Edit tour

Windows Analysis Report
http://chasegetsyoucloser.com

Overview

General Information

Sample URL:http://chasegetsyoucloser.com
Analysis ID:1303179

Detection

Score:1
Range:0 - 100
Whitelisted:false
Confidence:80%

Signatures

HTML body contains password input but no form action
HTML title does not match URL

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64_ra
  • chrome.exe (PID: 1392 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument http://chasegetsyoucloser.com/ MD5: 7BC7B4AEDC055BB02BCB52710132E9E1)
    • chrome.exe (PID: 5944 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2040 --field-trial-handle=1760,i,11020101336838292683,7338327646650244337,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8 MD5: 7BC7B4AEDC055BB02BCB52710132E9E1)
  • cleanup
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: <input type="password" .../> found but no <form action="...
Source: https://chasegetsyoucloser.com/login/HTTP Parser: Title: Chasegetsyoucloser.com does not match URL
Source: https://chasegetsyoucloser.com/login/?msg=404HTTP Parser: Title: Chasegetsyoucloser.com does not match URL
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: Title: Chasegetsyoucloser.com does not match URL
Source: https://chasegetsyoucloser.com/login/HTTP Parser: <input type="password" .../> found
Source: https://chasegetsyoucloser.com/login/?msg=404HTTP Parser: <input type="password" .../> found
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: <input type="password" .../> found
Source: https://chasegetsyoucloser.com/login/HTTP Parser: No <meta name="author".. found
Source: https://chasegetsyoucloser.com/login/?msg=404HTTP Parser: No <meta name="author".. found
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: No <meta name="author".. found
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: No <meta name="author".. found
Source: https://chasegetsyoucloser.com/login/HTTP Parser: No <meta name="copyright".. found
Source: https://chasegetsyoucloser.com/login/?msg=404HTTP Parser: No <meta name="copyright".. found
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: No <meta name="copyright".. found
Source: https://chasegetsyoucloser.com/create-account/HTTP Parser: No <meta name="copyright".. found
Source: C:\Program Files\Google\Chrome\Application\chrome.exeDirectory created: C:\Program Files\Google\GoogleUpdater
Source: unknownDNS traffic detected: queries for: accounts.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49788
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49787
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49782
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 49788 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 49790 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49722
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49783 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49787 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49719 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49722 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49719
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49782 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49790
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: chasegetsyoucloser.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: classification engineClassification label: clean1.win@29/134@26/256
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument http://chasegetsyoucloser.com/
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2040 --field-trial-handle=1760,i,11020101336838292683,7338327646650244337,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2040 --field-trial-handle=1760,i,11020101336838292683,7338327646650244337,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Program Files\Google\GoogleUpdater
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exeDirectory created: C:\Program Files\Google\GoogleUpdater
Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
Valid AccountsWindows Management InstrumentationPath Interception1
Process Injection
2
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local SystemExfiltration Over Other Network Medium2
Encrypted Channel
Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable MediaExfiltration Over Bluetooth2
Non-Application Layer Protocol
Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared DriveAutomated Exfiltration3
Application Layer Protocol
Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data
Local AccountsAt (Windows)Logon Script (Mac)Logon Script (Mac)Binary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput CaptureScheduled Transfer1
Ingress Tool Transfer
SIM Card SwapCarrier Billing Fraud

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
http://chasegetsyoucloser.com0%Avira URL Cloudsafe
