V...... d...... kB.}.../_..\..3.4-..}...s...... e.\9h.L...t..2oa..\.b..?E(.^.....Y..X..s...g.._T....5o7..)~ ...*z9N...... #'[email protected]'nj...}..z3..... 819Z..J.}n...... f..7U5...... )B..0..(.y...... _>r.....~..!i*HS. :[.3....pH.\[.....LP[..}...... -....w...4~.".

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\11473[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5514 Entropy (8bit): 7.914449540983419

Copyright null 2020 Page 16 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\11473[1].jpg Encrypted: false MD5: 5F2E173595F8574B3AA01A5C173DAB1A SHA1: 791C3434F7116564E777C2C09E16D964F9B49C71 SHA-256: 37C5E5FA0ABBE2BA22C70DD3B96417210098328D41C12F538F78CE0833768609 SHA-512: 9C596BD691CEE7AD7C75663241195CB77715353B3925BC6718749523A0AF259A90C8961463BBE0EC45A94E9D58934354FC7FBF7B0F004306AED185C5C41640D6 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/11/11473.jpg?1593965738 Preview: .PNG...... IHDR...0...0.....W...... QIDATh.U..d..?....^[email protected]&....zP].F..!5#. A.$..Fw.U..56]...I.s..ii.....G...... s...K.....|...... T...{. Z0Z @...#D.X...>.(*L.....Y...|w{.v.|xq... ..bz...J.h.JH.)Y5C.!.4w...o...... m]c..s.._...-t5...... 6F...W.Wo.../.V". ..Zo.....+.$A.@...~O1)I.BW...qMM>tT.SRc...... B.t...o.A;K.y...3y.1]..T...=~....g<^....7.[K...#.y.....B.w...$...#...... |...... W....Q..B....u-.y...4..k$.ImKws..;.tEh...8..w...=..;...Q.....^4ww7l...E..m....^>.A..\..i..n=.C...... |....`Y.M}sM.i MHrG..*..Z..t2%..).>...... #....uh.1 .a.l...4O.|.Z.]...=M [email protected]&...w..._...k...s...{..-....c@.@...%(-.....k.D..=...w.OkT..{.v.D.....!....._....%.A..`D.c..%.{..o~..g...f<.....{..h.....3>...8.x...!v@P.>b....%....$...... Z18..9V".f...... ~C.#.kH\.7.j..1 ..- ...Q....`..1J.|.G...... v..CJ(.....$)..W..n...... [email protected]'.h..!M.....-../....CZF..D.A.%`.g.6..i.....#J..I.}.W....yT...... 4...... A..I...#A.+.. 9^2?;%XOhw(

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\14509[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 958 Entropy (8bit): 7.226571096147756 Encrypted: false MD5: 31A0630AFA6C5F0AC52EEB295C3E308F SHA1: 7FA366D4B02FEF03522A2F506AD100BE1A492472 SHA-256: 2358354B873B7FE4520A32B1E4F62C96371603177CC252F3484C810FE438C8DA SHA-512: D1512BCC36377B93D4F87C27F0CC6591C08472025AA664DB33098E903A7B5BCE92C4988B6323EF54888827A68DC4F8E134369536029F694EF9C503A169FDE925 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/14/14509.jpg?1589150118 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... !...1."AQq.2B..S a...... !"1A...... ?...... }K;..Q...#...7>.o.a.M...[.9..{.:.@.=...W...... dS.. W.%@...ek>..[[[email protected]...... 5.:^.m4.n,.r...... H#.....c...i.mj...z].Y...... n@m.;~.(\[email protected]`...<..;.XV%6.....{..S...2...m.*..I..'=...Z.....a..t.d.BA..0.14>.i..h...... C-..*..&\.G...)9y...... y2A. wv;.p..w.QL...... ?.#...... R.o....`...).`.Y/...... /".;..n.t(.....A\...8. .c.i.p$.....,.$..)d.H2.....T. E.yN...... H...h.aa)6...DarI.?..48z...F...iX.3...N.....%Y~.Y..K...4p..~....kA....?..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\15088[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 71025 Entropy (8bit): 7.764771496936662 Encrypted: false MD5: 0BA1722C68576C9F7C53E22368282E1D SHA1: 01AB9A4745537392AC61A25F0CE80177E8F81E2C SHA-256: 1A1E576138D49A115C896278ED4D75F6C559EB2440444ECDAA2931F50F3D9918 SHA-512: CE7FC85FCFB9C0F2CF90ED90C9E5B1EFB7D1DC8C071D6BBF6A8C6A8430ABFCAF2FE87B80A04F92B557D0C0DB3B672F1511CF20C321309C977A934A5F48C919 1E Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/15/15088.jpg?1595662521 Preview: GIF89a0.0...... %..9..$...... "..).!$.#*.+#.6%.8(.+.$.&%##$,+"%&)**+('&7+&,3$-7(4;+74);=4785.13H..R..{..x..p..L#.I(.S$.T+.U+.Z3.X6.K*.e:.g2.F,(E6,X6,C= 3H=6[:2[.-c92n1..O.9A-UJ.fF8oQ/XR+<>@Q;C6RG/{pNKBMLKDEFSMFM\AMVFTSLVXFNVUYXXLNPiZHvYC g\TnNGSeDUiFUkIYlJWgHZeVPkLibHxeIjbVec[mf\mi]fdWqf^viYrp_Z]cc]a{^g\dgcdcbfjkheqfbsldwlfusczte}zixvkilslsywwxopo...... )...!.."..).')."...... Z0.v"[email protected] U.tZ.mT.y[.|h.{f.xu.ve.g\.yn?.||.z..>..3..{..x..~..j..g..z..^.G.u.w.i.y._..w.#|}.s}.nw....+..'..#..+..)..6.....v..U..W...... !...... !..NETSCAPE2.0.....,....0.0...... #G..8.....`.8.."....d.22..."2^.`q)a....Jd8p!.r...... ,`.B..J.".y....Cq...... 9J.2.s..].v...g."....#.c.L...Ga[.M....'. 1...x$B.._(p..:.6...... u)T.S.s...2...C...$.....

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\15522[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 20273 Entropy (8bit): 7.920560279800681 Encrypted: false MD5: 657583F950A43ACF8998F9D449B5C18B SHA1: 2855B06F9E1A84290B3FAD9C79CBE6EC1D89A680 SHA-256: F3BB43F752FC4396F5A9AFF6BDA4C33091CDB65C61DC80AFF199A2FCB119227E SHA-512: B1CEBA0E74D8D6517C40A1CE022F422B0B5C40B9230F54A3E83780B7FAB870A8504E1833C41F488A322C0FFBBCDF78FC5C0AD4334883819E9354CFC3541FDC3 E Malicious: false

Copyright null 2020 Page 17 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\15522[1].jpg Reputation: low IE Cache URL: https://incels.co/data/avatars/s/15/15522.jpg?1551815398 Preview: GIF89a0.0....^LE]\^o[Um`]]ek^ltwjganu`ox`qzsy~..}.|t..w8}.fy.i{.g~.i..q}.*}.'z.)|.4}.4..>..6..7..<..5..8..=...../../..3..1..1..<..5..9..6..8..3..-..-..-..2..1..-..0..0..U..\..V..j..t..}..c..l..m..t..w ..v..C..E..J..U..E..X..J..K..Y..c..n..v..z..|..e..g..I..Z..^..`..e..~..y..,..*..8..0..W..]..D..h..{...... !...... ! ..NETSCAPE2.0.....,....0.0.....)P.@.`.....L.....^^.+..X.R...Va!..<~...B.,...bv.V...J.{g/...8.z,.e.:n...... R.S$.-.....j.,t.Z.2...2_....k....g....2..Z.J.R....R....[[email protected]{v,a.[V...... X.l=.Zj....^.Y m..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\15579[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1168 Entropy (8bit): 7.44543345755269 Encrypted: false MD5: 8D1C762F734219DB4829BE6334280F76 SHA1: 40CAA52A9F74D5C501D9682B805B9D8DEBEDB2DD SHA-256: 30B527E0CE52C2738D96EB8A71B8BC3F0A35B5E6CB8CC35A40E6271BA6931E8B SHA-512: B7EB30F3B05DFA25D07A7C86EF18499E401F1B17B4F9F4C69B810898C4A63E59BA8D34C9EC73421343403FBBEAE257CC0B142B7AE5BBC5EA200A0A12EFF1F8 36 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/15/15579.jpg?1563320183 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 1...... !1.A. .Qa."B#Rqr.23b...... !1."A...... ?..xX.+....]...<.f.<[email protected].'.YVl...kHf=..,...... "..SM~..X}LMA%..."..W.=.N.Q....M...g...H.?T.I^.J.1... o.=.T.{.? L.O.....2...4....a]..K#..Q....)...... zv.K}.Al...u.i-5`.=.7....V.1....(.mdN..UE..`r2.}Z!.`Y....7:...... d.*ezr..}..M.O....(}...... =.=Y.P..$.@S...%..P..E.pjNXn-.SToY[....*.1..P....'X.....:... e..M^..7.;..e.1\.....T.6..x?...... xxP&...... J...Z}B.c+...|t.lL..-.fy.y...... K...6._~m.....`IaL.uJP.%`n....,..m..J.@~o..!I;.v..NN..S...... d..xf..`.....E....TZ..6..w...1}.....t..iQWkv.7E.u.I. .o..$8..U..A.z.W.."5Ff*...%..X.....#.4.U.5A.i..I..AW.W..s..$.\=L...r.4...Fb\bS.S..:]l.....8...33U....yq%GV....{_l.....Lgf._s/..A.-iQ[..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\15[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 11566 Entropy (8bit): 7.926266572161736 Encrypted: false MD5: 4D99E29CBB1E0D5BE31A0CF4F8B885B2 SHA1: 9F5947DEE8618333E9C34032700D436B1C98F594 SHA-256: 164305E994D4FAF0BE82D3954083F77CD2176113629D3FD4C131D28CF8BA679E SHA-512: 6801F87CE87692C1F234788623EF5472743E57BDBD1870D4B49E3BEDEB1F153D71DEE95AC12F1CD4A935C63F4DA41B90426C221A7ED3042705C1C3D1CD9C4E4 8 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/0/15.jpg?1546474883 Preview: GIF89a0.0...... 7.&8.+/"&0%)0#'4)2?-4C.5J-6F%?W'7g_.xm.zu.N+LT+MM4HV8Do/Bk2Cx5Jr?Nj;Xx5[GBDS@FXEL[OWhKVrBQvJ[gTZqS\tCcxMkoQi}Tas\cuRnz \mrSpx[u{_ywYskHetel.y.../.e2.6N.:S.=Y.?g.FY.C\.|H.Ol.Gj.Ca.Cj.In.Uf.^o.Op.\v.Yu.Yw.Zw.Fi.Kl.Ms.Is.Sv.Tz.eq.d~.dx.cu.`..nt.g{.Jn.Lr.Oz.Ms.Py.P|.Q{.S}.`}.....)...2.:.9.,.) ...... :.S.}..s..|.d}r..l..l..c..f..j..g..u..v..}.....i..i..n..m..a..l..o..r..w..y..u..{..~..]..T..V..W..X..]..Z..]..Y..b..g..~..|..z..|..w..f..b..`..w..d..i..n..h..z..t..r..~..|..~...... !...... !..NETSCAPE2.0.....,....-.,...... H...... *\..dA.Jl...9j &NLf..3t.....)kQ.*....:jH>0.4.` ..X.4.m...?..../_:l.l4<.M...... EQ.,.y.....B."...#.m.3&....t...... [email protected]...... x.J.../6...S....:

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\16456[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 110726 Entropy (8bit): 7.544543475701504 Encrypted: false MD5: 6F8FAF84B253A74FD3C2B48DF210C4AB SHA1: A4B42521EBA052471E7DA703BFFE0AD91DF644F5 SHA-256: 7CD9A3DC25F1176E68842945958169276E5CE1C33D71A4AACCDAB5B2E7552678 SHA-512: 0D25219CF76B769F9F7D068982E8EA5F6D2CF19E162D53AEC3C7CBDF55D72C267F2CBFAAA1CDF1AA78F14CB635551C6DCFC603F352A5885AAAE2948260A5D3 32 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/16/16456.jpg?1550145807 Preview: GIF89a0.0....rrryyy}}|...... !...... ! ..NETSCAPE2.0.....,....0.0...... ;7...s...D8....h.....\-4..U.X.\.qp...6i.9.'O.kx...pz.Z..X W.Y.4hg.9c.Nj.....Z...... $O.2...-.$mK...#..s.....W.>.j....M.....Pe.sv..+.tQF..zy....U.'...X.a...... W..Q.....>

Copyright null 2020 Page 18 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\16687[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 15956 Entropy (8bit): 7.390469634168278 Encrypted: false MD5: 04EF3C62497ED09FFF1BB8433A6B342C SHA1: B236BE278BED4C4CAB4EB34E21D8A40F1E2265EB SHA-256: 6326E6CE76F91791269B9B2E0708F0D590BA561106695D681E2107C42850E741 SHA-512: 4F6B0E79A896C9B8117A6A11928B93211093994B6E145A790598B486357C9885CE81FFC2D729334D99CD866992C6B66A55846ADB70E6E65ABD785DA295A54AF2 Malicious: false Reputation: low Preview: GIF89a0.0...... #..%..%..-..'..%..(..+.....1..9 .3".;'.=+%2+*?11O..@$.C".G*.Z8.X3.@,$A/)E4-I3.]8 [<+T8&E/1F60K;6H<8W90X;;b/)a-&f>(d60l;5j<6p?:jN.^I)RB

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\17170[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1196 Entropy (8bit): 7.449846564988512 Encrypted: false MD5: 7000B052310D7FAAF4EE9BC87B77CDBB SHA1: 821EC57B5E2C6ACB6634CF0329C63E412BFC2626 SHA-256: 16F08760E009E2D0AA7B155B825E2C36390C0231A8E7DD5A076A2598500DF82F SHA-512: C5672589904A691E6760B4F1637635C19815B517BCA39BDDBBD3FC680D09591A248E81CEF455FC4830A39094C0A3D5937D44C40EB51DFEF94D54705F2AE2ECAE Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/17/17170.jpg?1550523292 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 0...... !..Q1A ."2a.Rq..3B...... %...... !.1Q"2Aaq...... ?..U...... [.qZ)_..-...L..s.^...K...=.t.qe...u...a.G.Q.u7..Io].t.n..]*[email protected].^....h.)...lY.we..._".k4 .....s&J.|...3..J....Vn...... $c....]Z.....Z..J...>O.=..P.z8^wJ^..bPV6..r@...}F..s$..d../W...8.;B. ..q.{p}...... h../j.s...... =\..|i..jVII..T.!.2..F....}.m...s0.D....q.1...j%\m#..7..,..=..jy..2..#.2 t44"..=...... #A.UY.OK.....c..L...... ^.V.Oi>..{..A.L.e.`."...j...... }...f.Z.m%b..@.".I....Ve.;@d.(...P`.....I.T..V..".VF.....:.o...#..P.....:.[)..=...f.K=...."=..C.O..2...... a.?.(V^/.).-;Fyl1.W. [email protected]...`LrE..OQ...i.Q.Pz..O.Z...N..x..S..S%.bL..#.c..\.7|..rT..D.T...Hb.)>GI...... Cg...2.eRy>...=.#.E.1...... d

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\17683[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 192 x 192, 8-bit/color RGBA, non-interlaced Size (bytes): 8192 Entropy (8bit): 7.953808649332772 Encrypted: false MD5: 4AB03955BBC48DE188BF79CFAF7D6D7B SHA1: A3C1582B73AE83C8A758D4D4EA80FD05B3A165A4 SHA-256: B24D8BA2864A172993CE649FF60DACE83D953DB37C7DE7441EFC950EE1B52D82 SHA-512: 3AEAFA3C7D94030BE795AC9496007AF66E730B1DEC520E3D423651F7415FDFFE2E6742309D66CF36C1D28FAD8BD460DB300228ABDB5E73A5362D844B0731E48 D Malicious: false Reputation: low Preview: .PNG...... IHDR...... R.l.....IDATx.....$Y~..~.k..Z.V...Gk....@a$(.x\...... r.A.....q..v.....r...... F...... :C.|.~x.UddV..p....w..'.Z...... *.....w.8.x...T....?...X.,..ZB`..4.8.&...M...... ,..q... .?....hJ..R*$..B..B.f..<..2...8.y...~..e[.../.z.?{.}...... eP ...>...... 3.....f.3..3...8.z....zxc&...... 86....Y.?.L.....jN..(>....7...o...U....9J..U=...X..D...T..sJQ.E...I.!ZB#@..LH..W...o....R1.&<.... .>.i.,._.@o...=.M.A.<..p+..dy....qpl.Z..@..\....j...E.Q.....tS5 ..0[|[email protected]...... ;.N..R.*..Jb(j.,.9...`vW...... W..>..T?.s.b..B)Q.J..J...... M.=PQ..)42.yN$2...7..[..m.\J.NF....c. \.K....H.''..._U.Y.....u..z..2.YF.....c.%B....M.BI.. .R.rL.%...... +.^n.\:?...... GU._[2.P..\.yU...... T.%...... 9cjLO.{V.C.j...W...H5g.f....B.xe0.b..E..^4.QP..V.H...... 2_x.e...dw....nsx2"W .\B.%...Ri.H..Z.&2.|. .ei.I*2..d..%.m.\8u.&..t!D.0....u.....k...:..<.l.8o...... S..V.5.H...jp.s.....jKf.L4..b/.\.:..!q.Q..;..y.0.kD. .e...... j.6...dU..(.H.2.~..).on..7_.v,.<

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\18265[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1202 Entropy (8bit): 7.446675293847401 Encrypted: false MD5: BA9A5442ACBD633C25A467FDC0C99B0E SHA1: 73CCE30C94A671235F3AB250B639241DF4DFA222 SHA-256: E2A3932BC258D1EE031DA7403C854AEB91C05378ECE4F400C099DE206A3A27ED SHA-512: E12767036D908DF264A8B3EF12B1B08894C7873A192E705FAC114FCC57F09EC3CF15F01954FF8FFD1025ABA44DD848D2D8E19E725B7D2C143E7C0990FF76D2D4 Malicious: false

Copyright null 2020 Page 19 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\18265[1].jpg Reputation: low IE Cache URL: https://incels.co/data/avatars/s/18/18265.jpg?1595602205 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 3...... !.1A..2Qaq..." #...BR...... #...... !.1A."Qa...... ?..R8.DEdE...... 0L.z.:.N..h...<....2..&...{...D)..o..4.u..j...... L..t...X..&.....z.)....tr.>....!...n-.7.p=E.>....Y.^.`..~{.8...... B.R.Q.s.No..=%.[[email protected].#u.....|..r.t...bJj..*..&.8.R.S...... D..@(.\.A....X>? V.p.a....m...e.8J^Um.eS.dbU..Tn..?^.8.f...... F.Gqk.9...... SeHOVn..rnq.&.[:...`T...... a. {..4.`...9i.W.a.5/.....