http://chasegetsyoucloser.com0%VirustotalBrowse
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://chasegetsyoucloser.com/0%Avira URL Cloudsafe
http://chasegetsyoucloser.com/0%VirustotalBrowse
https://chasegetsyoucloser.com/login/0%VirustotalBrowse
NameIPActiveMaliciousAntivirus DetectionReputation
cdn01.jotfor.ms
104.22.72.81
truefalse
    high
    accounts.google.com
    142.250.186.77
    truefalse
      high
      cdn.mpeventapps.com
      108.138.17.115
      truefalse
        unknown
        dcs-edge-irl1-876252164.eu-west-1.elb.amazonaws.com
        34.252.33.233
        truefalse
          high
          www.google.com
          216.58.212.132
          truefalse
            high
            clients.l.google.com
            142.250.181.238
            truefalse
              high
              rawgit.com
              188.114.97.3
              truefalse
                high
                chasegetsyoucloser.com
                108.138.7.78
                truefalse
                  unknown
                  analytics.chase.com
                  unknown
                  unknownfalse
                    high
                    clients2.google.com
                    unknown
                    unknownfalse
                      high
                      cdn.jsdelivr.net
                      unknown
                      unknownfalse
                        high
                        www.chase.com
                        unknown
                        unknownfalse
                          high
                          dpm.demdex.net
                          unknown
                          unknownfalse
                            high
                            static.chasecdn.com
                            unknown
                            unknownfalse
                              high
                              NameMaliciousAntivirus DetectionReputation
                              http://chasegetsyoucloser.com/false
                              • 0%, Virustotal, Browse
                              • Avira URL Cloud: safe
                              unknown
                              https://chasegetsyoucloser.com/login/falseunknown
                              https://chasegetsyoucloser.com/create-account/false
                                unknown
                                https://chasegetsyoucloser.com/login/?msg=404false
                                  unknown
                                  • No. of IPs < 25%
                                  • 25% < No. of IPs < 50%
                                  • 50% < No. of IPs < 75%
                                  • 75% < No. of IPs
                                  IPDomainCountryFlagASNASN NameMalicious
                                  108.138.7.58
                                  unknownUnited States
                                  16509AMAZON-02USfalse
                                  142.250.185.99
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  108.138.7.78
                                  chasegetsyoucloser.comUnited States
                                  16509AMAZON-02USfalse
                                  108.138.17.25
                                  unknownUnited States
                                  16509AMAZON-02USfalse
                                  142.250.185.100
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  142.250.181.238
                                  clients.l.google.comUnited States
                                  15169GOOGLEUSfalse
                                  142.250.184.227
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  142.250.186.77
                                  accounts.google.comUnited States
                                  15169GOOGLEUSfalse
                                  172.217.16.202
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  1.1.1.1
                                  unknownAustralia
                                  13335CLOUDFLARENETUSfalse
                                  34.104.35.123
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  216.58.212.138
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  108.138.7.63
                                  unknownUnited States
                                  16509AMAZON-02USfalse
                                  23.36.162.196
                                  unknownUnited States
                                  4609CTM-MOCompanhiadeTelecomunicacoesdeMacauSARLMOfalse
                                  142.250.185.234
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  142.250.185.132
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  104.16.87.20
                                  unknownUnited States
                                  13335CLOUDFLARENETUSfalse
                                  23.36.162.215
                                  unknownUnited States
                                  4609CTM-MOCompanhiadeTelecomunicacoesdeMacauSARLMOfalse
                                  239.255.255.250
                                  unknownReserved
                                  unknownunknownfalse
                                  188.114.97.3
                                  rawgit.comEuropean Union
                                  13335CLOUDFLARENETUSfalse
                                  142.250.185.131
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  95.101.111.145
                                  unknownEuropean Union
                                  12956TELEFONICATELXIUSESfalse
                                  172.217.16.195
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  108.138.17.115
                                  cdn.mpeventapps.comUnited States
                                  16509AMAZON-02USfalse
                                  95.101.111.183
                                  unknownEuropean Union
                                  12956TELEFONICATELXIUSESfalse
                                  142.250.184.234
                                  unknownUnited States
                                  15169GOOGLEUSfalse
                                  34.252.33.233
                                  dcs-edge-irl1-876252164.eu-west-1.elb.amazonaws.comUnited States
                                  16509AMAZON-02USfalse
                                  104.22.72.81
                                  cdn01.jotfor.msUnited States
                                  13335CLOUDFLARENETUSfalse
                                  IP
                                  192.168.2.1
                                  Joe Sandbox Version:38.0.0 Beryl
                                  Analysis ID:1303179
                                  Start date and time:2023-09-05 03:24:35 +02:00
                                  Joe Sandbox Product:CloudBasic
                                  Overall analysis duration:
                                  Hypervisor based Inspection enabled:false
                                  Report type:full
                                  Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                  Sample URL:http://chasegetsyoucloser.com
                                  Analysis system description:Windows 10 64 bit version 1909 (MS Office 2019, IE 11, Chrome 104, Firefox 88, Adobe Reader DC 21, Java 8 u291, 7-Zip)
                                  Number of analysed new started processes analysed:6
                                  Number of new started drivers analysed:0
                                  Number of existing processes analysed:0
                                  Number of existing drivers analysed:0
                                  Number of injected processes analysed:0
                                  Technologies:
                                  • EGA enabled
                                  Analysis Mode:stream
                                  Analysis stop reason:Timeout
                                  Detection:CLEAN
                                  Classification:clean1.win@29/134@26/256
                                  • Exclude process from analysis (whitelisted): WMIADAP.exe, SIHClient.exe
                                  • Excluded IPs from analysis (whitelisted): 172.217.16.195, 34.104.35.123, 104.16.87.20, 104.16.88.20, 104.16.86.20, 104.16.89.20, 104.16.85.20, 95.101.111.145, 95.101.111.133, 142.250.184.234, 142.250.186.67, 142.250.185.131, 142.250.185.234, 142.250.186.106, 142.250.185.106, 172.217.23.106, 142.250.181.234, 142.250.184.202, 142.250.185.74, 142.250.185.170, 142.250.185.138, 142.250.186.170, 142.250.186.74, 142.250.186.138, 172.217.18.106, 142.250.185.202, 172.217.16.138, 23.36.162.215, 23.36.162.213, 95.101.111.183, 95.101.111.136
                                  • Excluded domains from analysis (whitelisted): cdn.jsdelivr.net.cdn.cloudflare.net, fonts.googleapis.com, content-autofill.googleapis.com, slscr.update.microsoft.com, fonts.gstatic.com, gtm.www.chase.com.akadns.net, clientservices.googleapis.com, gtm.analytics.chase.com.akadns.net, e129412.a.akamaiedge.net, analytics.chase.com.edgekey.net, edgedl.me.gvt1.com, static.chasecdn.com.edgekey.net, e70850.a.akamaiedge.net, www.chase.com.edgekey.net, e93779.a.akamaiedge.net
                                  • Not all processes where analyzed, report is missing behavior information
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:C source, ASCII text, with very long lines (708)
                                  Category:downloaded
                                  Size (bytes):9080
                                  Entropy (8bit):5.382561479806591