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\18638[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5300 Entropy (8bit): 7.926301207829592 Encrypted: false MD5: BB0DBA9E357663A59BA9E3A8DF3A8FC5 SHA1: C40E247E2AC320A512BE5667422218D591543EFC SHA-256: 88C2079BD036B604ADB3BF088B9E5A53E5DEAA3199265A95AB47B052C8A126FE SHA-512: 8C4953F3CED61D9F5B16CF91AE3801D467986E7131EECB6D018A455CB4AD754D26CF8FE512E3D5DC22705F836EAE3E8DDEE63DE0948292E8D0C625EEA79C0F C9 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/18/18638.jpg?1593743827 Preview: .PNG...... IHDR...0...0.....W...... {IDATh.U.W.d.u..k..*.....&L.aS...... h....5..t...;,[email protected]~.|..Y4eJ)..c.(`.....H...g...... wX.J,..\._.....T...8.....a.PU...1Fb..>0kg.Y-.\^\ PW...... U%..8..?...x...-.i..;.O..c.dP..#...... K4.r*...l.....g.x..f6C...[^.~E)...a.!...A...;l.yzq..r.....'.x.....K...)%b....O7.x..'^..c..%....@!.R..B...-.YC....bFS.....gd.~.Y-.,WK.g....r.xK.#...... ~...8c>...c6.3.=F..X...9__.Z..FQ.X.s...cq..8d....*h.i...0"X...M.0j.7-..Q!.B.B)....wt...... O...c..q8.x....Ti.w.1v\^.S.5}.S7...... R.....c,.X.....NK...YA..."... ".`.P...... *.T3RVbJ.M.Za.w.c. ...#.^....-.}G....O.^.e..s\..B...wTuM..I9.S&.i.R...... [email protected]...... 7O/...h.K....+..H.f..d.1...... G>}z...="..b.....q.Q...... _r8.9_..<.d>.3...... 0...... 6F(E....CK".`...X,.\\?.{..i...T.2...... Pa |@Ka...... q....i.6...7...w<.~.....rqv.O...... 0.SFU.#..=}.SyO...T..A..X...u../.3V...... 3..\...bhB.r.....G....mU1.y=c..x...X.L..../.._.t..a..T.1...K..\.v...l6

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\19120[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1251 Entropy (8bit): 7.474053068688317 Encrypted: false MD5: BE64C68C4FB379BFADB622331D686793 SHA1: F288380FE6AB6946DDFC0ED36D34F8DAC9D85B31 SHA-256: F52A85B2260DD0E972145BC318097732FE25A5D987463A0FEE64980F8900298D SHA-512: AC38F6BEC32C1AD2E99775A7707A90338C468097CABF8EB828253BBF6889F58FADC3005B357D4A5EF14DBFB53CCD1C2B75B3C33A61AE4E4016B2D8052861C53 B Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/19/19120.jpg?1561329097 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... /...... !..1A... Qaq"#...3...... 1.!QaqA...... ?...... s.o...z..T.EIo.<.F.A.Y...}.S.I':o..Cz.L...>W.G8.q...=....t.N..q4...v.j.UGuz.gH.O .nn.H.....N|-.X.j$...c.%... .d.CUWb..$....r,@+.0<.....=.t.>/..~....S:VJ.TR...... '.X.Z....$2;MYl..z.. .c..2..%....gh!...f$.Fs...... e.."A"....sD..v=.V.'7ks.[.x..Q...... U...... al9...2.si_.a,.)...~....<...f.P..Q2..RK<.,I ..,}...... /.R.*8...*...Y...W.^.;..jA.,|C....x.._-%...c.4.A\.....eqzi)a.AL..4...73.C.|...sE=5....)...)y.....;.=..?... q...z.....UX.K....`b>o.e.....z{C..0=.a.e7.?.2[+..So.tD>Iv.#....?....K.6;4..p.j.A...B.....m..x....U.Z*I.,...... {..X.T0S...E.>

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\19236[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1200 Entropy (8bit): 7.381618930690988 Encrypted: false MD5: 65B56EE5E1DF11FD016F6FBD1793F8DF SHA1: 2E4A9F9009C1D81C88005118A63DEBE57D8CA278 SHA-256: 38FF5F77831703C50E9CF5B9C21F644C4A645DC6CCA5D19CDCD19119899416B2 SHA-512: C908DFEBAAAFE5B6E22EB05CFEA51D2ECCE16B903C293EFBC8538E7B2761399B6CE6A7E5EEE752C9C4D8AF8D7635721DA32F286971980EE7F922A40F1BA18 46C Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/19/19236.jpg?1593989104 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0...... /...... !1..."Aa.$2Qq.. ..Bb...... /...... !..1"AQ.2...#Baq...... ?.2.,:Q...s.j.!~.l...... KK.Y*?...k...S..c.^Be.:K...... l3..qa..V+/.{2h._.fe...C.4N.*.G...... =Z,.pv..u....*RO ....f..>...... ].....V.....j@)..M.....J....O...3...u.]Br...... Sx.....1.&,.9..9.#M.....+..#.e...1c...... q.....A...t..<.K...i..G..Z[.o.%....q.8.=...\....C..$.(-+g.$-O...V..).A..c..!.q.P.o..{.x-.....m...... mI. v\.%Cy.c...B.'pEE....bc...... %r.h..}.Ie...a...... `..6. ..R..*<.....\...;....|$..k...7....0U .c7"#..cuT..[R..."Am....u..'..zz.6.7.@..)...... lo.R:y.V.u.....a...u...:.c.....a....K....h.5F...|.b..kz.... Z.nL.B3Hw....>....R..i{(e.r|.q.k.4...w.r9).^..C.X.NQ{4...e[..j...*.$~..S9.Y...y.'wWW...-.:

Copyright null 2020 Page 20 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\19430[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 254775 Entropy (8bit): 7.690243469651182 Encrypted: false MD5: 790EA025F5F95B5846DA6726CF892A5D SHA1: A7B4FCE1072587E2943FFFFADC7B9FBD0BCCEBCA SHA-256: 4E327D71F4DFDB80B01B361DE80BD4D33881D9A282B890AF94A813B47FC70095 SHA-512: 5F38A4E5F3162F77A899DCA1A5DC51DA23F898F3C1C3D274C81B00617BA4659D692BA802934074F6AB681E0C99D44F21729BE4374EF0ED81EE8446E26F77887E Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/19/19430.jpg?1563995336 Preview: GIF89a0.0...... #..#..,..(..2..8..)..4..=..=..8..3..:!.B..C..I..V..J..i..L".F!.U%.F$.K%.M).D(.T+.X+.Y5.N0.g&.h+.c5.d;.j6.y6.t).[:$J3$d=#f8#y="[D-kC$iG)wG'{Q.fJ1xM1{T4y Y8mT>d@..^AxcD.,..-.....4..6..2..4..:..)..;..=..6..<..>#[email protected],.G).P..T2.[8.Y6.H'.E!.J%.L+.L).H$.R-.T2.Z7.X6.b=.c=.d>.J%.M(.N(.S,.W-.X/.S,.V/.Z5.Z3.^8.Z6.Y2.[4.^4.a= .c=.c:.f=.c:.^A.gF.iE.kF.wT.rR.hG.lH.|X.zU.tJ.}`.gE.mI.kE.sM.qM.vQ.yS.xS.uT.jB.lC.lD.uN.xO.xO.tL.zR.|R.zS.|S.|T..Z..Z..\..f..g..n..t..l..~..o..b.X.\.\.Z..[..\.w.i.c.d..b.g..g..k..m ..s..r.p.z.s..v..{..}...... !...... !..NETSCAPE2.0..... ,....0.0...... H..@k.)..p..b....K.,].d.b....T.@....$I.%S...Y.d..,..bE..2..J.S...<9..I....r1].

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\20147[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 945 Entropy (8bit): 7.272396535656128 Encrypted: false MD5: 3B3BD89CFD3109993ECE6AB530E54486 SHA1: 8D7B791F5A79EC253BB9643808CE6E87ED10F513 SHA-256: D17170963E057F9A3C3791864B98E1E4C3FAC5A3F4B01DA25CA56F9E235B7B40 SHA-512: 406DE4DA30CCABD48B85FB23AA94F3AC131D177E19AF7F24B79A069EE69B57AD5FFCD1ABA9828DCD9C4A5A2E2160902C9BA233C36657A0B0CA1ECEFCDCF1 E094 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/20/20147.jpg?1590378933 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 3...... !1"AQaq...2b. ....CR...... !.1.A...... ?..Fk.b..H.DaK..@.>.h...... ,,2O5c..w..5n.DiN.K.`uNi..[AW..~..Ui74...FL....?...... ).N.vWiD..8.e.E.lsx.q.dLt[.%0...... x.z|.o. .Zm.B.[J6/.r.9...... 5t...... -,y....g..@.=.4.c ...[l|.>...... l.....|..}.^.3.....D....\b7....Q...'....H.x.7M../...0..6....]..[o.8Dp.....h>.[q....:...E.X!'.b.T.Y...Y...UR.A.C..[o..J_...TI$.r|.K._..r...c..u.- ....f0!M%.t....x.M_.R...ZIZ.gj..z...Z{...... l.ri.c.D...K..[...... X...TuET..wV.d..#...V...7.;..l.[..9+aqT{ ...... Z...'i.<...+$..z.IIK$.FU.e..{..%.pH [email protected]..~.!...... KN..%3..1=... JO.....%P...... 5p..[[email protected]. ....=mu..O...

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\20417[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1284 Entropy (8bit): 7.488836584079611 Encrypted: false MD5: 7296B5E91E1C69F311A5AAF1F17BEA56 SHA1: 988709D3A9E939DA3E3EA31DAE24B9D794965868 SHA-256: 458F7FC4C7DA74905247DD3B8A845BC401045ABFDB1D5BE5955064BF28C3129B SHA-512: 6694DCD9BEC21D35E517F70A686C8040F646902885D67E617BF7658D4B23E6AB2BF2276B331D5EFA7FD398D9833EF16C440D97158F57CDA7E83D1C36FC6AA320 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/20/20417.jpg?1565700911 Preview: ...... JFIF...... C...... %...#... , #&')*)..-0-(0%()(...C...... (...((((((((((((((((((((((((((((((((((((((((((((((((((...... 0.0.."...... !...1AQ.."2q....a...... %...... !1....#2AB...... ?.:.Q..`3..-...... ;G.[...... f...m.W.J>...6.5V5.u...... n--.I.6.h ..H...{T...... {.%Ge..,-.@n.}.....G.6B@ 7.=3.[N.~...... i.S.QlIl..h...Q.\..Ur.f..>..%M)..I-.q.5..^....."+..n.....)e .(..$zqs.Lh"+...P..W...p.m&.g.j...\i`.f.\.s._n.dD....a..h..J..Q.U...... tF.H.)K..d...<...... ~..>M.}[email protected] .....)..Q...... 4G..*.6h.....&0.BQ.3e.X...Z1q...64r...%*Tzem..j.}.....f.....c..q....Y.:'`._.{....s.bC...... j:P*..+g...... #...S...V....M.5...`..b...... %(er.%.-..T.[...j....|...KJ.U.`.|..u.XJ....Ki.:.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\20811[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5316 Entropy (8bit): 7.952928528595068 Encrypted: false MD5: E46C872A89B26D50CA67428B822809F2 SHA1: 769044CA02F52D2054DF87AB4412AA8B85188229 SHA-256: CCFA2F6C494D0F849175A09CB1B007860EF32FA79CBD1223F86F6224851B4F9C

Copyright null 2020 Page 21 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\20811[1].jpg SHA-512: 3C4A5C70C30720D5A65C0FE01C480E3A660CA79C14455B55C2C5679FBFA0920E8BD5DF709E0EF3B0B55C1EBFD540BD1DCA8EB79EE17AED7DAEADE1585666A 312 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/20/20811.jpg?1593658788 Preview: .PNG...... IHDR...0...0.....W...... IDATh..{.eYu..k.}...{...U.5..GO.<[email protected]..$X..1D..cD..E...(V.a...... 03ff...... [....{.[...FI.9..sttt...... m....W..}...... MH.y..V.i...... ^ ..9...... y....,...L&...]M(.....W<{...... +....5.|.R....z.b...Z.u.\#.W/....I.Hu../{.-|...... ?}...)+..+"/^.i.q..E.J.S..,.~e.s[[.ko.....4...w...... O.p{..Y..j\V...... }..P7in._|`m.x.l.e).O..p....p.. ...z.._...>..s.-.._....7.. u..\.s...... }..s..Dk....7.....9x=WF..<....=.8.|.Z..@.)...x.A...?<..VE..._...... CH.T..f..V....@...... 3.w.2.....\..>.w&$..._~7...... o....ji@4!... d.g4..ue.v..3...... Y+..._..K.7<..g/.)f.g.~.\..gu..w;M...I....7..2[.-.~..c.G.3...... ?7C..o....-.CjD.E.".....s..y....G.?.KO...:....w....G..7.C....^..B{..v.K...fu.....(Y.f"K...._....q.....:.{U..~...].4..9...Y.iBIS..g ..c...x...ok.^...w...|...{.r..{o:*...... 7.j?.../.Q...j.a..^...iW...s....{.)T.1.D.%N.8x.x...... u.s.9..}Vj.".D,%..i.K`0....}...._b}.8sm.w

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\21221[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 941 Entropy (8bit): 7.210380323769392 Encrypted: false MD5: AC6D6ED26DEB05539F8B21F3D8DBC42F SHA1: BE101F8FB69EE5B6BF5941C8899ED314D75E146F SHA-256: AE4B531F6CE11F29571D7B79469B48129B9E766EA197B69D64B768749996C96C SHA-512: 14D7C495CE29E209902D7EDF472F6EB4859739A17312060E1936E5C03098D8308C1F09038C9A08CC2E4417A3C1E50F794DE20ADD3DFB808978480673D187EC03 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/21/21221.jpg?1596647722 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 1...... !...1aA Q"...#2Bq....R...... !".1...... ?..h....6.(8.K.#...... h...... 8.3m..z8..O..M..^G..E..)~.>...u.}F.)$..D.a...... p..*[@.uc.p?/.z.;.,.h].~N....z{..Y.M.1....!..W.. ..$..Oua...I. <.s..kk.t...}T.;,...... {.....UezF|..@6..'$.5...OK(&V.../).(...... Eswv.v..v.y^...... y.H...(.c..V..{...... R(t;.%.9`..t.$I.P....G.....F.f.M....n.D..l.....J.F.g.K[.X.u...... <{..F...-...... 3.%.m.q..oS@\D.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\21271[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 15958 Entropy (8bit): 7.718842214216745 Encrypted: false MD5: 8D0C5E0A7A0BCE96EF7EDA0E3F7FB0A3 SHA1: 24119FCC8218400FC5A3A587B680BB28356FDA73 SHA-256: ECEAED0035CE00EAF5987394A898AD892E7E99F2D382C2B5267F5CADF13CD37D SHA-512: 0A4D7C29233F6D04E1AA31D52BCE252590843FF8D703CD32D0EDFA9C15729D1B674F8D74BCEB6F43F2E2EB43738B7DF235469EEECCC1E612405F20F114392E6 8 Malicious: false Reputation: low Preview: GIF89a0.0...... ".."..%..&..(..+..#..$..&..#..*..*..(..<..<..9..3..9..9."&.%).+,.#-.*-. $.1/.$2.+3.%<.+;.;5.34.:5.4:.;;.71..2!.5#.9&.;$.<).>*%5!*6!,;#'<&4<#:=!5? (K<.C=.G;.S?.B?#.B..C..E..L..E..K..L..L..E..P..Q..R..P.,D.+L."H.2B.;C.5K.;L.#S..Q.2S.Z#2\*8X'"N5%P7%Q8*U:.Y=(Q72[>7U71L2:a$9a*>f36c1LC.BD.ZA.YH.CU.YV.cF.wX.kQ.yb.gb.BD$CF*DJ+IL,HI#BU!CZ#H]$LQ.C\(WV'MS2E[4QT2X[5SJ j['s]#Kc& Ge,Vj(Hi7Wd;_p*ii%{i'is,tr(ce

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\21583[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5030 Entropy (8bit): 7.938171193599935 Encrypted: false MD5: ADB4228D7E379670589FE0257107CE86 SHA1: EDA284DCF079B8AB9D922618ED1879E550B12383 SHA-256: 1CC44E234078D2AC1FC99FE14D111864DBA6D226360563179398879A5FB8F506 SHA-512: B49A9653108A1848E490F1351AF23896FF6C7D3FF55FA0FC36EA0861E456DE3D6A32EF30C816DD67552A973D027B2B8E61AD382DC20EAC85295D62DF3427B911 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/21/21583.jpg?1571008936

Copyright null 2020 Page 22 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\21583[1].jpg Preview: .PNG...... IHDR...0...0.....W...... mIDATh.}...... ^kW..4.@. @..@hDQ"9&..[#s#..on.....=....C...... m`bb.G...... t..%..Cc....-..g...... #w.5.R.Z...k0...... f..qH.m.{.R.R..zX. .r.,.ZC.4.F..w...s..c6...Q.....a.}....)?...... ().5Xk.H...+..7...$.R..!`..... m....3...... '.q..H.z...... YNU.V...<|...{\[email protected].,h.X..`k{.p.. .Y<...M.r.u{4...... U...$Z33=..T=..(b...`...d...... ^...... A.g.Z

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22056[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 944 Entropy (8bit): 7.176518504701078 Encrypted: false MD5: 977FD078551C5CFE3B010E713A00C590 SHA1: BF8076431DFD3433BF11F125DF55C18A70B960C1 SHA-256: 135CBE5126B605976A0A25AE9AF09492D714E24C61DA5D8C9663D10D57113852 SHA-512: 8AA1FFABF067462348BF738075BA3F1396034A234F8BB6C4E580960EA3939061677E45452091815730C0B3540AD9ED60C9F62D820695CA465675858E08A68BD9 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/22/22056.jpg?1590367703 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 1...... !.1A.."Qaq.#2B.. R...... !..1."A...... ?...m...~...\.MpK:..V0.E=B...... y.EF2,.`..1.y...f...... !y...+.3..-f..V"I.k.E.\....*?.a....4.p.Y.d.M.I...7.S..e.k..Q.H#7 .c...... j..*|.Q....G.`.X1..r ...... c...7..../...... I.3z.,.....w<.7....V...x.[_j.u....$..MdQ...G...... b>.....(....g....x.o.v?.c..z...z.?..pS.t7-..j...(...... 4l..'.n~.U.i.. #`-.....\.`w.(..V....S.....`....T.S..ESI #EQ....A....O.Ie.%.a.7J.U...jf.t...*.j..\.!.....H...ZW....v}6...... >.+G....jH[..S.#.H.2...... l.RK3...Y..78..D.....L.*...... B...... 3.3...#...... O#.4..k...... n3IP~OH.:./....R.....?8...s.U.T.~ b...... g.uFV..GU.s~@.....~.*HX1d.....L.?..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22069[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1825 Entropy (8bit): 6.806342325518443 Encrypted: false MD5: 5E8544C4570812A03AF097A3D7C30799 SHA1: 9519C44271AC3C3812C77F3DD5C40F7E992D74C6 SHA-256: EB961D4D1D4C8D83C92139591138564C38FE5E15583E6BCFF3BACE5927089AC4 SHA-512: F47E8D5F61FD334B80658D162CACA4C4A65B15ADA8E142ED6EABEECBB9E576A1C5BA4410AEAC2F0DCE6199D92D8E16350474963712AAE06B015E0967D77CA B21 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/22/22069.jpg?1590359397 Preview: ...... JFIF.....`.`.....4ICC_PROFILE...... $appl....mntrRGB XYZ ...... acspAPPL....APPL...... -appl....%..M8...... desc...... ecprt...d...#wtpt...... rXYZ...... gXYZ...... bXYZ...... rTRC...... chad...... ,bTRC...... gTRC...... desc...... Display P3...... text....Copyright Apple Inc., 2017..XYZ ...... Q...... XYZ ...... =.....XYZ ...... J....7....XYZ ...... (8...... para...... ff...... Y...... [sf32...... B...... &...... n...C...... !...... "$".$...... C...... 0.0.."...... 2...... !1.."2AQaq.....#$BR...... )...... !...1A Qa."#q...... ?.."..N."..z.AR|.....v.....h.(..H!...P.. ..6. ...I..U-..K6P....a...(.,...6...R....[......