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:7A2A5990C9065A9E3B6B73483107D8F0
                                  SHA1:B678A1ED94B301CBA0911DD08519B59929776CD5
                                  SHA-256:B88EE826E670174E1AD6C2C429F4E72C14FEFF3BD7ECF48F00BDF3CD69D5D0C3
                                  SHA-512:5406E0259F15DEFA247B96650706060E29A375B2BAAD16B053347A4E1AE42A2AF97D673F43DB3AEE1901AD95C4F14E7A61D04E91BC9FFB67CE1E6605AD9BA3DE
                                  Malicious:false
                                  Reputation:low
                                  URL:https://www.chase.com/apps/chase/clientlibs/foundation/scripts/Personalization.js
                                  Preview:./* Begin Source: _personalization.js */.function Hashtable().{this.Clear=function(){this.Table=new Array();}.this.ContainsKey=function(key){var exists=false;for(var i in this.Table){if(i==key&&this.Table[i]!=null){exists=true;break;}}return exists;};this.Get=function(key){var rv=this.Table[key];return rv?rv:null;};this.Put=function(key,value){if(key==null||value==null){return;}else{this.Table[key]=value;}};this.Remove=function(key){var rtn=this.Table[key];this.Table[key]=null;return rtn;};this.Table=new Array();}.function PersonalizationCookie().{this.CookieName="PC_1_0";this.ValueDelimiter='|';this.origFieldOrder=[];var AccountInfoKey="accts";var LastSessionIdKey="lsid";var SegmentGroupKey="segg";var SegmentIdLegacyKey="seg";var SiteKey="site";var CustomerTypeKey="ct";var UserTypeKey="ut";var ProfileTypeKey="pt";var ProfileIdKey="pfid";var ZipCodeKey="zip";var RpcListKey="RPC";var IsPreviewModeKey="preview";var AocListKey="AOC";var IsKnownKey="known";var SourceCodeKey="source_code";v
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (65536), with no line terminators
                                  Category:downloaded
                                  Size (bytes):76920
                                  Entropy (8bit):5.425024626074715
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:ECE02D32FC0C73C5C00674D6FB28C72A
                                  SHA1:669EE68586FA553DDEF5FFB062A93914EE7B1959
                                  SHA-256:6CB9AFF907FC896678E22DFAF8A213D841E0E2ECAF436E44234562ED01E3E519
                                  SHA-512:463667D76D70A815E9DDF351327F292AA18FC3A4D891105A71503366845220B8F9F4775692810363EAA21E63703C851FAA3B04906A67B9935FD47A9933A1FFB9
                                  Malicious:false
                                  Reputation:low
                                  URL:https://www.chase.com/c/08252301/apps/chase/clientlibs/foundation/scripts/Reporting.js
                                  Preview:window.CHASE=window.CHASE||{},window.CHASE.analytics=function(){var e=window.document,t=Object.prototype.toString,n=String.prototype.toLowerCase,r={Enabled:!0,PageDotPathSet:!1,Initialized:!1,DelayTag:!1,DebugMode:!1,PageDotParameterMap:{},TNTParameterMap:{},UrlPieces:/http(s|):\/\/([^\/]*)\.([^\.\/]+\.[^\/]+){1}\/.*/,Environments:/((q(f|)\d)|(i\d))/,EnvNum:/(\d)/,LinkClick:/^(a$|span|button|input|mds-button|mds-link)/i,WTParameter:/^(WT\.|DCS\.)/,FormField:/(input|select|button|mds-checkbox)/i,EmptyAds:/^;*$/,ScenarioNames:null,ScenarioSteps:null,ScenarioParams:null,PageTitle:"",PageUrl:window.analyticsUrlOverride||window.location.href,PageReferrer:e.referrer,PageName:"",PreviousPageName:"",PageDotUrl:"https://www.chase.com/online/Home/images/wa01.gif?log=1",PageDotDomain:"https://www.chase.com",PageDotImagePath:"/online/Home/images/wa01.gif?log=1",ScreenResolution:"object"==typeof screen?screen.width+"x"+screen.height:"NA",BrowserSize:"Unknown",FlashVersion:function(){var e;if(window
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (40385)
                                  Category:downloaded
                                  Size (bytes):386087
                                  Entropy (8bit):4.956892765900717
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:742B058167F2BF0657623D2F3893ABC4
                                  SHA1:28D6D5F5A21CB53A6205F6885EC2F3D9F1066975
                                  SHA-256:CEF56B5AE70A1F4BA72A653867098CC5F0FB5D1DAE92D3EDAFB0E71020D65574
                                  SHA-512:59CCBA7342A8A99E36556393A316BA39CCECA6926EB45F6EC1F227FC91C4BDD30F286C893A611457F4B0F8E48E0253CC09BE71A6243460146CD37C94A16F4D24
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/css-modernize/dist/styles.css
                                  Preview:@import url("https://fonts.googleapis.com/css2?family=Open+Sans:ital,wght@0,300;0,400;0,700;1,400&display=swap");@use "sass:math";./*!. * Bootstrap v5.2.0 (https://getbootstrap.com/). * Copyright 2011-2022 The Bootstrap Authors. * Copyright 2011-2022 Twitter, Inc.. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */:root{--bs-blue:#0d6efd;--bs-indigo:#6610f2;--bs-purple:#6f42c1;--bs-pink:#d63384;--bs-red:#dc3545;--bs-orange:#fd7e14;--bs-yellow:#ffc107;--bs-green:#198754;--bs-teal:#20c997;--bs-cyan:#0dcaf0;--bs-black:#000;--bs-white:#fff;--bs-gray:#6c757d;--bs-gray-dark:#343a40;--bs-gray-100:#f8f9fa;--bs-gray-200:#e9ecef;--bs-gray-300:#dee2e6;--bs-gray-400:#ced4da;--bs-gray-500:#adb5bd;--bs-gray-600:#6c757d;--bs-gray-700:#495057;--bs-gray-800:#343a40;--bs-gray-900:#212529;--bs-primary:#005eb8;--bs-secondary:#465a5d;--bs-success:#4ea000;--bs-info:#005eb8;--bs-warning:#e35205;--bs-danger:#b80009;--bs-light:#f8f9fa;--bs-dark:#101820;--bs-primary-rgb:0,
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (59825)
                                  Category:downloaded
                                  Size (bytes):60104
                                  Entropy (8bit):5.13175194777824
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:E6F488C5766FB06169100BDBD2B4FDBD
                                  SHA1:F7365985962F78092D8EEACA6D6633D6FBF75583
                                  SHA-256:0CE9DE398DE7E7EC63E836B70090643C7C5A3F29EA4A519A67DEFDD206C13AC1
                                  SHA-512:F18F1E18AF76773A2EC2944E229A70AFED243DABAED2AAAD9F365934417C3DAB79B6E44D2712570A46D07C9D079541B7CB51C1DF3D7C0922A6528EE2DB370FA6
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.jsdelivr.net/npm/bootstrap@5.2.0/dist/js/bootstrap.min.js
                                  Preview:/*!. * Bootstrap v5.2.0 (https://getbootstrap.com/). * Copyright 2011-2022 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors). * Licensed under MIT (https://github.com/twbs/bootstrap/blob/main/LICENSE). */.!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e(require("@popperjs/core")):"function"==typeof define&&define.amd?define(["@popperjs/core"],e):(t="undefined"!=typeof globalThis?globalThis:t||self).bootstrap=e(t.Popper)}(this,(function(t){"use strict";function e(t){if(t&&t.__esModule)return t;const e=Object.create(null,{[Symbol.toStringTag]:{value:"Module"}});if(t)for(const i in t)if("default"!==i){const s=Object.getOwnPropertyDescriptor(t,i);Object.defineProperty(e,i,s.get?s:{enumerable:!0,get:()=>t[i]})}return e.default=t,Object.freeze(e)}const i=e(t),s="transitionend",n=t=>{let e=t.getAttribute("data-bs-target");if(!e||"#"===e){let i=t.getAttribute("href");if(!i||!i.includes("#")&&!i.startsWith("."))return null;i.in
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (65451)
                                  Category:downloaded
                                  Size (bytes):89475
                                  Entropy (8bit):5.289540431614111
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:12B69D0AE6C6F0C42942AE6DA2896E84
                                  SHA1:D2CC8D43CE1C854B1172E42B1209502AD563DB83
                                  SHA-256:6150A35C0F486C46CADF0E230E2AA159C7C23ECFBB5611B64EE3F25FCBFF341F
                                  SHA-512:A55F55D56899AB440EF0CAE17B28D5CC8F5B9766D1E9BC1A8AC6B89376924B476C1AB0C325497EB5D44AF41F4EBF8EEA236D87A36902244B8A3ECA54994B8711
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/jquery/3.5.1/jquery-3.5.1.min.js
                                  Preview:/*! jQuery v3.5.1 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
                                  Category:dropped
                                  Size (bytes):836
                                  Entropy (8bit):7.353427384244431
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:01202FFBFFCD1FFB1DB79E2E4CCDB6AF
                                  SHA1:30309B5228951B138DEEEAC6EB84647E6724806C
                                  SHA-256:1E5FF1E559EC134978C28FE36AC8EB62FEB5D1C975983F4BCAFD53A46D921DD3
                                  SHA-512:595501E1414AB24DA04874B07029E947F8AF1B32FEDE901D0EA9828B0DF81E7118E76214D7AF54FB648CB6037CA35A3D023B40BFC710DFC395FD347380ED1DE5
                                  Malicious:false
                                  Reputation:low
                                  Preview:.PNG........IHDR... ... .....szz.....sRGB........8eXIfMM.*.......i........................... ........... .....N@.....IDATX.cd.....?##.............8.Z.8....7+C......nw.y..a...D..QB.....|...D....B.......P...Au .........!..JU......R.....N..@...6`p..!.0dE...........g..4.L.a.7.C6.$v....t=.!.......,.H....HKI..........:.7R.!.Q..z............C?F.h.Pf(.P.P.............#.c ......(....d..TAQ..9p.=.........|..@.X.X..........q...%.@cq.|wy.F.q23.m......4`.1.Z......Dq.@T.(. .ZZ.:.%.~..G.P.k&J90c...O..b.<.?... b%........%..O..u?.* GQ..!.D.].....K.1.@...K....P..R...+.P5.-..G.}..w..'.|.P......@:......w.a.WX."Gp..'...n`........3.O......%V..+N<gH....?..X..R...........x.C+a..._1....4.'.......T..'.|...\.{..e..r...\j@.x...X..&C30...@!w..{.....QIH.F........+.....^y...a.0..3...!v.?`..{..XS(PGT.P`>A................IEND.B`.