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22683[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 80237 Entropy (8bit): 7.525009854240804 Encrypted: false MD5: E6B6561630636DAA7B6ACCE76E8514EB SHA1: ADF78AA64396166C33E1BB6CF4C736E65142106A SHA-256: 0A42B130D9677B17584374934357A6B4701253D9C60345F2AF9EFBCCF61FB45A SHA-512: 81C71E3AE329866B43183A7D363CA4934F1A0B86244EE15FD16309300D58A0A457C1EF2B24325A17D612589B89ADB189CB4518269ECE56728EC38EFA7418A95C Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/22/22683.jpg?1580799329 Preview: GIF89a0.0...... "..(.. ..$%.*'.2-.50.<4.:1...!..#&. %.#,.%/.)*.$3.&4.-:.3."*.-6$'(;#.4 ):6#=9";:,&*5;!2<+8)4:E:.D#-H$.B<#C'7LB#EB&V J(^P+l[,bS*m^4t`,xf1.7H#9E)9G28G<.@S,I]6TR-Ih8Zm;ay?h,BW,Kc5R`2Wo8f}KKTXEVIQh]PayBkcWjnJpTguahz.l4.}A.Gt.K}..Q..N..R..n.]..w..q=m.^h.Ez.Go.df.|x.nu.tv .lr..R..Z..Z..[..a..g..h..n..s..w..|..|....I..|..K..L..O..R..R..Z..U..X..V..`..x..[..^..Y.._..f..a..b..c..}..~...... !...... !..NETSCAPE2.0.....,....0.0...... (P...... `...... <..q"..3..0...... 9....- F...... \....n|P.'...X<@.@...... 2....+.J.h..Q....9...... N.8.a..F..(3...... l..h.\[email protected].,B.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22696[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe

Copyright null 2020 Page 23 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22696[1].jpg File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 2182 Entropy (8bit): 7.876814261619982 Encrypted: false MD5: 488786502600A1CB56F5A45FAF9CFF58 SHA1: A71E6C03612B17E5E496F1CE3E7B582A72EDCE60 SHA-256: 19B247D9488E55A73EC3BFB1907723F0E850E832CE75A844C8653C0EE1275083 SHA-512: 75954A81AD14189AC6ADC2229BB5C87AA60FF14D7749AB3344459C24D13D96595F231536596F11FF43B3493CCC3EEC9E3D27A0DB36F14DC21AA39EF8776F3190 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/22/22696.jpg?1590517635 Preview: .PNG...... IHDR...0...0.....W...... MIDATh..[o.....3.\..M.(K.,..8N."u.$...-Z.5.Z ._..m...(..(P .....cG.d](."...... m.b.... i8s.....F.Z-..X...... u;(".gi..:a...E....w....1.!...k.cX..@...._F..j...{. . 8...8.V^.UQJ.).$.~....X..C.DPJQ.}.c.^.H...E.J(.0".....l....l..m....#J..B..(.i..l.....@)....5.(b....{.)....#6.r...J..F...2...`.$.0.NS.f.i..j4N...yT...=..TN...... e.|....6..c...U>~..W....W ..n..A.A)... .%...... R.|g...).....?'7>...>.N..,]..+..w.....n..I 8...b.:.&.++.>[email protected]).O...f../.Z^.U...T...=..y.l.....c.J*.....B.'...... p<...... $a..c..^>[email protected]..:..-*...f.)p..D.ML.-..|...qv77...... H.. 9..l.r.....D...... )...fG^...B.P..'..vVW.k5...L].....Er......`...Tw....|...j.Z..,l.(.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\22907[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 855 Entropy (8bit): 7.0811929348704 Encrypted: false MD5: 03FBDDC57FA95A51D5B260B6EEFA4DD0 SHA1: D939D7D7439A6E9C1E64D6E537B2A61024B3A686 SHA-256: AC4416976A3A284C217358BDBF4FE53695528E178908DB8F93FC766069D2E74B SHA-512: E6F9BA31512F7842E6C321BC0B6513061C97A93A2AEF374CDB91E7D9D00DA08354BCEB541C068851AAEFA1B57EFFF9307D792BC664DBCA7DBDABA61B2AC9B D87 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/22/22907.jpg?1590351066 Preview: ...... JFIF.....,.,.....C...... !...... "$".$...... C...... 0.0.."...... ,...... !1..Aq.."2Qab.#...... !...1...... ?.e.....&...\=....;U,.I..^...... i...fP.=....O..0..HO!$..J*.[.Z...t...... S....a6-....? ....z...T)s.G...w...S.Y....6O..{kG.!....18.}&.).W.{..M$.;...4.l. [email protected]....^.4.RuD.Z7..mhk.YI..-..i.Ei..L}..%...C...*#...... s#8E.d..;*...K.W.!...D..E.Rp>...<.#.c..eT...Q...... n...EI.... .gsC..T8MP 2....9..\...m.]...... %`~I;Sm.1. .K.y>..1Kl...,M.h.w..mG.-`jR.'.@&..../t..J....av.O.W...N..O..J.m.%i;.>+.J! +^..3.I...."..q...<#.Y..Y..Pz.F\.T..6B..(m|.RH.w.Zc.B[....$.).....VT...Z..r.....#}....'..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\23450[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 2910 Entropy (8bit): 7.913044757939669 Encrypted: false MD5: 0D00549C3C435801B2A635B670590652 SHA1: C7D0B3B75242AD7AACF8FD27ED2F13B517E5DE68 SHA-256: 9DCA26254C1C0488B99741D51097BC85BCEA5B650C0D0E39A8CC7165E0651AAB SHA-512: 97551A95A15C3E78BB7CF3026635DE46E801245D5FB6DA8FD5F9DD08E4AA60EFDD16A5F2677145EECDB6401D91353513DF19A2422C975BFB6CEA3281777932A C Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/23/23450.jpg?1596276099 Preview: .PNG...... IHDR...0...0.....W...... %IDATh..Y[l\.u]....;.r8.r..(..i.e[....G....rk.E.~.F...... E.|.....(....E..i~\..]+.a..XR.&%[O."...... 1sGC.4.....3s_...... 3~.E|....b}..|.0.q."....(ND "03.yE...... {[email protected]...... ^."..=..m#..-F....I.'.}..eCk.gI.....R.,[email protected]*...%.../.8..T.U.Q.)..J.Z3..}.h.l.a.#y.+.j..!....y+...F=.Q..V..5..<.Qxn....Y6l.l`.A. ....L.T.+.}..f..W.w]...... '.../N...... 1w.8q.j...H.g. .W\.H.. .Mcht./>....x.8..!$.(...... V.4....@b...... G...u....GK.....F..VM....1...... |a.#..<..t.Om..f4.Z+u..f.....W.s!..=.....A...//bl...J...... |.....Q..qa.C03|.....XXXd..M6...... '.o.b...?..}..r..Q.cX....+_9J...... $.0Dbn.u.,[._.X._..X,...S..5.*U\.5.C.{.....~u.,..v.H..&voG...'N..z.....@_o7...... O.r&Zs...(...xf.6.z|.6....p?...!.\...... [8~..l.A...... [email protected]...... R.. H..-....H).S..s...... u.].0.....,..146:h6o.l-D...7.I..h.`[..%.....K...Zkh...v..).s.>...... Rb.%@..2i...m4z.r.e3.(j......

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\23467[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1483 Entropy (8bit): 7.605605741761862 Encrypted: false MD5: 56FA268C2369F369860F2FF07606AD6C SHA1: A48156AA073BBD20B77E3C36FC8027E770E75AB5 SHA-256: 9001BDD46D5759CB7C7D9018D4B1AFE378B1A6E16E06FFD5483D1132203D293E

Copyright null 2020 Page 24 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\23467[1].jpg SHA-512: 80AB8B70CE1C4247ADE13568235A9319E4562B494DD142562AA400E79BD6635C6A417B2FECAF0BA53BB544F3901C761965C149DF379C60BA9E5A1686B6A9ABD 5 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/23/23467.jpg?1593723776 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0...... /...... !1.AQ.."a#bq... 2R...... (...... !..1A."Q..#Baq...... ?.}../.VS....1..C9...... y...NhdCq..1...... C}..Q...... u[....Z.j.9...4..".#....[wp..;..L..=lQ....2....p.#.!.F.o...... i...... #..rp3....en-...-WKu....7...~..w.$...q..Y.{..7-^/.nX)[email protected].<.7.P?.<....:.T9.."..F.b.....h.....M]?<(9....m\.u..x.,-.:..U....+.."`.9...... r.1.*.T..~.I.:..._R-.S.OW.7.G&.....x>4.....$.V...... Kw(b.I...... 8.|..k.Mm..x...V...... 5.m.[!.R+.!....94.S...... 8....G .:.".vV....qK...y...... c.Gl.d.2L...hc.ps....c.gT...:..^N..."...b9fR....|N....s~.aI.muRS...`. )l.`x..P....^....?z...g}=.VWS. ..ed.V.n..<`bBB.01.?=1.+.4]n...... >.X.T...+%rOEZ.DS0i"r8...\.3....UX.S.b.u%\x..N....T.2...&...#.".Y$

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\23631[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 151999 Entropy (8bit): 7.846674749268842 Encrypted: false MD5: B38F4B8B98B1EC7A9223F867B0AA87D5 SHA1: 4565F41E3B9E22160D7021F4987163BEB3F80E5E SHA-256: 2C51AFBB84D57E0D4671F12867E6DAE46669F36F7B3B60C208345BEF2F566072 SHA-512: 25402E0B2DC06B8767D129D5DCF4D56BF23E745B854218E4445782C41448D83A54A2C9386899C47506340651EF404DB67169B23E886B8B991AA1F80F82BADAA9 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/23/23631.jpg?1590561813 Preview: GIF89a0.0...... !..!..#..+..&".+".,(.4%.9'.,5.27.'".0.66*&/7 3<"86$4#;/,5..(E-.I.9Z.6t.=I4$S6'H.1|275I.2H.6B#:I&;T$>V%8E6..D..C..w...... !...... !..NETSCAPE2.0.....,....0.0.....Q....*Y.V..5KV.X.!"l(..BY.(..E..6\0.k...u.`."xp.U.N.y.UMT6q.b.sU...`u:G.>u..=.f...].X.r...;y...+;y.x.;...<_.r53. O..bK..I..|....;..az...3..].y.".c..b..#G.0d

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\24026[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5437 Entropy (8bit): 7.940488887986377 Encrypted: false MD5: B4A75F907381A11A87D40FCBF2688237 SHA1: 1B93C56719AAE2B0AEDE7725AA9E65143A400490 SHA-256: 4EC6798349570C30A010EEC3055BF44387B26E4DF8C6ADBE4829E0EDF77EBFA3 SHA-512: 459EDDFCB9D698395A6743A52BBAEE0695D2E6EC7122A6A222025A8CD27F85D2C1BD080256B284FE9EF40C988684AC8C556E5C29E6AABA07C8324B4B3654462 C Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/24/24026.jpg?1590014402 Preview: .PNG...... IHDR...0...0.....W...... IDATh.m..e.u....{:s....G4.h..A.$L.A..._A."....{..|...... /.a...-*,"H@...... k8.....>U..#N..N.._k...... ?....J.....=^....Y..8_..D....{.x.R. 8.Q.W.2rF.p.F0.vn .L...I..,.j..EY..^!...Q.8.... (.6(....*.2..Z..:@.G.P....-)\...DP...E_/..y[o...y....s6..|.#G.3b<^..4..kR..E.8?...9x....}.b..bp@.,..1.D..c.F.D.Fk....(..{*WQT...B..B..D.J#....Qx.WX... NQyG%c.|..O.H...8;.....B..$..D.L`...v..!..../.$..q.QT%HE.4..".<(..=...Q...y.S9...... d....{..<.WQ...W*DMy..)?.#E.[..%.I...l...(...(<.qJ.....Q./..'..7...[.w8..!J0....j.e0.WT...F..h4.^....x;. .0....M9.pn.Sc....g...X.g....A.t.1.-.N..E.;.a8L....~.w.k.l...... [email protected]=(..q(.s..e.V.Pk...{< ...!.V'R?/J.."n..9..3...$%.').n....'s..`....u..,.9.~w.~.v'dsK...... oq9.p.\Py.....B.8W...5 J.:9.....X...... !"+.V..\...l.8.".....2.eL.9''C..(0u.{m..'.5.u.....bL.x.~...~...... F.8I...S...... *.Q.2...@L}..P...(.1.....X

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\24256[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 100757 Entropy (8bit): 7.709178595580986 Encrypted: false MD5: 1D1BE136C430D0126ECB186030E83E76 SHA1: 87D6370BC114EBFB830DDECEA7336D6C30699755 SHA-256: B0570C8897F0251D34C208E49A37CEC0533F9B299D50F6DDEEFA1E50912860E0 SHA-512: 5D54FF856D035ACF296AED3DEBADC765F559622CF4128DC654199EFEADEADC9462E323BFF8C4ECA44F5BE8CE18390D5E07A22523D409B2CE8717BBB4B5707B D0 Malicious: false Reputation: low

Copyright null 2020 Page 25 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\24256[1].jpg Preview: GIF89a0.0....3.....2..-..5!.;$.='.9'...:6(#**;2+1C+.I/.A&.J0.C.!H/ L3#K6)M9+E3(Q6$S;,U:(H94T>1[[email protected]/.'J.)R$,K"-T"/Z$1])4\(2T69U&3c)6d)6j,9l&5j,;s .>z'7t3;`.-`G..B.3D.3F.6I.9K.9J.:N.6K.=P.>R.=S.AU.FY.IU.Wd.hn.AV.G\.Ka.Nd.Ul.Tj.Zq.Wh.gu.[s.d|.by.c~.z..k..u..{..r...... !...... !. .NETSCAPE2.0.....,....0.0...... (.]:v...l.p...#.#H."E...Uc5.Z.d.>N.....i..[...... +....`.X..5m.I.J..IiU...c*..s&:....{.nd.j.J^.gre.`."..0.Dt..:.....l.6t.0j8p..;w.\.sh..K8*_w...;...8q{.F....."^.....M

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\2459[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 4947 Entropy (8bit): 7.920274253175001 Encrypted: false MD5: BE05E41DD465C2713AF40B35718934FA SHA1: B9FEFDF0796189962DBE3CC96AB392CB62F5C919 SHA-256: FF8A35ECFF7332FCA9346E315C121944BA4CFDC85AA7A1A9043879C0CF35CEDA SHA-512: D8E76CABB0F0C1862469896080833DC5BA66D92B94E422B87F2C9FE647D2DE10AAB680269DF48D9A006C2B70B9476A41FCB4BFA8FFAB7487DE40D5B736C6341 B Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/2/2459.jpg?1524458666 Preview: .PNG...... IHDR...0...0.....W...... IDATh.e..%.q..q..K-].=K..."M...... 4..A>..A?.6..-.3..m....y..?.."..p...U.qND|.}_.....j..XC0.9.D.ZV.r...8L ..P.`.!..)..'..C0k8.\px..3.8.s B..Z2...c..!zn. <..../....s.?..8.4...... {..x....{B..0....s....5.a81....g?..Cp8'....;.9..V.A..<..[.{(..*.s%5.]VN.V...\s.S...."...13.s.3....|..Y...M.8....a.\....gH...).R.@<.Rys:Q..#..>E.c...(...`../_...... )....+.W. H.Hp.Z./T0.db...-....0.C..A\/..8r{.qs.xv...q":C..i...... q=.03..9N.\..50....G..c.4/.{...... |..W....W^|.m..L.."8D..+...... Y....^.'..xr<...... q...... \...... <.qd?.\..<.>.|`]3.T.w8...c.L1.R...... ~....g...... PU.s8....^...... d.~..N.N..n.v?.....y~..nd..P....kQ..V..e-Li`J..8....)x..0.`Bk...%..}.$'...RD.^.y...=.}..ww.p.?6.s.....~...... ^.a.....gW;...3...... 8L.Z....y.a`7L.w;n..L..G.".Zi.. |..g...jcH.4...... 7...|...... p....~...... 9...+. z..~.v...'w...nk...L$.%.\ ....C.....7.V..9J).R..Rsf...... D....e..7o..~.?}.G..F..8..o.O?.....D.....9L.x....7.Io..\o...!$..8.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\25713[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5178 Entropy (8bit): 7.935230350760047 Encrypted: false MD5: 6352E9428DF2CA0A1C1FE280C93FB1F0 SHA1: 43DC517E86D69C09FD1EBB5225AB1CD1228E0AB8 SHA-256: 0DA88654E229ED52A0A9B46FAC03346C68BC6475DFFF6F894BC4766677EEE610 SHA-512: 5F572C16CFC3C9C2B8D18FE10FF5D0B859113BFBDCF7FB75CC66D25CD24082A6899B58B75BBEA01B0EF9983951FACE1D1AC22126507C9CC83B58892182387C0 5 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/25/25713.jpg?1592836061 Preview: .PNG...... IHDR...0...0.....W...... IDATh.]..\Yu..{.}..[efU....$.n.[n.f.0.0.....16...... _2...L..f..A.:.6x.`C....i.1..]-.J...*+o...{....R."..t.k...o...... ;.....B...q.J2...#K..<..2l...A.O\.0?7...... }. F...s.^.G.Z'...9....1..B . .8p.a..0..9LQ..)q..R...... !....,. G.o.:.+.. .@..!..Z.. ..R..E..v...6...Q...).J...-.vbb.....Y.\SX....J.T....j....=...... g.]...... c.8.BJ..g@.!A...... ).(..k-Q5..8...... )$.9. <+..a.....q &...?..:.m..3z.....?.._.&...h..5aT..3.5...... <.J...p.:...e.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\25715[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 129722 Entropy (8bit): 7.299957060538081 Encrypted: false MD5: 87E90B9505F95EB9B3CB14A98690D524 SHA1: 98C87FA85412186F00CCE805DCF51AF1663F1C79 SHA-256: 7F3DD28691559EB7903325398F798E476B526B3E16DC71A300E0CB268B94064B SHA-512: 1DCD1BC3595D22E0410D38BD2F1A5A8AE2A360DA2AC796A51617DFE88529B1D662A52AC16847DF7B18C4C065D0962C2CCE5676927550F25BC4A48726D54891C8 Malicious: false Reputation: low Preview: GIF89a0.0...... !.."..%..(..*%.'!.' .*$.+"..)./(.2,.5-.61.;5!.#%3'%2'$1&%3(%4)&4(&5)'5)'6)%5*%5*(6*(7*)7+(6*&8-)8+*8+)9-*9-+:-);.-=.,1.>0.?0/?1->1'A4.@3/A3/A4.B5-A5#G=.E9-J=1B10A21B30A41C51B42C43E62D74F72D55H76I74F84G83F82J:5H96I86J85I;7J;7K;6J:8K99L;9M=9M<9N=8N>: O>;O?9M=6P?;P>=R>>T?,OB2OA/UG/UH/YL5RCS@=SB=SC>TB?WF=TB=XG0WJ4YJ=\K@VC@VDAVDBYFC[HE]JH_KE`MH`LJbMJcOJcMGePKePMfQA iVNhSOiRMlXSmUToXVpWVqYYu\\x^UubXw`]{b].i`~eb.gc.ld.pg.ti.xi.{...... !...... !..NETSCAPE2.0.....,....0.0.....#

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\25811[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe

Copyright null 2020 Page 26 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\25811[1].jpg File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 208921 Entropy (8bit): 7.767589803218411 Encrypted: false MD5: 0177930ED02C8F214D88F28C17A080EB SHA1: 9B179DE6C13E5C265B9620270D9806C3F3ECBA72 SHA-256: 46AEDCFD72DBF614A3C5D46505D16EF4D61BA7F3420D28B33133323D7799C9AF SHA-512: B376D0F075ED1E876D0A8FC471E221C7FF3730A480B7EBA1FF9E0D4B6D47E60F764C8DB03D6A0C8C22E58C158247E61F176A4B833B9378FD066F1EF1819CE8B A Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/25/25811.jpg?1596212270 Preview: GIF89a0.0...... )..7..#..8$., ..."..&..$..(..0".#."..#2.(5"#.(&%4*%93,,-9#)70.:23<:77#3P"/A.,@:BJ8GV8P`EDGWTJFHRNTWSUZPODgUFuUJgYUx[SwJAggZrkWDXgW[ca]bYfhXukIap\yrMfjfgiznhf{lk}mfuevxjc}sgwwv{vckt.<(.B..F+ .K2.S:.S9.f0.b>.VI.\D.^W.bL.eW.hU.t].sY.iI.wJ.lX.tY.|Y.xc.yf.ul.wel.rf.zy.{q.o..X..m..x..v..}..m..l..g..e..j..s..w..}..|..}..w..n.k.y.y.u.tk|.y..z...... !...... !..NETSCAPE2.0.....,....0.0...... =.F.zE.S.=R"J.RE..L..i.i..S.h..E*..-Y..D.E.e.....i...... L..S..\9n.2.....)>|.`I.%O.)....U...J...... ;1q+...2S...2...3a.F.2.E...Y.T.....Y.a...."i.V.:.../n......

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26032[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1933 Entropy (8bit): 6.888622741234536 Encrypted: false MD5: A4D78FE7430C228A8894B7B024F91C89 SHA1: 9176EE7160387E169119597F7D73D0A40101EEC5 SHA-256: 8BACCCDBEF4B39F7DE0B9093685155C699B165C8851B9837830DA5E6EED8F35C SHA-512: 7E682B38BBB11C580C3C0820A8AA814617CF4769F2DDA62F359C5F8AB6F2A07B8627D58AFFFAE1449EA9A88B982EB3F4EC94B5DFF43889EC36C890BD8A4D2C 74 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26032.jpg?1590382017 Preview: ...... JFIF...... ICC_PROFILE...... lcms....mntrRGB XYZ ...... ).9acspAPPL...... -lcms...... desc...... ^cprt...\....wtpt...h....bkpt ...|....rXYZ...... gXYZ...... bXYZ...... rTRC...... @gTRC...... @bTRC...... @desc...... c2...... text....FB..XYZ ...... -XYZ ...... 3....XYZ ...... o...8.....XYZ ...... b...... XYZ ...... $...... curv...... c...k...?.Q.4!.).2.;.F.Qw].kpz....|.i.}...0.....C...... !...... "$".$...... C...... 0.0.."...... 2...... !.."1A.Q.aq..#2R.Bb...... &...... !1Q..a.."A...... ?..O..t....(;...... m....M..e.>...1....i..<...!7.?;.=;.3..Z`"....kmEe;\.+c....9..b...8F.$o..JRT...r}.0....j.5x...%?....%\.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26134[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 192x192, frames 3 Size (bytes): 6686 Entropy (8bit): 7.9336619693041674 Encrypted: false MD5: 11686C8A9457CFC0156843320EDFEE10 SHA1: 02BCD643DC0744BFDF95D4C542632AFA354E4665 SHA-256: C9738086591B7686708A6E45CCC6157D81023B438A17D5146879890D270D37A7 SHA-512: 8D7806368C774725FCAAB0D82BBEB4CCCA88154B27A670C273BA4EC571CD55EE956895F4F15F1A33DC14FF8077A1779ECF5070DDD97848D782D7F9A14A486C8 F Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/l/26/26134.jpg?1594640080 Preview: ...... JFIF...... C...... !...... "$".$...... C...... "...... G...... !..1Q.."Aaq.2...... #BRb..$r....34Ss..CDTcd...... !1Q"A...... ?..]9....x.Y...l....8.:[email protected]....{.N...0x...]*...=.B....*.#....!Q..Aq...K#..Ol..J"'.j8...qt..7..y.l.*pb..}..".J]..)-..s.I.w .&=...Q..!?_.S..6.y..0.....;...J".2.7..]j.9..0.....R.Sq".@."c...Lhs.QP.o..[.8...fD...*[email protected]...)B..QH..w...g..|.R.."c;[email protected];.....aR..Zl.O.4..7.`y.E)[email protected].. Y...8.....x...@.. .%jG{..:!.w.p..T{....q.P...... ^.x...gtb...&H...EG.s..{.iQ.{..T.G.@...... Zc.. c..Sn/!EK|.,..0

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26242[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 917 Entropy (8bit): 7.189198377874556 Encrypted: false MD5: 66B369C6CF62D0F937F7A998D96CBC83 SHA1: 4D517A02DE05FB912655BDD2B289D54D904927B4

Copyright null 2020 Page 27 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26242[1].jpg SHA-256: 9AB372489CE89253AF234DB4E4ECA160397C49EA963AF8A51FA7FFCE2286C74C SHA-512: 12435E2F4856DE1DAF873B03B72901AFC26C676ECDA3CCF3FEA87670DC94025FC1B135EFE626AD7AE58374975AFD6B43AF69F6B19AB21077E424AB6703FFB12 9 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26242.jpg?1595617589 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... /...... !.1..AQa"q..2... 3b...... !A1...... ?.}.J..^.+ )...O..oc....c..t.:.....O.R..i.U,pG{p}....s....YeG.....e^[email protected]...... xD0....)P.v.".t...Mn.l..^H.bX._w.o].b..u..L....1..@...... M...Q,}C$..+..8.(+.../..Y...<.=.3..,.a...[.*.X..Hx.....,L..F.VT..7.... .kU~".?...W...Y.W.p.x.N..v'..]|.^..Kzz.uZ.....4W.x..1[df... +.)...... l~.eq...\xy;m.z...1.gHd.[.^.=...#.2.I....0./...

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26299[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1084 Entropy (8bit): 7.358834268685917 Encrypted: false MD5: CECC52881EC152AB3C31A35F00220158 SHA1: C689B6EFE5ECFFFCEE1C331F8AB8F5F127412833 SHA-256: 7179D6FFFFF479A4FD3ACDDC6B090233E1222A1F99F9CC28170AA51A87034666 SHA-512: EFDB15FEE5B45A03C051F0D49B74D546FC67D6ABA5D380B609295D88C8303F7DB598679A64294902C635E26928ACD0A24669596DB2505BB9C7B3D0544F00859A Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26299.jpg?1589520439 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 2...... !.1Aa .."Q.$Bq.2...... 1AQ...... ?....Z..#.f_.G...l.v..O1P.a...... ^ ..B%}6.v..o..F.g....:...,n,}...^l.d.8..A...... v..j...... m..|dR.e.GB..8.2B...m..q.....N.W. ..t.G.+'.Q..cr,{...X{....L..Q...F....,....V%.6...... }.SG.. .q~...-...kX...... U..S.b.t.$....1...... + [..]G..F*/3%;n..E.c~...`Fg.f9.&[N.]...O.m..:.....#..7g...X.a....E ..d..8P.....*.#...Uem.A...l<...X...... D~#....6.g..,0..V.X.e.C4p;.....:._..D.#.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26564[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1395 Entropy (8bit): 7.567189614748827 Encrypted: false MD5: 02C7F3CA13AAFC6C57B2CA3EA1219145 SHA1: C673604EC05EC7535DCC6690B0838EFF48ECF49E SHA-256: 6ED904DF44A8B5D9C5B109C1F8DE5654E39C1810E8B3F0493A0E42B21A8789D7 SHA-512: 77FAF34025740071C43158DC69E84BF039007DBB8DDBCDDF03F01F01A4BCE941963212E147C9BF55DB73CE000B621294E4815466C4EC5F530C794C0F201D9ECF Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26564.jpg?1594189793 Preview: ...... JFIF.....`.`.....C...... !...... "$".$...... C...... 0.0.."...... 7...... !.1Aa"Q.$2...... #BRbqr...... !1"A...... ?...vi....>.!..g..H..?.FIww...G...... _..n..=|KNG?.G...... d....E...... 2CN.......C.Sm4....i.'...... `..O.Bd.....LA.x!+...... sFG.....<.1l..b.|.....r..m.....J..LM

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26785[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 15958 Entropy (8bit): 7.604540474441576 Encrypted: false MD5: 1E66F1FA28F3D351F8C19E9D90C6FBC1 SHA1: 43C1EE78167FC1B55648F760BE59E8DC8222DAC8 SHA-256: 8186FC6D54D3485A8C5994E5E70D29678A0845EA48E0BC3146A9AD51EB55CA3A SHA-512: EE2FCD44C8A4DAFEEFC5A54473144FEA4F090580D4C657439ED8D779F5B18A8BBEF9628744EB87EA682657E1715D2CA55CEDB44140231314B3098F46506BA775 Malicious: false Reputation: low

Copyright null 2020 Page 28 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26785[1].jpg Preview: GIF89a0.0...... ,..%..*.....#..+..'..4..;..3..;..9..#..+..+..3..9..;..#..$..*..-..'..)..'..+..2..=..4..;..2..:..:&.:!!4++966D..I..F..L..B..J..S..\..T..]..G..]..\..I..R..B. .M..C..D..M..^..V..Z..V..a..c..m..j..t..{..u..k..p..e..j..|..u..c..o..g..u..z..L#.A0.E!.N$.K*.] .R%.V'.Y3.Y9.{&.c&.i(.w$.|3.t0.n3.T.>f.,E$$K&%K(&D')M**H()T)%T,+[-+Z("\0.U 4(S.0X/0G9uA(8.Z2.{F.Gc<@m>@lAFrEKvHL...... (..5..,..5..*..1..<..;'.01.-)...... 8..H..J..A..^..K..l..n..w..E$.H%.G%.p"._..d..g..v..d..l..N!.>@./K.WY.KL.eH.kz...... &..~)...... ; .K...... !...... !..NETSCAPE2.0.....,....0.0...... H...... X. A...1..`0..... 0..H..Iz..a...b...3gH..-T.....G...@< ...... h AB.. V.h....D.\!c....9d<. ..E...B.4`....F5,P*..$I'*!.Vk./@d..[.K.*]o.x y.&...%...l.#....l..Q..2

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26936[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1163 Entropy (8bit): 7.427335775204485 Encrypted: false MD5: ED9B4F460F364A64D8268A48C43274A1 SHA1: 54212B0218C1BC35DBF169046E33CA4440A9C91D SHA-256: C3B33FADD99BE475F3872E18A20D5E531FBB4AC96E5D3892E6DE1FFF683C05ED SHA-512: F3553142243987E9411341DA4415967E33C4C8719364E1C0BE2FAC53A604BB846CA8E4C07489C86ABB2A36DDA01BA21F30F362924A424E763F8393EDB3040C25 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26936.jpg?1596564566 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 0...... !...1 AQa..."2q..#...... "...... !...... "1Qa...... ?.3.F.,.F..zy.\....T..A.\[.Z*.H..![c...I8..9..i4.S).)..X...`..-.2m...#q...... FUWO.i,.)j..k.(D....b-...... %\.2y.FF...... v....4U1.9;_m...._QP..SI..r.H....x....N.V.J?..$...... rsM..'....[..N.j....C<....r.;nP..r?..."...... Bx....0%lD.......=..y...... Ue{J.3..0..rw. [email protected]@I./....R.*...... +6..4d..[dE....@.(.j..ciQ..V^]..[.|.. 94u4T5....s...pX.%...... P.-?D.G..9}D...K...1.k..{.f[...... kS.3n..G3.n....8.GS[.p...V.beV.....:..K..tg[...>....2iZZ..y.Y.....,..,=.S..b...&

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\26980[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 16725 Entropy (8bit): 7.111603129686058 Encrypted: false MD5: 0397D9B187152853BB201BED521B21CF SHA1: A549513946C45F12222122E7C81A6352665EB529 SHA-256: 9CE65905FCB48F41838A2EA334540E649C50EA37BC7D90E3BC8F920DC23D55F4 SHA-512: FE793BDFDF3EAF4FC7E1ABFCE162DE6181A5A4AD10C4AD874B798FA3BCF1D5480A0658BE4BE4F956AB040BBAF0D423565ADA5A58428609159F9CF3B105CC2 731 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/26/26980.jpg?1593806474 Preview: GIF89a0.0...... ! .#$#(&%'(')('+,*0/./0.00/443975997<<:?@>@@?DDBHGFGHFIHGLLKPNMOPNQQOTUSWXVYXV\\Z_`]`a_ddbhgeghfhiflljpom opmqqostrwxvxyw||z..~..~...... !...... !..NETSCAPE2.0.....,....0.0...... h.r..(?t.x..)[.T!#H.&9....J.!B.d....>n.hAB...5q..!CE...6n..L.>...1....#mz.(0".. H.d....!.`[email protected].%Bz.."...6t$qr.$I..$...... \0.6..<."..$.O.:a<.1.....:f.."..=.....J."

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\28176[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1323 Entropy (8bit): 7.49517737489407 Encrypted: false MD5: 7151C56F7F382E90C50FC498E47BA122 SHA1: 97B2B54F0C4977A2E69D76788344B3802519CFFB SHA-256: 40BFC74F8341067F2BAB7E6C3432DABA841929902953D423A941BB4114B328A0 SHA-512: 80E44E8C8FEBEB83B3B64D9C6E70D1F04573D7EA935EE7B7D8CBFA2E4D558A998293087189387A2C64B482C5A735B10E545845DC11E5726D8A6D2505737F4963 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/28/28176.jpg?1596547502 Preview: ...... JFIF.....H.H.....C...... !...... "$".$...... C...... 0.0.."...... 1...... !1Q. Aa."2q....Bb..3D...... (...... !.A.2a.."#1Q...... ?..w.?.....>...... P...q&#*\....n...BH....z}t...L....I..[.)J..s.9s.o....!.c*d.q..%d.N.:.<.Q...... Y... .(.:.<.. .J...... O.....l.W.IvRR...$...W\."9.k...f:[email protected]...... x...i.(.q.l....>{R4..r...... &D}..42..I.5~...W.:=.m._qm..W...I.....$n.....I...1...... }.Zh..D..3.R\S.r..../!..'.Z..7v...... x..B.J..t..R..J.l.1.v .x.S.;.[H ..(...9...... s&....khO...IX.....i...... G..j..).s`..J..-3qr...0M..)_...... *.JR.B...h..f.fdpl).N.....).q...... q..}%.8V...~9$..=.)7.z...s..N9.J.B@.+...>+... 5. .b.....7..m.EP....Y..Z.S.1.....cm.=.....b....3.6.rc.q..[Aw`...... \.C0k..,...... )(.}.^z[...... 4+....r....

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\301[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe Copyright null 2020 Page 29 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\301[1].jpg File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 2969 Entropy (8bit): 7.902742580898371 Encrypted: false MD5: AA484981F0E4C50DAFB4D6D197AF2068 SHA1: 0DEF09B3E72383F695083C685B390A197627FE8F SHA-256: 10C032A29B740611375F1F78AE66D2FE428BA15259751B40EAA60F70FC945CD9 SHA-512: BA430DB5A65ABCBC0F1057FA287000E24F9248BE14AB1F50AA2F3A3746386B145CC8AE80E9EF0FBDDC8AD51E4EE4EFA4FD575D7AB715D16B0811F7F98D50E7 86 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/0/301.jpg?1595206873 Preview: .PNG...... IHDR...0...0.....W...... `IDATh..K.e.Q....y.}Vu....,c...... k>.?...... a...... 53....Uu...,.V...... y..{.9..?".p.X._..s.....8.m...<.w.g...+D.AP.D...... O...../.s...0w..~?.....\n;..{W. .*...... [email protected]...... W8.Y.D.Um.=.{.>.."' ...... =....WpCL...t.]Q...t..U4..B.'.<...... z...+..4...b.(`Hxf..")..T..5m!8.\0wj1j.. Hp.$.....P.q....y.U.*T.7.F~-`...T.$.$.8....l [email protected][email protected].. .Z.rf.F...... w..~.p...W....T%M#..1...qQ.m...... T..._...... Sw{..p.%V..)....Fn?..w..o|..[..,.+..d5..U.34<3.. v.0e...... gS.e.`.. .,z..]RB.8.}..)E...o...... x...Z...F.7....*.....2....r.r. .8,4..^....o..V....-oI..Q...... #.Or...... "D...L....<[email protected]...... >&.0...5y....-..D..H"j.JD$ .G..y..D[.<....7GU.x.nw...... (*J.%.:w....G .....PQ....(...... kE...... H.%./..g...b....

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\4247[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 1 Size (bytes): 1138 Entropy (8bit): 7.661588465921263 Encrypted: false MD5: 3703C5374AB76C3365E38AEB3ABF0E92 SHA1: 193063FD444956EBBC6F85AD3CF3822324ECAA25 SHA-256: 80322FDBEA111BAC0D68D8C2A03D78A609317CAA9B634C1B6E5AB38AB6192E8F SHA-512: D7EAD3728E922E64E78688ECD5BF8098345133FB702F6272A99F81C79CED4A9CE6D8C429B0D28758DD6DDA56C2C34E6B756C9AD6EB7545904BB4BEDF713B6C 35 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/4/4247.jpg?1589220487 Preview: ...... JFIF...... C...... !...... "$".$...... 0.0...... 0...... !.."1A.Qa.2#BRbr...... ?..0..Y..)G...*.. _...... |..l...Y.90.%..4 8....V..5..%6(.....X.T...S.O..F[....z....\.Gg.b.Zev..;.".~+f.+k....$...... 5...e...... IR..T....=k.8,~..&...d_....F#Kf:..C.IZ.$....w.dj>..N.5..n.~N/.!..u..h.....T.D..M...z..l8y.f.yg...2..F'. f...~RJ.iQ..4H.X.;gi.4a..l6....|8.._^S.hX&.d....._.p..y.iq.\.]...S. .{..?.I...... ya...Ct..w._...|...j...d

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\432[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 1642 Entropy (8bit): 7.843131664762596 Encrypted: false MD5: AE4CB2C6D3448197D40FC27CC38307AC SHA1: 3D6AF3B76BBDEF723EEFB6B9486E7DC41DD6460D SHA-256: C18DC7649B1AAF32C24A876C5FFB81A3D31379CC8FB2D539C250112EFCA830F6 SHA-512: 094160A5551D7442884F1A8E38F6B1E49C06FBD6AE732F7D28305130D1693D4470511FAE6B80070A8C0389147D7E0671649FAF969176BEE95A997D035DB73B85 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/0/432.jpg?1560304053 Preview: .PNG...... IHDR...0...0.....W...... 1IDATh..Kl\W.....;...... q.$..!I..&*....U.....b..6,Y.d..X.X ..@.....%E..ta.....:N...... sg.=..;..$c..A..u.{..{...5p.G.x...MD...... b1.....1...Gam.....i.....w.. =.....\.k...../..M.%+ ..@D...... ?...j......y...Z....(.R X..6.$...... B.~y.C...j...... '..p.x47>1..t...wZ[.D`d...Lk4.....:.R5....(...... L4w..g)n..._..l.....h...... _.+...... _y...MMS...... aq~..w...^.\...{....>..K...i"...... x...,.D...j.J.B)...x..K\.>.>P k:.38.G.4...tZ..~`0...qt...h...... D.n.<:...}.i..o...T..._.|...p...j:...@(.r..q../[email protected][email protected](...H1z0.c..4..W!.^.gqeg.Zk.8w..t.z]`

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\63[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5312 Entropy (8bit): 7.933345891303769 Encrypted: false MD5: 88DCE7E7E1B950399DF4DF33FEB8FC15 SHA1: BED52811A5C81D8A429FA749FF1508AC0C576D3E SHA-256: 180D39E3582E06E9B79E34715B1D9B4A0E78F0B48FEBDC3ED179BB5645E6F448

Copyright null 2020 Page 30 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\63[1].jpg SHA-512: 6325986D361C85E116BA7891891D5F14597855F68B915825631D256C1DA646BAD12CADAA910EDFDFA07A255B2BF7927EF7D93025CD7EA5911AC5BC4821F78C52 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/0/63.jpg?1581355652 Preview: .PNG...... IHDR...0...0.....W...... IDATh..Y.$.u..o.2...... Y0.g.!.. .Q.,Z.e.../...... G.'8..Y.PX.iY...... 9 0.,=...{u.Y..m...... <.|gy....!..>.....y. .. ."@....o...X.....}^.x...... A.....!...... 8 ....EJ...... olm...\...J...... R0...... H...t.....N.EmJ..(.!uBe$i."."...:EkM...9.R8.Qr...!@$%..q.aa..s....N)#.3.B`...... ,w..k..nBP...... E.Dh..ZS;K][email protected]... ..X.Ws...... x ..f..'.1.X.H...y.1..&...I..)M..B...... Dq...c.x~Z...>..(F.V..c....8r.p.....Bc...&..BH...g4.t;m.....g..vvK.V...c.g.z.w.Ya..4Q.....1.,...... @L.#.....'..I..'..Y.-$.....$..>\...:...,R.y...)U.y...... "%8.0. r}.E....T.AP.(+G+.{'...)..iM.."..6.G...%B...(.~1..k....KR.E....hO@.&..;....B..M...<..8 Or"...`...... r....2...9....US&.U....y.`P..!....+K...... 2.h')....9...O7.p..0U[.J...... M.I)(....b.N{.S... .6...u3...i...)JI.R$I.xVssMp.v.J.....v.*.l...J..H...&...V."e.8e[H...dq.u...Wi.._...R./|....>...,Y&!x*c.*aR...$QJ$%7.rn.f.....ol!...~....*b....Y..5..p..:."....O..lw

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\7712[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 3780 Entropy (8bit): 7.938087199801256 Encrypted: false MD5: 5FDB48F8C8E172BFEE31B81AB864223C SHA1: 519FAD59C9AC86C43C8D6B9E2F26D1CF75B054ED SHA-256: B86ED42DBE75CFA451B112A470F9057FC2F160F54FA37158624DB1632B00AF1A SHA-512: AF509C057CE260476602EA41FB51DF2BF66D0AE8881433FB422B059EB4203477AE327C8C532A2AEE51F4213CB1D8E2E33C3001E5CC9007DFFE2C0CA227E0378F Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/7/7712.jpg?1583458929 Preview: .PNG...... IHDR...0...0.....W...... IDATh..il..y..sf...%y)..).Z,j.e.Q#Y.c.nb.I..i..A...... @[email protected]~.HZ....]..N..c;.-%.cY.ek.DQ"EJ...... m...gf..IQ..!....y.9g...... |...6.c.n...;p.. ...m....n...... I.....ti.]|..~..5.M..: >...*.+...U.4"...... !.B.0`....m)~.n...._.{...... `[email protected])...... (m....I..G."..(..j.$..^... tB...o(...P(..>2.....g...>..Gk...!%...... Y.. ...Nj...)C.uhN....5.&..."D..4=l..Y..P..Md.k..p...... N...&...... #.J.I{.R).G...\...... "*(S....g...4.mVb..0HI...... *.3...._d..b.@:..R..^..>...m...... S.....1?_.\)....i.w..A.%L.dbb.k....e....."!. t..e..0.2.F.f....&q..v..8.....M~~.$.2....]K...... '....>.%W#..o.K..(.05y...z...f..;.e#K...... "...... ,a...... %...&Ei&.).....R..\..`d..7.g.64...k.k..FFFy..1.n..=;...F...... Ad:..%...J 8w...z....{...... C.}.t&..^...... :!.:H...6...;.B%t@JI.\../.c..,...... ,.\Bkk3/...g.]`.'vr..j.(...Ay..5BH..0H.[..i.]E...bY...y...... K..|.....').O...... hBxc.}m!$B.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\7716[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 38321 Entropy (8bit): 7.825228110546241 Encrypted: false MD5: F755E6630E86983A1140F6D37A185645 SHA1: BF9EC9EA6D9F134C7F5DF31C342BA73D2CEE19FC SHA-256: 1B8431A49B3E31E6237305AD9B00384E6459933CA98C1423F6943924ACBD54A9 SHA-512: AEA10D0ACF7E32694F0C50743114A73061C53C1C11C2488DEF042DD1A0BF04A767C2B42A088ABCDD952878B2DD60CC4D29B7F2DD13A34BB90C8689012EACBD 92 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/7/7716.jpg?1593617731 Preview: GIF89a0.0....EGLKNSXX]KR^kY^Z]eOW`Xek[m{\~tgeiujhwslgmwxlums{gxzwwxmriph^.ns.yv.xs.x|r.z..v..y..n..x..|.~^l._p.ao.cm.dq.ju.|}.t{.q|..}.z..|..~..v...... !...... !..NETSCAPE2.0.....,....0.0...... q....&| {7..;[..y..[.>..Y3f...b...... /\V..C....j.z...... "..[...0v,..c2l.E.c.F..n...2&..,[email protected]\.A<}f.v.V5k.....)6m.....n\.e....B...]..D,..k...M..Q...... ;r.m...j..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\8200[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1907 Entropy (8bit): 6.864953580519546 Encrypted: false MD5: 7C32CDCCDF95E7654C3D0198DF8A28EF SHA1: 52ADC4EF4EF8B74750B2963912E0606F9D79B850 SHA-256: 481B96BEB0D7177848319CB27673DA22E3BA146405DA8D6643CAB565A9D5F047 SHA-512: 2A29169A1192A9D0B44C79900B989CCC0CE7CB6C4C9770BD1C4E0B9C7EF0C674F46246D5541441FDBBF76A79841770593CD81B19035EB0A34CA183DFA04572DF Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/8/8200.jpg?1527432120

Copyright null 2020 Page 31 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\8200[1].jpg Preview: ...... JFIF.....H.H...... ICC_PROFILE...... lcms....mntrRGB XYZ ...... ).9acspAPPL...... -lcms...... desc...... ^cprt...\....wtpt...h....bkpt ...|....rXYZ...... gXYZ...... bXYZ...... rTRC...... @gTRC...... @bTRC...... @desc...... c2...... text....FB..XYZ ...... -XYZ ...... 3....XYZ ...... o...8.....XYZ ...... b...... XYZ ...... $...... curv...... c...k...?.Q.4!.).2.;.F.Qw].kpz....|.i.}...0.....C...... !...... "$".$...... C...... 0.0.."...... 4...... !..1AQ.."2aq.3...#Bb...... *...... !1Qa.."A....#2...... ?..". .4.Kr."...<.....gg:..q^...... rF5X."..L.+qt'...g...jgu.....(&.S.5~^.M.>.m...... 1.....).w?.V.#.w...<.L.v

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\8243[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 5291 Entropy (8bit): 7.950250679356917 Encrypted: false MD5: 4F32099822C216B6E390023890229A69 SHA1: 4A7EF2F1EB857C4A5CF9019FDACF223D49A94DF9 SHA-256: 5584DA9EB9B3596EF123F11D96EB32409EDB2D9D328EF9714B083BCC442258B1 SHA-512: 7198CEA926B0A59A872C9F9B94E7BF37ED246230E55F68FBD623D292886D2C6F46D9C042A009EA7858729DE0B46399CA29C10293E65AB6B17079F6BE1A7B996E Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/8/8243.jpg?1595792327 Preview: .PNG...... IHDR...0...0.....W...... rIDATh.U.Y.l.q..=...... 4-R.YaF..../....7.v8...R..IA.t...L{J?.....t.TT.2s.ZG....E. .g..D...... #....?z..X.)..G...O?.g.<...z^.Z...... a..1...sb.G....~ s...._...... 5_|...9...? 9#.....d.R.O...(...... ?.=..c..hh..O.?..>..Y...y..q.am.-...X..zz...A...}J\...._~.....'N....5..(..} .., ./.5X...HM.L....x...v.R....WW...O..'....ya...)...... Z+.Vh..j....E...P8.. ).d.8v..W....k...(J..?.T.. JM..A)...... Bh..!....7...\./>x.o...... g..i....,)\.1.}y...H..v..Q([email protected]..?...... '....=....G.W0.[@&.!.....>.H.~.\...}..tb.....?.?...y~s..p.P..3.c..Z..?.$...`2...\.t....P ...r...... (mX?.eBK~...0..B...... O...^.}..F...O..K..W.e.1..4...2...... (E...... D.(r...... (2.LFk...... _..7...X\...._".t.,.F..\2..%...... y..._|.j...... "..$.L..0U..`.T..=Z.r..0....1 9a..|._...... c ..\[email protected]...?..*.v..F3.*.["..V..3...... $tV.lP.J.H"..m...s.Zz?2.....p4.Ei...y..1.3.v;.o.LG.!K..{..(.N...u"H"...jW.x..._.|.*,J+. ...F../xz

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\8353[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit grayscale, non-interlaced Size (bytes): 1801 Entropy (8bit): 7.8797007836490955 Encrypted: false MD5: CE6AC25D0A0A66ACA3502D732A9A1F0A SHA1: 0103784D1E1A27EC4FF1BA734B5C9A5745FBF489 SHA-256: A963012C5A93B88875EB778471DFA0947F369E358A5FED0A5A7DFBBF926350E3 SHA-512: BE92599623161E4983C7CEFFA395D7F096CC98C1A49D2F638E460F3C0C8E93442783BD705BC16302893100C437459BED4ED1676B9EBE3EEAB32DD8FFE5241FB D Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/8/8353.jpg?1596999106 Preview: .PNG...... IHDR...0...0.....ri.[....IDATH.U.Kl.W...... =...83..c.v^n..E..i.UP+U-.X....A.5KV...... [[email protected]%.Q..q.8...x..Ll....X...... k. ..A....S.V. ..8...... HS...y...... ]/.~...xA.I.P...O.'.O.].h;..{{m...|...... yk.bw..s...F...... I.%.[_b...... }.Ua3..0...V....=o.4....xwB..472..:....6Z.C.....k?....]l..m....q`..:8....Z.$2.=N.`....K.o6n..LC.. ..t.cCVJA..A]..V.+..3M#/.<...... f...e..OY.n...... h.!i..Oe....0..3.2.A.I.~.l....U..Q..FD=?....f.)5..g|.4P..T..Eo8..$v...w-..T...... V:...A...qt.0K0..VM.]K.C.pm/..$.Z.z....I.....vu.(..B..:q ..>.....O..v.^.S..W8.7.m3..:Bj.p.M...... E...... yP....-.n.h{~...... <".#..Q;...=...z...... Q$.H0..'..2M7.f.....O..M.j).....b.k"...v.E.8J.@"Ds.DT..L.8...~...g/.{.".,...n.g.'.]..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\9329[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 26284 Entropy (8bit): 7.576877755121383 Encrypted: false MD5: 1FBB4A4486F60FCFD67013C04C44F539 SHA1: 934432E2D966D15B14264CFDD40124E63F51462F SHA-256: DEE772146A93D22BCBEFACD352DA698545E3A7292424F7EB941CBBDF211617DB SHA-512: B6BF911A18610F3A015C9FC417981E4241410BD9E1AFCC0E0C01B712B6036AAA5B7972C1168080C97E66C2C6C6E52880E92A1A0CE9202A460272B204AA38FDB7 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/9/9329.jpg?1595667855 Preview: GIF89a0.0...... -..+.."..+..8..*..,..&..3..:..3...%.3:.,#.4".<".8$.,*..)6.27,(%7+#;4'"8<'782>>986I..E..P..C%.M*.G%.S&.a).p+.C,#L+!H!$S.#\/#C4,M;,G4*U0% [2%]5)U5+I<4X<0b2#l5$b6)d9+k;,j7'{5!s>.{>-w7'r?0<@-PR._}.fx.GG:^F9ZE8NK/|@-uO/bC5dJ*.?).:&.B..C..E/.F/.F4.I7.L;.N;.G3.J3.M5.K7.W;.R>.P8.M5.Q6.S<.U:.Z<.g;[email protected].\F.^[email protected] .j[.vX.q^.cN.`J.cL.hY.bQ.ub.uc.t^.|g.vat...... Z..b..k..m..v..|..s..s...l.o.s..{..v."}...... !...... !..NETSCAPE2.0.....,....0.0...... H..A..9k.L.1f.%

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\FeelsKek[1].png Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe Copyright null 2020 Page 32 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\FeelsKek[1].png File Type: PNG image data, 28 x 28, 8-bit/color RGBA, non-interlaced Size (bytes): 2455 Entropy (8bit): 7.923780614019864 Encrypted: false MD5: 357CE4E5F26DD119C3BD9857B1E8C2E2 SHA1: 74027393C0CDCAB5EE14CE54DF316D4FA0111D81 SHA-256: 47F268C0F7ED048F1BC8AB63CAEDADCFAAC4DB076E79CEE836D85676FFDD1D4D SHA-512: 8C252AE9DD6005A4D6BDE45741B4222F82DA6E14FD6CD7F5D6349EF5C942255F2DA966F4D2A8822FA983CBE41E727A0E0FCC8398F45C3ABAF206B998C5BD3C9 A Malicious: false Reputation: low IE Cache URL: https://incels.co/logo/emoji/FeelsKek.png Preview: .PNG...... IHDR...... r.....^IDATx.u.}l.u.....y...zm....F.mu/..9^4a00.l2....L...!.2..5&....(...... &...v}Y...w..s..<..Lc.&~>....\...... Sg.N.u.[./.'.Ti..&P._...... [email protected]....{....w.PM..Ky...... $?Z....i.om.R..H[@..6..]...K.d~.<.h...... x5C}r..-.W\.L.Yq..2.s..~...Aj[<.+...".]5...\....E. at_...Y.K._....W=..[.W.}u...B...c>t....d.,}.'...... Rz#:...j.4.-.f...Q.5...?..$...|.q...pG.l.4.,N...... )%R...... L~2.ew.P.....*.e...!..)AhUb....^=...g.....[.lQ_y...@k^.t+%[..3...P-:.....L.UU.|....T...... 4.lr...... I6...... -..DW.&..l.K.0...... h..T...... !Pu.E.,M.X..S.;h.B5.+....2?.D...... =.zW... aw....{....._..A.]@.\..d...c.UpA.`...7..+...P....d ../.!.....$g.d.}.....!....T.....X..v..l....A .....=2.*[email protected]...... j.....f...uy...RX,.OU.t..L....E.u.O.8.jR....\.$..8.E..U...... 3..{.\G.... .Ov.....8....k._M.]#=..~...+.4..A...m.f.-.T....y2..1.iZ4....}.;.i...... W.vZ..../b.%..J!.#..\..fn..F6\v.3.....BE!9.#3S&9...x...Oav.b..Y..K8.!5....j

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\FeelsTastyMan[1].png Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 28 x 23, 8-bit/color RGBA, non-interlaced Size (bytes): 1716 Entropy (8bit): 7.853599269086683 Encrypted: false MD5: 9853919A1150CD1BE00FCDC1E2201739 SHA1: BD94A9ED26D74A5F377A3A94D34A4A3138C3FA3B SHA-256: B0CF9ABAD8E002D7652CF642F34E0672EA87BF0B165AA303CC3A281B3C5C031E SHA-512: A8596EAC7F75FFE6F68082027A4A813D82AC35F0BEC1A2BB3E9F2A75AFEC8A7642F75326FA32325B1572460C2133C533E9A74C2E23E9783165B4C9C8D496A455 Malicious: false Reputation: low IE Cache URL: https://incels.co/logo/emoji/FeelsTastyMan.png Preview: .PNG...... IHDR...... /W...{IDATx.}.{lVg.....y.9...oo....9d#YX...H....a..s&Fj...&F..S..d2.y.s..85.&..7"#.ml\d....^...... 1.]}O...... [,...O.[.u.}.Pv. g...:...<.{.w.Pn.n....W...2)x..d.....zE. ".@(...... \..h..].G.D@D...... x..;.^...... P.:...... [email protected][email protected]...... A.E..nZ.....[....5O.|.<...i..D.....(bD..:.h&.Z..P@D .4.:J.q...... G....?....(.C.}.....^..JR.\....c...... @\N.2.k...... )..X'k...O..F.lm..m.D....~..M...f....#.^:...... zPI..y...Z...... 0F...L..;(...... ,...j..&..i.q....O..8..`...Nfu...*..]=...... NJ.V-.M [email protected]....!F....+.E...$...... i. +...f...*.z...... c....|].F..(.>...... %.O...0.?@Sf,..~..u<....P...qc...Z...... J...(...... {.I|.?....e+p.a...... i...<..o...... >|.r./...... k.NV.|.@e.._....".n.r.....m'... .,_.q.$...... 5.#N.8..g.t....&...$.QU.0.7...>.4.':*Q...?.B6.r...... ?GMm.7;u.$...... g...~...... v..;.^.G.....K....J...iLn..\..R..`.2.....x.(...... 7..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\NewErrorPageTemplate[1] Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: UTF-8 Unicode (with BOM) text, with CRLF line terminators Size (bytes): 1612 Entropy (8bit): 4.869554560514657 Encrypted: false MD5: DFEABDE84792228093A5A270352395B6 SHA1: E41258C9576721025926326F76063C2305586F76 SHA-256: 77B138AB5D0A90FF04648C26ADDD5E414CC178165E3B54A4CB3739DA0F58E075 SHA-512: E256F603E67335151BB709294749794E2E3085F4063C623461A0B3DECBCCA8E620807B707EC9BCBE36DCD7D639C55753DA0495BE85B4AE5FB6BFC52AB4B284F D Malicious: false Reputation: low Preview: .body..{.. background-repeat: repeat-x;.. background-color: white;.. font-family: "Segoe UI", "verdana", "arial";.. margin: 0em;.. color: #1f1f1f;..}.....mainContent..{.. margin-top:80px;.. width: 700px;.. margin-left: 120px;.. margin-right: 120px;..}.....title..{.. color: #54b0f7;.. font-size: 36px;.. font-weight: 300;.. line-height: 40px;.. margin-bottom: 24px;.. font-family: "Segoe UI", "verdana";.. position: relative;..}.....errorExplanation..{.. color: #000000;.. font-size: 12pt;.. font-family: "Segoe UI", "verdana", "arial";.. text-decoration: none;..}.....taskSection..{.. margin-top: 20px;.. margin-bottom: 28px;.. position: relative; ..}.....tasks..{.. color: #00 0000;.. font-family: "Segoe UI", "verdana";.. font-weight:200;.. font-size: 12pt;..}....li..{.. margin-top: 8px;..}.....diagnoseButton..{.. outline: none;.. font-size: 9pt; ..}.....launchInternetOptionsButton..{.. outline: none;

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\Y2UXKYG3.htm Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: HTML document, UTF-8 Unicode text, with very long lines Size (bytes): 58762 Entropy (8bit): 5.306950995622729 Encrypted: false MD5: 871BA8A3E9618269D2B2BBC0906F19FC SHA1: D5947D3DCE97B17B4C94640257A00CBD20509BF6 SHA-256: 623BF9864C4556AA6447623B7361A33D1DFFB2D0D36CE6BC5F4623ECFE50106E

Copyright null 2020 Page 33 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\Y2UXKYG3.htm SHA-512: 2689BC2A307F0FB349323684A354C3A2201AD685CA3909FF5DDB6C76EA030CC130B31F17C8304A21EF6656D7CC4CB609D3DD0886728F8B34A47FC414D719AAB6 Malicious: false Reputation: low Preview: .......Incels.co - Involuntary Celibate..

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[1].css Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: ASCII text Size (bytes): 444 Entropy (8bit): 5.092405490657264 Encrypted: false MD5: C51419E5EB672222106F51C5C4B09339 SHA1: A9929C10B106890C79B63FB07665E9E32DD34051 SHA-256: E6F4EEDC7AB443412B727D5768CF8A8DB31CCF6976E1B1FDF88DA76D95DCE6D0 SHA-512: B2EF58CE3AE8BB793E8A1713BA4CFD9C2D635FF55F276EBBCBE56E17921DD2CF3921EB0309281EF0088AE3042797A2AECFB9BC38C64B80EC061F3283A79976 4F Malicious: false Reputation: low Preview: @font-face {. font-family: 'Roboto';. font-style: normal;. font-weight: 400;. src: local('Roboto'), local('Roboto-Regular'), url(https://fonts.gstatic.com/s/roboto/v2 0/KFOmCnqEu92Fr1Mu4mxM.woff) format('woff');.}.@font-face {. font-family: 'Roboto';. font-style: normal;. font-weight: 500;. src: local('Roboto Medium'), local('Roboto- Medium'), url(https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmEU9fBBc-.woff) format('woff');.}.

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[2].css Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: ASCII text, with very long lines Size (bytes): 29957 Entropy (8bit): 5.063696003156828 Encrypted: false MD5: 8796B342C0DE9976D4830154017E28E9 SHA1: 5081356B77E1EFDB098868A243E1D1BA31F300DB SHA-256: 161EC9B73F77A5CBCB34B7D7B74144F0F51F17B5EB36DD889FC70A02E90FEEB2 SHA-512: C47B921A6A70776DF9B6EB0C868E52668FA1E39D30160E939231F9A0300F8E390F003CECF325FEAE3158C7B4E69E429C8D37635B71B981F580627A64F172A931 Malicious: false Reputation: low IE Cache URL: https://incels.co/css.php? css=public%3AUserActivity.less%2Cpublic%3Anode_list.less%2Cpublic%3Anotices.less%2Cpublic%3Astructured_list.less%2Cpublic%3Auix_socialMedia.less%2Cpublic %3Aextra.less&s=20&l=1&d=1596657877&k=faa0e02ba1503dc3734ba795aae72c7fecdc6012

Copyright null 2020 Page 34 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[2].css Preview: @CHARSET "UTF-8";../********* public:UserActivity.less ********/.#uaThreadViewContainer h3,#uaThreadReadContainer h3{color:rgba(255,255,255,0.7)}#uaTh readViewContainer h3 .footnote,#uaThreadReadContainer h3 .footnote{color:#a0afce}.uaViewerCount{font-style:italic;font-size:80%}.uaLastSeenBlock{display:none}.. /********* public:node_list.less ********/..block--category .block-header{display:flex;align-items:center;font-size:1.5rem;font-weight:500;border-bottom-width:0;border-bottom- style:solid;padding:16px;padding-top:0;line-height:1}@media (max-width:900px){.block--category .block-header{margin-left:-10px;margin-right:-10px;border-radius:0;bor der-left:none;border-right:none}}.block--category .block-header.uix_stickyCategoryStrips{position:sticky}.block--category .block-header .uix_categoryStrip__icon{align-sel f:flex-start}.block--category .block-header .uix_categoryStrip__icon i{font-size:24px;color:#3867d6;padding-right:12px;vertical-align:middle}.block--category .block-header .uix_cat

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\defer.min[1].js Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: ASCII text, with very long lines Size (bytes): 17930 Entropy (8bit): 5.204701851859405 Encrypted: false MD5: 7EABD2BD0A53D22C78B44D6BB37B13FB SHA1: 038EF5DC0BC56E4FF4A242129EF5FBCEDC7A7E93 SHA-256: 16400BB4AD834FE2655A58125533B3030FEB708B32D9772A0FB619C1A38224FF SHA-512: C5A2B1A6CCFBAF640D10C585B2D170C860D0DC9C84617588EBA0F3FD65401FF78B8392B2ACF5E331A879255AC0E88A4FFEA2FFB2DD0456538A792C005A58D41 1 Malicious: false Reputation: low IE Cache URL: https://incels.co/js/themehouse/uix_pro/defer.min.js?_v=337639ef Preview: (function(f){function h(g){if(k[g])return k[g].exports;var e=k[g]={i:g,l:!1,exports:{}};f[g].call(e.exports,e,e.exports,h);e.l=!0;return e.exports}var k={};h.m=f;h.c=k;h.d=function (g,e,b){h.o(g,e)||Object.defineProperty(g,e,{configurable:!1,enumerable:!0,get:b})};h.n=function(g){var e=g&&g.__esModule?function(){return g["default"]}:function(){return g};h.d(e,"a",e);return e};h.o=function(g,e){return Object.prototype.hasOwnProperty.call(g,e)};h.p="";return h(h.s=4)})([,,,,function(f,h,k){Object.defineProperty(h,."__ esModule",{value:!0});f=k(5);h=k(6);var g=k(7),e=k(8),b=k(9),a=k(10);k(11);(new f.a({settings:window.themehouse.settings.inputSync})).register();(new h.a({setti ngs:window.themehouse.settings.loginPanel})).register();(new g.a({settings:window.themehouse.settings.sidebar})).register();(new e.a({settings:window.themehouse .settings.nodes})).register();(new b.a({settings:window.themehouse.settings.tooltipFix})).register();(new a.a({settings:window.themehouse.settings.minimalSearch

C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\dnserror[1] Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators Size (bytes): 2997 Entropy (8bit): 4.4885437940628465 Encrypted: false MD5: 2DC61EB461DA1436F5D22BCE51425660 SHA1: E1B79BCAB0F073868079D807FAEC669596DC46C1 SHA-256: ACDEB4966289B6CE46ECC879531F85E9C6F94B718AAB521D38E2E00F7F7F7993 SHA-512: A88BECB4FBDDC5AFC55E4DC0135AF714A3EEC4A63810AE5A989F2CECB824A686165D3CEDB8CBD8F35C7E5B9F4136C29DEA32736AABB451FE8088B978B493 AC6D Malicious: false Reputation: low Preview: ..... .. .. .. Can’t reach this page.. .. .. .... ..

..
Can’t reach this page
..
..
    ..
  • Make sure the web address is correct
  • ..
  • Search for this site on Bing
  • ..

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\down[1] Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 15 x 15, 8-bit colormap, non-interlaced Size (bytes): 748 Entropy (8bit): 7.249606135668305 Encrypted: false MD5: C4F558C4C8B56858F15C09037CD6625A SHA1: EE497CC061D6A7A59BB66DEFEA65F9A8145BA240 SHA-256: 39E7DE847C9F731EAA72338AD9053217B957859DE27B50B6474EC42971530781 SHA-512: D60353D3FBEA2992D96795BA30B20727B022B9164B2094B922921D33CA7CE1634713693AC191F8F5708954544F7648F4840BCD5B62CB6A032EF292A8B0E52A44 Malicious: false Reputation: low Preview: .PNG...... IHDR...... ex....PLTE....W..W..W..W..W..W..W..W..W..W..W..W..W.U...... W..W.!Y.#Z.$\.']...LpX=f.M...H4...... =...=..xy.[h..7....7.....<.q.kH....#+....I..z.....'.ksC...X<.+..J>....%3BmqaV ...h..Z._.:<.Y_jG...vN^.<>[email protected]....?...1D.m~)s8..&....IEND.B`.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\errorPageStrings[1] Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe Copyright null 2020 Page 35 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\errorPageStrings[1] File Type: UTF-8 Unicode (with BOM) text, with CRLF line terminators Size (bytes): 9440 Entropy (8bit): 5.164796203267696 Encrypted: false MD5: 9FDEE838E7C036092E81A4E7CC949643 SHA1: 364FC6C36972FFD803E5999AD501F3D7A2216FDF SHA-256: C6BF586821E13F7F6D6EF75AA82E69BD5E3E1336615C85AE513C70704F5C0787 SHA-512: 622BC3BD9F0615C191B03F2E8D018867C9D9ADCF1015DA5FB4D3462D71512B72558B32CA9F74A925C150B57FD232ABD48AFFC8D32128C50540DF02FCA8ECBB2 B Malicious: false Reputation: low IE Cache URL: res://ieframe.dll/errorPageStrings.js Preview: .//Split out for localization...var L_GOBACK_TEXT = "Go back to the previous page.";..var L_REFRESH_TEXT = "Refresh the page.";..var L_MOREINFO_TEXT = "More information";..var L_OFFLINE_USERS_TEXT = "For offline users";..var L_RELOAD_TEXT = "Retype the address.";..var L_HIDE_HOTKEYS_TEXT = "Hide tab shortcuts ";..var L_SHOW_HOTKEYS_TEXT = "Show more tab shortcuts";..var L_CONNECTION_OFF_TEXT = "You are not connected to the Internet. Check your Internet conn ection.";..var L_CONNECTION_ON_TEXT = "It appears you are connected to the Internet, but you might want to try to reconnect to the Internet.";....//used by invalidcert.js and hstscerterror.js..var L_CertUnknownCA_TEXT = "Your PC doesn\u2019t trust this website\u2019s security certificate.";..var L_CertExpired_TEXT = "The website \u2019s security certificate is not yet valid or has expired.";..var L_CertCNMismatch_TEXT = "The hostname in the website\u2019s security certificate differs from the web site you are trying to visit.";..var L

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\fa-brands-400[1].woff

    Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: Web Open Font Format, TrueType, length 89824, version 330.49348 Size (bytes): 89824 Entropy (8bit): 7.996209129687903 Encrypted: true MD5: 5ACDCE135A98109C2ACFB68B38562415 SHA1: 2890D5CCBC2DDEF56205CDF8445CCF0E9A03ADC8 SHA-256: 36FA313780754526CE6C390C5A6F4D9438B6F13A6B02EEE2AF08570A8DBBD861 SHA-512: 3D91B0B26863AB1227E1AE1074B0D81DFAB2A90DF80B8DA1E91C8F54217195D703013816DA5155B8B4F260C3DBA3FD5025A6B9BEBBB26E05C58DFAD99D3E32 D4 Malicious: false Reputation: low IE Cache URL: https://incels.co/styles/fonts/fa/fa-brands-400.woff?_v=5.12.1 Preview: wOFF...... ^...... x.J...... FFTM...0...... *.0GDEF...L...... *..OS/2...l...L...`B.V.cmap...... E...... gasp...... glyf...... [email protected]`...3...6..o.hhea..I....!...$ .6..hmtx..I....z....R...loca..L4...|...|....maxp..O...... &.Oname..O...... post..Q...... nx.c```d....?A....|PZ..HI.z...... x.c`a|.8...... 1.....J.e.dha``b`ef....\S..>4..g< ...... 0#H..q).R``..}I.Dx...}h.u....nW...s.t...E.e8.*5u.....F.EE.$n....K..r.*).i.Y.3..f.m..k.[.&3..4....<..y4\?.#"...... ~..>.3.#.4....F._.X....+..(v....&w...f..&.4z...... h.-.U.6..f.F.h?..G:E g..|..y...$....c\.5<..p=..8.-..[.S..|...G.9yQj.A^.7d...... v.R.J..%#..'.rZ.H$..!.x#.....>...=..x.z.....7.....=.^...... }..>H...Ay.!..t..W.U.zT-T...... *.>R..6...#*...eay....]aw...... ".50`.n].+.v.zM. ^s...... j.Wc.k..z.Z...(C'.....&..r.....h...).....2^.y3o....A..s^..P..K..5Y!). .J..j...!].[{e..^...... a.(.5./^..I.L....&...z...... A.>.uK8...f..$...5.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\fractal2[1].webp

    Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: RIFF (little-endian) data, Web/P image Size (bytes): 49962 Entropy (8bit): 7.994520630442971 Encrypted: true MD5: 0E21B8C635B56ECA6E04BDBE1B887CE0 SHA1: 522413BE0BBA6E6FD83611142ACD761B44C7DC88 SHA-256: D98B2DFDB9ECDD763772828A32EAA4065C906B924615A217CC4B6181A51CB99A SHA-512: 01190A2146A9FC2248AF7E3C81003D79E1D2A55BED7215CA160C4F497582A23ED765D9CA3E676222BDA3D9565EFC195E68EFC1D4126DD73366C65F0AE45F5742 Malicious: false Reputation: low IE Cache URL: https://incels.co/logo/gifs/fractal2.webp Preview: RIFF"...WEBPVP8X...... ANIM...... ANMF^'...... 2...VP8 F'..p....*....>.<.I%.!.*.l....ll.1...n..U...... ~s.....x....+.O....D...G...... s...g.?..?j.....y....O...... q..?Y...... ? .~...... ]...... s...... /.....7...^v...E..2.F.!M...W.NX...1CD.'_s....e.]I._.(.&.c?...<&...L7#.o..(....7".<:.".}...x[.o.x..H..7P.C=b..MY..3)4..<...LA.[B.$.....6...P...mx.$1~!f.F(.. .z.z.w'.v.`^...0...C6...j!W...v.%cU@[email protected].....].R...^...H..9$.".A.0li."+..l.3...3K...0...:..` .Le.v...... /.H.M...... _iF...;#R.m.8,.r.J0...jN.b...G(.....3<...... `.I.H.7.....%.P.-...h..v...... 4..f...OwF....~.>d'95.d.Q.[.2... cG. ...:.u..7...... 5.T.E(L'Edc%.W...z...... Q.9.Gw..H`.iw.kV.I.w.v...... Q....<..#...... Q.b.*..K..~....&J=.5...... +.Ht..>.....>x..jUS.Wn..U...... , .jy&C...._.-.L...2.} xT....#.\...1....t...... -S..1....%...5...... l...... O.5.... .zaQx...i..w..X.8.f..f....c..28w..9g.X...3y...... JiA..A...... y..

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\httpErrorPagesScripts[1] Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: UTF-8 Unicode (with BOM) text, with CRLF line terminators Size (bytes): 12105 Entropy (8bit): 5.451485481468043 Encrypted: false MD5: 9234071287E637F85D721463C488704C

    Copyright null 2020 Page 36 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\httpErrorPagesScripts[1] SHA1: CCA09B1E0FBA38BA29D3972ED8DCECEFDEF8C152 SHA-256: 65CC039890C7CEB927CE40F6F199D74E49B8058C3F8A6E22E8F916AD90EA8649 SHA-512: 87D691987E7A2F69AD8605F35F94241AB7E68AD4F55AD384F1F0D40DC59FFD1432C758123661EE39443D624C881B01DCD228A67AFB8700FE5E66FC794A6C0384 Malicious: false Reputation: low Preview: ...function isExternalUrlSafeForNavigation(urlStr)..{..var regEx = new RegExp("^(http(s?)|ftp|file)://", "i");..return regEx.exec(urlStr);..}..function clickRefresh()..{..var location = window.location.href;..var poundIndex = location.indexOf('#');..if (poundIndex != -1 && poundIndex+1 < location.length && isExternalUrlSafeForNavigation(location.su bstring(poundIndex+1)))..{..window.location.replace(location.substring(poundIndex+1));..}..}..function navCancelInit()..{..var location = window.location.href;..var pound Index = location.indexOf('#');..if (poundIndex != -1 && poundIndex+1 < location.length && isExternalUrlSafeForNavigation(location.substring(poundIndex+1)))..{..var bElement = document.createElement("A");..bElement.innerText = L_REFRESH_TEXT;..bElement.href = 'javascript:clickRefresh()';..navCancelContainer.appendChild( bElement);..}..else..{..var textNode = document.createTextNode(L_RELOAD_TEXT);..navCancelContainer.appendChild(textNode);..}..}..function getDisplayValue(elem

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\login[1].htm Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: HTML document, UTF-8 Unicode text, with very long lines Size (bytes): 32417 Entropy (8bit): 5.405227205325355 Encrypted: false MD5: 55919A7B04BE5D87B244848B5CCE51FD SHA1: 987E992E5A9170AD9F206461645AF6CF7AD412A1 SHA-256: B4EE007A762A33F2B44FA12F13F3B1494A22A6C7C24AE61AAED98839D8DA0580 SHA-512: E53B5AAC9841CFCE5BF116C92BEF2735E086C99411C5EF3368291021B5A0EE4E2D372A4D8F12C58F3028F1BAEC74875F1EED85CFF80D323BAF44C8896C10A09 0 Malicious: false Reputation: low IE Cache URL: https://incels.co/login/ Preview: .......Log in | Incels.co - Involuntary Celibate..............OffTopic | Incels.co - Involuntary Celibate.< link rel="canonical" href="https://incels.co/forums/offtopic.4/" />..........Register | Incels.co - Involuntary Celibate.......

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\the-sewers[1].htm Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: HTML document, UTF-8 Unicode text, with very long lines Size (bytes): 315199 Entropy (8bit): 5.172321029139491 Encrypted: false MD5: 277FF941F46970026B67856D8CD46707 SHA1: 40A15B5AD4C85888F5694F4B212E0F4C6A70E8A0 SHA-256: 2528134EAB2917203D25B542B9854E5593624E4198825950B48F5062C9457BA3 SHA-512: D818D6C60B517F21E85C1509919875E79B2B467EAF6E93F3F7D236C240ADCC0D48C5ECABB912419B78F5CF8F9C2E4E6223CF7B9D658C8922880801FD23778379 Malicious: false Reputation: low IE Cache URL: https://incels.co/forums/the-sewers.22/ Preview: .......The Sewers | Incels.co - Involuntary Celibate.....< meta property="og:ty

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\vendor-compiled[1].js Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: UTF-8 Unicode text, with very long lines Size (bytes): 72566 Entropy (8bit): 5.3222357100712046 Encrypted: false MD5: 831364A3A7E82F64D54DDFC7A3983E2E SHA1: 4883FE7F4173AF48E4B738C420DEC5318FCC3114 SHA-256: 119706ABF6F2628DF34CC02EA9B4DAD78E7276C36DACA18C456AAB958B3AD655 SHA-512: BA2DAEDA76DFB9F1802966A4B1E0F2A631DA06723573057E5E62784A9D205897D52B37503E1BB49BC61BD65E9351F34B7C203BA564ECCCCCFF4A540C4B971DF 2 Malicious: false Reputation: low IE Cache URL: https://incels.co/js/vendor/vendor-compiled.js?_v=337639ef Preview: /*. Sticky-kit v1.1.4 | MIT | Leaf Corcoran 2015 | http://leafo.net.*/.(function(){var d=window.jQuery;var k=d(window);var J=d(document);d.fn.stick_in_parent=function(b){var w;null==b&&(b={});var u=b.sticky_class;var E=b.inner_scrolling;var K=b.recalc_every;var x=b.parent;var n=b.offset_top;var q=b.spacer;var y=b.bottoming;var F=k.height( );var G=J.height();null==n&&(n=0);null==x&&(x=void 0);null==E&&(E=!0);null==u&&(u="is_stuck");null==y&&(y=!0);var M=function(a){if(window.getComputedStyle){a=wi ndow.getComputedStyle(a[0]);var b=parseFloat(a.getPropertyValue("width"))+.parseFloat(a.getPropertyValue("margin-left"))+parseFloat(a.getPropertyValue("margin-r ight"));"border-box"!==a.getPropertyValue("box-sizing")&&(b+=parseFloat(a.getPropertyValue("border-left-width"))+parseFloat(a.getPropertyValue("border-right-wid th"))+parseFloat(a.getPropertyValue("padding-left"))+parseFloat(a.getPropertyValue("padding-right")));return b}return a.outerWidth(!0)};var N=function(a,b,t,z,A,r,p,H){var l,e;if(!

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\what[1].png Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 960 x 961, 8-bit/color RGBA, non-interlaced Size (bytes): 38945 Entropy (8bit): 7.917028567641356 Encrypted: false MD5: C49641463ADE4FBD6FC0C822A6EDA443 SHA1: 8E76A1F1DBC61D409C5662898877AFC68B989E7C SHA-256: 08B2AE4AEF0A196C8377CC6A167BA0339E55CA0042D497F47167BF4D39CFF3EE SHA-512: F5643040D4C33E39377DE267616A750F780199D69ECF8DE1AE1BF0ED1AD2DA64675C90166EF4068808BB66DD8F8B32B7007F1984787F64E3F10942845459A54D Malicious: false Reputation: low IE Cache URL: https://incels.co/logo/emoji/what.png

    Copyright null 2020 Page 38 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\what[1].png Preview: .PNG...... IHDR...... 1..>....IDATx.....+....Z.m.h.=.l.m..6.|m...n..i%..9.v...S...... `=$...>.g....5V.Luy...... Q*.1ME.....j...... 2V_T..J.....J....1.....V...*..|."..W....{.Y...(...}l_...... c..s.s.s.s'..^.^.^;k...\.....K.O...... g..5z..]...... Z5.|D...Ru.U...J..U.....V...(m.%..R..,...VLO).b.l.n1.XXL,6.#....bg1.XZL-.m.?..X...x...?...... c..3P..g+u.V%.=..~1.|.H!.....e1.X[.- ...... rc9.\..<...... X.%U%.V..(w.l.-.)....g.-.rT...F^..Z.-..[..:...... {.P.CUD?..3...y.Rf]W.. [.a9..[.X-XMXmH.O...... ?.._UU.c*.8N..(e.-..*...# n`.Rf..j...8U%<....v..A...... :5.}S...)..L..<. .q..|.m.".j+al..Ws...Y...... P.)..?...... l.|#.;.b..F.[mZ.Z.Z...... }C...(c.b...... r!..v..3V/V..V...... 7....Rf.Tt...... 4(..m..svuS..o...... S>...O+u.BE...... \..:...... [email protected].. ...1...H...... I.}H9;G[/YO...... +>..[.)s.B...j...@..[...Z.Y...... J?..k/*c.:...72...z.z.z.z...... A...... X.I..S;.2..z3c.&.U.Y...... t&M..T...n..

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\11159[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 41272 Entropy (8bit): 7.770658448139096 Encrypted: false MD5: 1EB639514362E9D27F62FB64686962B8 SHA1: 13FB6C0AB117A07C308DFDF0A8BAF7DEC99CF6BE SHA-256: BAB7E3E1E013538ED00F2CAF0F7C5C149996285BB6340FE527D96A0F6943CB18 SHA-512: 824D0A609418B3A9C3ED42F59D3D75D91382692A775DF0B0E4096E970BF8CA81B65610A8C6E6297B67880D0C11059628BB5EC2B16B5A928E6DC3CAB87FE028ED Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/11/11159.jpg?1590322381 Preview: GIF89a0.0...... #..#..+..+..$..%..+..-..%..).....4..1..;..8..:..=..>..;..<..>..?..?..<..0..0..2..3..2..4..4..6..5..6..4..9..;..;. 7. 7.!5.!8.";."=.#<.!>.%>.":.&>.%=.*?.)< - [email protected][email protected][email protected][email protected].!K.#@.#C.&A.&F.&B.(D.(C.(B.)F.)E.*E.*E.#L.#J.-I.-N.-K.0E.0J.0M.3L.1M.$R.)W.,S.+Z.,\.0P.2R.3_!3N!6O!4M)8K!,P!5S#;S$:T(? W#4[&\.3c.0i.4k.8p 6f$b .=d.J[.Ec.Bg.Di.Jm.Dl.Os.Kt.My.Sy.S}.W..U..]..e..e..f..k..d..f..l..v..|..s...... !...... !..NETSCAPE2.0.....,....0.0...... `A...:p. ....B>H.`!...... A....<.P...... 8`0..." >$..a..)..@...... 0.@...)^... B..!ZX.1.....0...... [email protected].*... \X.j...... S.H. 'f.p....f...... [...@x. ...%S8!...... U...

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\14866[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1173 Entropy (8bit): 7.405375033252013 Encrypted: false MD5: 1D23EADD40EA613CC6931351B28ACB1F SHA1: 1A8BAC8A5BE25B3F837E7AF83994C94F8675B4F4 SHA-256: 42BCA4FBCD23CE82F8691C77FAEE65266CEE4FAF3646E0D6BA7C356F242A30B8 SHA-512: B79850DE58DCD05CFB43410BB94040BCBAA4624BAF96993460EE0BC16B3543020FFFE92397898FC230AAF182B5D9DAD6289385E88DEBE756DCBB6132A00B855 5 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/14/14866.jpg?1596803289 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 1...... !.1.AQa."q...2 R..#B...... (...... !1.."..2Aaq...... ?.}.W[..N..?.j...R..IT...c.....d.^....p...g..Z...]..8....%..n.A..z.6@..".....g.#...4.~..Lt.N.>.....&. y..U.6rV8.'.xb...... U.7..Z8`p{.8 .=e..*....e.Z.%##C5*.M)-.d...1...... [email protected]...=6..w..6.C.....')H.I...\...Us....zhB..J.1B..$.=q.5...u.U.;e..'.=B.B....$g..H...K.... .*#[email protected]%~..F...:...... k\..._l.....5.V4.`EQ6....;...... :.."....H..D.Ul...d..r;{kk...... l..H<7e..u9.....L:.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\15705[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 111123 Entropy (8bit): 7.716541407143312 Encrypted: false MD5: CD48414CB4878C272569AE0EA47532D9 SHA1: E4485FCC0C0FB1723D21DDA6189228C09F85D1CB SHA-256: E2A8F5E91F16AD920BD2B7BE71281B73FBBB15A7E5520FC204C9C8044805508D SHA-512: FD3E64F1F39F0FFF91A017628BB9459E3D68DB96FDD6BDBDE8655DFB37A6EE8CACC0D90C271A57368F6C133E8480837CC0BE0A9B287E64D23ACA393848510D2 6 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/15/15705.jpg?1595682021 Preview: GIF89a0.0...... #..&..(..4..4."-.'6...$..$..'..5/./.$".+".(+.#$.%*.&*.-+.+-.(%.5,.7'.4,.7(.&5.,2.*8.<4.77.42.35.;5.<9.;:.69%+&)4$4:)"+4";=%793;=A.9.I..R. *G.8S.2K..z..d.+e.7k..Y+.C:.G3.C;.F9.W7.I.#F&7B')\(#F;:P4.k8.u<.o2'i4/l/GR8Gr0Bs.>.K."B.*G.2M.7E.7W.4V&;F.3J.:e.:hG.IY.NU.OW.NN.RS.P\.RK"SP!U.LC.DA.LB .FK.EE.UI.UH.JV.XS.XV$CB(GH4GI%ZI"IU%YT6XX8NR.hJ.fY.hY.vV.wN)gX0sM.Cl.Hj.Hd.Vh.Ks.Qu.S|.Z..Us.Tl!Vk!Kc.lc.hj.vh.wg.jx.wt.}p%ic7he6xu(spOpMkx [email protected]/.7..4..$F.)P.=..S1.Q..V'.P..j..x..y..z..h,.q..p,.lI.Ur.SP.EJ.st.\..f".f..jQ.Ut.f..t..u.Z.._..j..z..b.$|...... %..#.."..4...... ,..%...... "..%..".....J..,...... *...... '...... <..1.....F...... !...... !..NETSCAPE2.0.....,....0.0...... H...v...\X..Bw.!....y./:..1...... Hw.#.c7..=v..sine;.%.{[email protected] ...g.v.K..*.g.I.&.....Xn..T..TwH...GLU.J....[.\Mv...MJ.i...P.p...... [.fo.GC.....\Sf

    Copyright null 2020 Page 39 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\15705[2].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 192 x 192 Size (bytes): 15956 Entropy (8bit): 7.800094339701654 Encrypted: false MD5: E8385D15C1D274604ABB1DF682997AFB SHA1: 11512B493D49BE84FB43BC41DD4DF191943F3F4F SHA-256: B331987F9AFDBF039474532E0CBE89FF9EFE8143B5B6A558DD171BC50840A11F SHA-512: 69B81CE0322B8F672A6E404552E2B8CAF7EABB026B21F77A1892F651A10A204E1D90EA26DC8DA895B947B019B392D4C198AB8298E3AADF45C2B9C02781330C78 Malicious: false Reputation: low Preview: GIF89a...... %..$..3.(1...&..$..'..9*...)$.#%.%*.&*.++.*-.($.6(.6*.,3.)6.;4.45.:5.96.=9.;:.57.#9#34'99,4.%..B41.M.7V.-N..v.6h.,l..F(.V).F:.C;.F:.X 6.P0%H8.O/.g7.p-,n/BR.EM2Kq1En...A.+I.5J.6U.,K%:F3=D!6U/%M.7e.:e.;h.;b8.GZ.NU.NM.RD.RR.QZ.PH.LK!RF"QK&Pa.Q.LC.ID.DD.HG.VI.VH.HW.WV.VU$DD)GG5 GH&UI#GZ(XW5VX5PN.fH.eX.hX.vX.rL'iV/oR.Hl.Jf.Vj.Mr.Lv.Uz.Xt.Nq"Vj*Ud.hg.xh.gx.wx.oo(ig7gf'vv/soFTLIvLMrNgxKFtpNad...... -....6..7/..I..O.:..Q0.R..P-.S..j..x..v.. x..o..q..s..lH.TK.Nu.VQ.KH.uI.kb.e..X+.T..n(.p..yw.g].Z..n..c..u.W..Y..q.#y.!..J}...... #..#..-...... ).....&..'...... $..%..H..H....(...... &...#.R.)...... )...... *..8..1..D..C...... !...... !..NETSCAPE2.0.....,...... o..w...C.0.....5$.p..w...C.P ..!...R....:\..`....3...G.5.9...... K....B....SfK.&...U.D.QG&$:...A. .).%.u.1.-8T.U.C.bE....vg...-.4.r.[.hG.q..%..)F....)2...A!~D..e:.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\16207[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit colormap, non-interlaced Size (bytes): 213 Entropy (8bit): 6.243397667740073 Encrypted: false MD5: C6ABFF2510CF7C0073F6152D4C6B2A57 SHA1: B84E7BB5555239BC1D86E6F8C0A4D2F93E66A906 SHA-256: C10A41AAC14A298C2AEC47487452E2FA75EF2CBC19B3C2C07DD4641C5EE95CF3 SHA-512: BE57569EEE11AEB54C5C9596AE72238E458B40A8C2F2CAB7D8ECAD1F8FB07C2B1AB22345965585748F5A0EAF4E9C116C75F298EC3006F1C0AE02CBB77887DB C4 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/16/16207.jpg?1545341546 Preview: .PNG...... IHDR...0...0.....`...... 9PLTE...... G..4..5..A.....G...... o...>..4..;.k...... 2..2~.3..<.K...WIDATH.c`...L.,[email protected]...... 8..y..Xx..Q...... 2..D.f`!..j...HN.$'>...... F5.E. .R...F.Q.....IEND.B`.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\162[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 79963 Entropy (8bit): 7.782381102664728 Encrypted: false MD5: F31AC07218F5C654349B7FDE8CC7C7F9 SHA1: FF00F9B6FC08098FB848E071F5B81D647887508A SHA-256: 14D6BAA3048933B553FC1294BE81C8CE8965DAE7FB0D3DA79822E4A99196AF38 SHA-512: 1F13226A26A9FD2E70E77F1FB504436AB3FB0081B8D98E87A6EBBBE901AEB3AE59BD4910B8AB68F3D21CDB60420A2E79197D610FD673C018AD0BC4B2967285C 5 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/0/162.jpg?1571705545 Preview: GIF89a0.0...... &..<..6..6..$...(..,..&..3. %...!.."..)..'".(:.&'."2.";.(8.89.?.'&.&$.9#.4#.4".9'.-1.52.>9)&"7(*93-;,1781$.4C..F..H.'U.(G.'X .+J.;I.3].4k.6j.1F',K)5U&6J55W6;R#.e&7z%

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\16390[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced Size (bytes): 4000 Entropy (8bit): 7.933542169780332 Encrypted: false MD5: 90584E170D6262E17897A92850372191 SHA1: 7BCB09564C81176757B7ACA0C9CD513A23FBB118 SHA-256: 5AC73CFADF777C8B81788032FDA1F60277D8ACDAD922EF75B421112006502132

    Copyright null 2020 Page 40 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\16390[1].jpg SHA-512: 07AFC487305D7A4BC74B49FA07970739F871EA1C1F04B1234DFE63653201B1403FFEA43CD794D42ABC0829465C3D0EBE7E5DD4634ABC4F73381A07EEF1DDAA5 C Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/16/16390.jpg?1596909418 Preview: .PNG...... IHDR...0...0.....W...... gIDATh..i..Wy...w...{g.z<..8v..N...."Xm!m)..M@....*hP.!...... Je....P.'..8$...;v..v....w}.sN?..."q.U.J..]..;..Y_a..\.W.V...<..]...... qS.v.O..A.z./.-q!..A ...... #...... 8.....w.b.e..G..;o...\...@.$..7...t..J.Z ..(.Q.|..w.^....y.f>....fe.y.....{...._...\C.[!....p<...... Y.a.2.?.....C.k...0xf...... j...L..+A.....r,.Y.t.gq...y.g..S...s!....fhl.lG7zi.....R.L...A....% ..319M`]...... [.!../"..8.....2.fC.! f1.B*.!.d.i....Iu.wq.....3L/UX}...... G...... 70S....{&2....]...... Ch\.|Dev..j.....y..f|j....\...Rm.....Pj...p...... +38W'.oE.e|.(...~g....c.&"o*D...<1N>....~e .....p...r.kOqd....[(.%...r.<-).....Kg[+...... 2<9...... S..i4..|.k..*...6t...Y*\<.).u.V...em.f"..o.W8>...... 2>G.w.P..,L....9t.@G~..|...X.)b.7.c.N.s....L..:T.m.^...... 3yL.0<.2/.x...s.u=).x .JI....&.Is..P..4..".t.../..+..m.:j.2k&..o.~^.....C...... $.#,X..+.^|...Z....%S(03=..9.e2|...l.....!....Pn;....M.../....^...:...... T..7.p.....B...q...A.#

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\16599[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1155 Entropy (8bit): 7.400275697949104 Encrypted: false MD5: 64536B170BC9396745F50165CC20A010 SHA1: 39C2DAABBACB2AC5E0DCD0D5F54BA9C9F63B0972 SHA-256: E1A55221675F5970785D2DE48C39652B20A05F631DCFEB27BFD060FBF03114B6 SHA-512: 2B29CAA8F24E4DD073A8720F611435024A6262B51E008D7B07392681CA0740F2D83580DABA16744BEBA4062197CF2574F1541662CB4A5081AEA77B1D16EC793F Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/16/16599.jpg?1590778933 Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 0...... !..1A."Qaq.2.. 3.%B...... "...... !1."A.2Qa...... ?.Rxo...C...... '.~.Z.k....u.@i...... 0...lU5.fy...... cY.<...&.P.9..9...... G5V=.}.B;u.I...)(..>...... *.=.q.~F..)@....(*d....H.C#*.,...... Z...... *w~Z..F7.z.&b.W.-./.c.3.C.(m^.....I..X..I...-...... ,..j]....>.up..5..O....~.U.K)_...o.r.| {b>@.eX.2...H.o.i.....#"..$~Sk.O..~aU!(.CN...8B\.....<..<.&...MSF....d.E`9Ie....:.W.).....2Y.W....T._...... 88]d..I.=@.>~T.u...... y#.o..I...p.7....4i...+f.u..KL.X.F.;[v \..:5..4..~..4"]K .KL.W#.._...... N9.2...F.]...... K.t4..s#YK[...y...._<.*...j...#.....V....8...O.....tz...f..OMR$6..M...`w.8.....\.C...qV`.W

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\18079[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: GIF image data, version 89a, 48 x 48 Size (bytes): 51315 Entropy (8bit): 7.8393922655700745 Encrypted: false MD5: 55F4795560B7A1DF9F6EB93AE405CF7F SHA1: 584FD2C06F125ED726ED10E7938E1D67E02B5D8A SHA-256: DF6E6F7C2F55CDE0E30188F44A2AF524EAFA8D2F3EF6CCF13E9FBBBC5577B7A3 SHA-512: BE2B798BBD077FC42C1B4BA38BDDEAE85CAC800A70C008A1C2627C50E86930E45ECF901CD6E0A6A1116902C73B5601AACF6436C9DC687A088A8B34862B9A0B FA Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/18/18079.jpg?1593397029 Preview: GIF89a0.0....?[K>[I4SW:[r

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\18193[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 48x48, frames 3 Size (bytes): 1213 Entropy (8bit): 7.43492753652074 Encrypted: false MD5: 30004C78F93E8C28ACD3FB723FB8E6D8 SHA1: DA248093AAA57F7FD709419F035DBB8C9DDCC72D SHA-256: 2914C2934CEF6DDF774540510E9AC627F3B9914B14FDFDD17DD3FEC8FA7E7831 SHA-512: 1A88DF4F12C18485F96CD5BCF23E4E6EC8989CB971FB31A3DFA7AD3E4007939C372057F2C4760791192C52B2B015D2F4D9A187D46AA026A70E471B6DF1BC08BF Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/18/18193.jpg?1596610873

    Copyright null 2020 Page 41 of 48 C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\18193[1].jpg Preview: ...... JFIF...... C...... !...... "$".$...... C...... 0.0.."...... 3...... !1."AQa..q...... #2B...... (...... !.1A..Qq..."a...... ?..v.Y....t....?,...5...Hf.p...... [email protected]...... !U..V+..!h6.7>B.T+...._%.o.q...g..C..:...c..m._.,...s..7...... "z6..Q4...r.- ...!..F...... ;....0...... v.SH\E....n.4...5.n."..RF.R..ZB..[..2>...... 6...r..mJ..4.....I....{.>...... i..l..i..hx...&.4.....Y..!r={z.Sa.8x....Us...... )...... 0}5..... Y....?=P.(.&.....$..Q..\.w..c.*Ua.99...S.P[.U.."..^..`..;....f..xhp.X..*.....:.OV.RA.d...?..v...b.

    C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\18294[1].jpg Process: C:\Program Files (x86)\Internet Explorer\iexplore.exe File Type: PNG image data, 48 x 48, 8-bit colormap, non-interlaced Size (bytes): 2222 Entropy (8bit): 7.550090793328754 Encrypted: false MD5: 39A28C3A73126C54F5939EB270F5B7BA SHA1: 1A64D24B589E90D966987520EEE94DE40888EED5 SHA-256: A520C25D2DED3FE598532121A6FED88F181014AE15710BCDFD6480FCFB58FA2A SHA-512: 881094D0CAD53B984FCC01504EF51945800A2A5442D71B09D43F3839A507432B833C10776E4826BDB48E7DECF53C427076FC82CE934921DD36A6004EC458AAE0 Malicious: false Reputation: low IE Cache URL: https://incels.co/data/avatars/s/18/18294.jpg?1558127716 Preview: .PNG...... IHDR...0...0.....`...... PLTE.../..1..2..&...... -..%...... (..0..-..Z..A..B..D..R..K...... l..>.."...... G...... 6..P...... L...... 6.....+.....\..E..9..F..I...... X.....V..M..4.....[..$..F..O...... ?.....U..Q.....V.....b...... N..]..7..?.....J..m..k..W..5..A...... !.....#...... |...... C.....^.....<..).....c..B..x.....%..j..T.._.....t..g..q...... ,.....o..'.....m..@.. w..u...... i..8...... *...... r..f.....w.....y...... 3...... N...... v...... {..o.....Y.....:..;...... h..n.....s...... >...... e..~...... H..}..z..S..=.....&..g..'.....l..h..n..(..`.....>..p..z..X..a..0. ./..d..P..x..O..q.....G..y...... p.....?.....O...... IDATH..._Rg..Z$.**Z...... ` (F.(p"1 ...... 5..k.TV..":gkfe.Z.j7..5.ksks..]..=...... }~....>..^>. a.~El.H.....I.P...0J..zl\.O....[.&..r2.E.)..4..mF...... 2...... {V6.]+...../...hN..C$FA...\l=."[email protected]."$7...(@..01.(...P.(...=AY.(.$. ....;...d...r....{..=..2.P. ...W..

    Static File Info

    No static file info

    Network Behavior

    Network Port Distribution

    Total Packets: 75 • 53 (DNS) • 443 (HTTPS) • 80 (HTTP)

    TCP Packets

    Timestamp Source Port Dest Port Source IP Dest IP Aug 10, 2020 11:20:13.404586077 CEST 49717 80 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.404725075 CEST 49718 80 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.426388025 CEST 80 49718 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.426511049 CEST 80 49717 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.426604033 CEST 49718 80 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.426656961 CEST 49717 80 192.168.2.4 104.24.113.146

    Copyright null 2020 Page 42 of 48 Timestamp Source Port Dest Port Source IP Dest IP Aug 10, 2020 11:20:13.427592993 CEST 49718 80 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.449393034 CEST 80 49718 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.461954117 CEST 80 49718 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.462049961 CEST 49718 80 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.472075939 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.494066000 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.494285107 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.501024008 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.523118019 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.526113987 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.526148081 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.526211023 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.526245117 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.573122025 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.578999996 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.579138994 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.595387936 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.596358061 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.596381903 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.596504927 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.597765923 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.601025105 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.601075888 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.602972984 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.603112936 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.659828901 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.786525965 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.786591053 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.786637068 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.786840916 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.788528919 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.788573980 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.788616896 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.788620949 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.788660049 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.788676977 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.788706064 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.788858891 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.788908958 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.788968086 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.789000034 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.789016008 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.789045095 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.789366007 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.789432049 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.789480925 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.789529085 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.789530993 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.789563894 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.790224075 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.790306091 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.790313959 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.790344954 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.790357113 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.790390015 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.838093996 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.838574886 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.842453003 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.852221012 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.854000092 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.854424953 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.854856968 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.855283022 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.855714083 CEST 49719 443 192.168.2.4 104.24.113.146

    Copyright null 2020 Page 43 of 48 Timestamp Source Port Dest Port Source IP Dest IP Aug 10, 2020 11:20:13.856153011 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.856714964 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.860016108 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.860359907 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.864790916 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.874501944 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.876070023 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.876096964 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.876594067 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.876986980 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.877470016 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.877824068 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.878314972 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881258011 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881289959 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881305933 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881316900 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881412029 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.881442070 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.881525040 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881581068 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.881592989 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881613016 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.881647110 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.881686926 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.882230043 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.882262945 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.882282972 CEST 443 49719 104.24.113.146 192.168.2.4 Aug 10, 2020 11:20:13.882304907 CEST 49719 443 192.168.2.4 104.24.113.146 Aug 10, 2020 11:20:13.882345915 CEST 49719 443 192.168.2.4 104.24.113.146

    UDP Packets

    Timestamp Source Port Dest Port Source IP Dest IP Aug 10, 2020 11:20:11.840030909 CEST 54414 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:11.872044086 CEST 53 54414 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:13.377047062 CEST 62217 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:13.391105890 CEST 53 62217 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:13.845710993 CEST 62645 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:13.863491058 CEST 61821 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:13.876122952 CEST 53 62645 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:13.877934933 CEST 58618 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:13.906323910 CEST 53 58618 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:13.912878990 CEST 53 61821 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:15.120305061 CEST 60967 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:15.134732962 CEST 53 60967 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:34.775824070 CEST 50987 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:34.823292017 CEST 53 50987 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:35.943500042 CEST 52517 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:35.992656946 CEST 53 52517 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:38.154982090 CEST 54004 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:38.168940067 CEST 53 54004 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:41.856990099 CEST 53431 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:41.870491982 CEST 53 53431 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:42.561491966 CEST 59215 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:42.575634956 CEST 53 59215 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:42.866691113 CEST 53431 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:42.880758047 CEST 53 53431 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:43.568500996 CEST 59215 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:43.583066940 CEST 53 59215 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:43.881285906 CEST 53431 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:43.895267010 CEST 53 53431 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:44.653810024 CEST 59215 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:44.668546915 CEST 53 59215 8.8.8.8 192.168.2.4

    Copyright null 2020 Page 44 of 48 Timestamp Source Port Dest Port Source IP Dest IP Aug 10, 2020 11:20:45.978734016 CEST 53431 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:45.992732048 CEST 53 53431 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:46.654484034 CEST 59215 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:46.668565035 CEST 53 59215 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:53.375876904 CEST 59215 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:53.391133070 CEST 53 59215 8.8.8.8 192.168.2.4 Aug 10, 2020 11:20:59.799393892 CEST 53431 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:20:59.821443081 CEST 53 53431 8.8.8.8 192.168.2.4 Aug 10, 2020 11:21:01.448030949 CEST 58452 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:21:01.466926098 CEST 53 58452 8.8.8.8 192.168.2.4 Aug 10, 2020 11:21:42.435518980 CEST 55996 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:21:42.468169928 CEST 53 55996 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:48.820848942 CEST 50544 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:48.889480114 CEST 53 50544 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:49.342233896 CEST 57859 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:49.408536911 CEST 53 57859 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:49.963309050 CEST 50658 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:49.977102995 CEST 53 50658 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:50.248289108 CEST 57735 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:50.321671963 CEST 53 57735 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:50.796324015 CEST 54801 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:50.811007977 CEST 53 54801 8.8.8.8 192.168.2.4 Aug 10, 2020 11:22:51.171504021 CEST 51361 53 192.168.2.4 8.8.8.8 Aug 10, 2020 11:22:51.187019110 CEST 53 51361 8.8.8.8 192.168.2.4

    DNS Queries

    Timestamp Source IP Dest IP Trans ID OP Code Name Type Class Aug 10, 2020 11:20:13.377047062 CEST 192.168.2.4 8.8.8.8 0x69c4 Standard query incels.co A (IP address) IN (0x0001) (0) Aug 10, 2020 11:20:13.863491058 CEST 192.168.2.4 8.8.8.8 0x8487 Standard query platform.t A (IP address) IN (0x0001) (0) witter.com Aug 10, 2020 11:20:34.775824070 CEST 192.168.2.4 8.8.8.8 0x77 Standard query incels.co A (IP address) IN (0x0001) (0)

    DNS Answers

    Timestamp Source IP Dest IP Trans ID Reply Code Name CName Address Type Class Aug 10, 2020 8.8.8.8 192.168.2.4 0x69c4 No error (0) incels.co 104.24.113.146 A (IP address) IN (0x0001) 11:20:13.391105890 CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x69c4 No error (0) incels.co 172.67.189.107 A (IP address) IN (0x0001) 11:20:13.391105890 CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x69c4 No error (0) incels.co 104.24.112.146 A (IP address) IN (0x0001) 11:20:13.391105890 CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x8487 No error (0) platform.t cs472.wac.edgecastcdn.n CNAME IN (0x0001) 11:20:13.912878990 witter.com et (Canonical CEST name) Aug 10, 2020 8.8.8.8 192.168.2.4 0x8487 No error (0) cs472.wac. cs1-apr- CNAME IN (0x0001) 11:20:13.912878990 edgecastcdn.net 8315.wac.edgecastcdn.n (Canonical CEST et name) Aug 10, 2020 8.8.8.8 192.168.2.4 0x8487 No error (0) cs1-apr-83 wac.apr- CNAME IN (0x0001) 11:20:13.912878990 15.wac.edg 8315.edgecastdns.net (Canonical CEST ecastcdn.net name) Aug 10, 2020 8.8.8.8 192.168.2.4 0x8487 No error (0) cs1-lb-eu. cs491.wac.edgecastcdn.n CNAME IN (0x0001) 11:20:13.912878990 8315.ecdns.net et (Canonical CEST name) Aug 10, 2020 8.8.8.8 192.168.2.4 0x8487 No error (0) cs491.wac. 192.229.233.25 A (IP address) IN (0x0001) 11:20:13.912878990 edgecastcdn.net CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x77 No error (0) incels.co 104.24.112.146 A (IP address) IN (0x0001) 11:20:34.823292017 CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x77 No error (0) incels.co 104.24.113.146 A (IP address) IN (0x0001) 11:20:34.823292017 CEST Aug 10, 2020 8.8.8.8 192.168.2.4 0x77 No error (0) incels.co 172.67.189.107 A (IP address) IN (0x0001) 11:20:34.823292017 CEST

    Copyright null 2020 Page 45 of 48 HTTP Request Dependency Graph

    incels.co

    HTTP Packets

    Session ID Source IP Source Port Destination IP Destination Port Process 0 192.168.2.4 49718 104.24.113.146 80 C:\Program Files (x86)\Internet Explorer\iexplore.exe

    kBytes Timestamp transferred Direction Data Aug 10, 2020 349 OUT GET / HTTP/1.1 11:20:13.427592993 CEST Accept: text/html, application/xhtml+xml, image/jxr, */* Accept-Language: en-US User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like Gecko Accept-Encoding: gzip, deflate Host: incels.co Connection: Keep-Alive Aug 10, 2020 350 IN HTTP/1.1 301 Moved Permanently 11:20:13.461954117 CEST Date: Mon, 10 Aug 2020 09:20:13 GMT Transfer-Encoding: chunked Connection: keep-alive Cache-Control: max-age=3600 Expires: Mon, 10 Aug 2020 10:20:13 GMT Location: https://incels.co/ cf-request-id: 047944ae7d0000d6080819d200000001 Vary: Accept-Encoding Server: cloudflare CF-RAY: 5c08a3c3fb55d608-MXP alt-svc: h3-27=":443"; ma=86400, h3-28=":443"; ma=86400, h3-29=":443"; ma=86400 Data Raw: 30 0d 0a 0d 0a Data Ascii: 0

    HTTPS Packets

    Source Dest Not Not JA3 SSL Client Timestamp Source IP Port Dest IP Port Subject Issuer Before After Fingerprint JA3 SSL Client Digest Aug 10, 2020 104.24.113.146 443 192.168.2.4 49719 CN=incels.co, CN=Cloudflare Inc ECC Sat Jul Sun Jul 771,49196- 9e10692f1b7f78228b2d4e 11:20:13.526148081 O="Cloudflare, Inc.", L=San CA-3, O="Cloudflare, 04 04 49195-49200- 424db3a98c CEST Francisco, ST=CA, C=US Inc.", C=US 02:00:00 14:00:00 49199-49188- CN=Cloudflare Inc ECC CN=Baltimore CEST CEST 49187-49192- CA-3, O="Cloudflare, Inc.", CyberTrust Root, 2020 2021 49191-49162- C=US OU=CyberTrust, Mon Jan Wed 49161-49172- O=Baltimore, C=IE 27 Jan 01 49171-157-156- 13:48:08 00:59:59 61-60-53-47- CET CET 10,0-10-11-13- 2020 2025 35-16-23-24- 65281,29-23-24,0 CN=Cloudflare Inc ECC CN=Baltimore Mon Jan Wed CA-3, O="Cloudflare, Inc.", CyberTrust Root, 27 Jan 01 C=US OU=CyberTrust, 13:48:08 00:59:59 O=Baltimore, C=IE CET CET 2020 2025 Aug 10, 2020 192.229.233.25 443 192.168.2.4 49725 CN=*.twimg.com, CN=DigiCert SHA2 High Tue Nov Wed 771,49196- 9e10692f1b7f78228b2d4e 11:20:13.989912033 O="Twitter, Inc.", L=San Assurance Server CA, 12 Nov 18 49195-49200- 424db3a98c CEST Francisco, ST=California, OU=www.digicert.com, 01:00:00 13:00:00 49199-49188- C=US CN=DigiCert SHA2 O=DigiCert Inc, C=US CET CET 49187-49192- High Assurance Server CA, CN=DigiCert High 2019 2020 49191-49162- OU=www.digicert.com, Assurance EV Root CA, Tue Oct Sun Oct 49161-49172- O=DigiCert Inc, C=US OU=www.digicert.com, 22 22 49171-157-156- O=DigiCert Inc, C=US 14:00:00 14:00:00 61-60-53-47- CEST CEST 10,0-10-11-13- 2013 2028 35-16-23-24- 65281,29-23-24,0 CN=DigiCert SHA2 High CN=DigiCert High Tue Oct Sun Oct Assurance Server CA, Assurance EV Root CA, 22 22 OU=www.digicert.com, OU=www.digicert.com, 14:00:00 14:00:00 O=DigiCert Inc, C=US O=DigiCert Inc, C=US CEST CEST 2013 2028 Aug 10, 2020 192.229.233.25 443 192.168.2.4 49724 CN=*.twimg.com, CN=DigiCert SHA2 High Tue Nov Wed 771,49196- 9e10692f1b7f78228b2d4e 11:20:13.990194082 O="Twitter, Inc.", L=San Assurance Server CA, 12 Nov 18 49195-49200- 424db3a98c CEST Francisco, ST=California, OU=www.digicert.com, 01:00:00 13:00:00 49199-49188- C=US CN=DigiCert SHA2 O=DigiCert Inc, C=US CET CET 49187-49192- High Assurance Server CA, CN=DigiCert High 2019 2020 49191-49162- OU=www.digicert.com, Assurance EV Root CA, Tue Oct Sun Oct 49161-49172- O=DigiCert Inc, C=US OU=www.digicert.com, 22 22 49171-157-156- O=DigiCert Inc, C=US 14:00:00 14:00:00 61-60-53-47- CEST CEST 10,0-10-11-13- 2013 2028 35-16-23-24- 65281,29-23-24,0

    Copyright null 2020 Page 46 of 48 Source Dest Not Not JA3 SSL Client Timestamp Source IP Port Dest IP Port Subject Issuer Before After Fingerprint JA3 SSL Client Digest CN=DigiCert SHA2 High CN=DigiCert High Tue Oct Sun Oct Assurance Server CA, Assurance EV Root CA, 22 22 OU=www.digicert.com, OU=www.digicert.com, 14:00:00 14:00:00 O=DigiCert Inc, C=US O=DigiCert Inc, C=US CEST CEST 2013 2028

    Code Manipulations

    Statistics

    Behavior

    • iexplore.exe • iexplore.exe

    Click to jump to process

    System Behavior

    Analysis Process: iexplore.exe PID: 6856 Parent PID: 800

    General

    Start time: 11:20:11 Start date: 10/08/2020 Path: C:\Program Files\internet explorer\iexplore.exe Wow64 process (32bit): false Commandline: 'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding Imagebase: 0x7ff797780000 File size: 823560 bytes MD5 hash: 6465CB92B25A7BC1DF8E01D8AC5E7596 Has administrator privileges: false Programmed in: C, C++ or other language Reputation: low

    File Activities

    Source File Path Access Attributes Options Completion Count Address Symbol

    Source File Path Offset Length Value Ascii Completion Count Address Symbol

    Copyright null 2020 Page 47 of 48 Source File Path Offset Length Completion Count Address Symbol

    Registry Activities

    Source Key Path Completion Count Address Symbol

    Source Key Path Name Type Data Completion Count Address Symbol

    Source Key Path Name Type Old Data New Data Completion Count Address Symbol

    Analysis Process: iexplore.exe PID: 6904 Parent PID: 6856

    General

    Start time: 11:20:11 Start date: 10/08/2020 Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Wow64 process (32bit): true Commandline: 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:6856 CREDAT:17410 /prefetch:2 Imagebase: 0xa00000 File size: 822536 bytes MD5 hash: 071277CC2E3DF41EEEA8013E2AB58D5A Has administrator privileges: false Programmed in: C, C++ or other language Reputation: low

    File Activities

    Source File Path Access Attributes Options Completion Count Address Symbol

    Source File Path Offset Length Value Ascii Completion Count Address Symbol

    Source File Path Offset Length Completion Count Address Symbol

    Registry Activities

    Source Key Path Completion Count Address Symbol

    Source Key Path Name Type Data Completion Count Address Symbol

    Source Key Path Name Type Old Data New Data Completion Count Address Symbol

    Disassembly

    Copyright null 2020 Page 48 of 48