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:PNG image data, 714 x 74, 8-bit colormap, non-interlaced
                                  Category:downloaded
                                  Size (bytes):4189
                                  Entropy (8bit):7.892059624174795
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:62215E3F68268FB4D998FCF19F9EC90F
                                  SHA1:F13217914FB044177F4AF8C15DF23C5EC7F29253
                                  SHA-256:B87C3A671DB3CF1DA4EEA0A879BA617E2A9F5551292CD44A7EF5A4D65EC1FBE3
                                  SHA-512:98E6DCEA04E2383765149CE7C56A88C660AA0309FCF84F7139B58362A2EDBDC48B2EB71CDCE2121D25879638603912F09099AABB3B8A4E4039D89D8B3068450D
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/images/logo@2x.png
                                  Preview:.PNG........IHDR.......J......g......gAMA......a.....sRGB........BPLTEGpL................................................................m......tRNS.......=..1T.(.s..c.I.:.....IDATx... .FU.Q.........:w...VG..G..$.<.0...._.....Y.........H"f{....._y....IF..3.......E6.P..!.5..y.9.e:.X..7'..CP.......@.i....i.KYy..{..z.......z.......2..$.......)..?.a.2.0.Ay..,?....).J...j...._..<.P..k....I..,...j....$...i.c.t.......p[p..~."D.........&.Z.9.7....<..H.Dy......Z.b..b..Q.j... W.4.R....-.UX...I..XQ...^..X..p..>.....zY.A9....S.b(.s..2+..Z.......R~.3...3Ko?^.......J..:.R....I..bh..^a^6....|Z.Gb.zU..s...O.'.(..;x{m..u.e5.e....Fy..p.UM...P..R..*.........%Z7w....,.lQ..q...og..q..cH.c.<O.Y..n<...1$7z.G......H8.!,G...v'-..<.e>.A....!.E(.w7..1...!Uv.\l.2.;...R..y.}...@.#P...<..;....(o..n.].5i..|./.6.C..<Q.......eQ.......&Cq.A...;.eR..Q....P.]...*..t...(.j0.....(;m....~."...C...E.l..{Q.:....5.;[~..'.P&.I.:|....>....7!.16g..}.*#.U..-k..#..........q
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (19677)
                                  Category:downloaded
                                  Size (bytes):19766
                                  Entropy (8bit):5.258581420528803
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:3DAB316EAF9964C43114F300DFA85020
                                  SHA1:8979C5BCB99573805CB68391E11DD8DBFEBAF61D
                                  SHA-256:DA7796CAF9359015AF4ECDF8C6CCBD53706EA4613932A9B6F81E442E49D5F626
                                  SHA-512:F1C53BD74B69DE21FD46789487A7EAE7326C1A78CBCCE58B59D66A04C2EDA9AA19500E80588137E25C0C0778A950D89304FE63119298F7949F6CD9D0F1C08ABC
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.jsdelivr.net/npm/@popperjs/core@2.11.5/dist/umd/popper.min.js
                                  Preview:/**. * @popperjs/core v2.11.5 - MIT License. */..!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?t(exports):"function"==typeof define&&define.amd?define(["exports"],t):t((e="undefined"!=typeof globalThis?globalThis:e||self).Popper={})}(this,(function(e){"use strict";function t(e){if(null==e)return window;if("[object Window]"!==e.toString()){var t=e.ownerDocument;return t&&t.defaultView||window}return e}function n(e){return e instanceof t(e).Element||e instanceof Element}function r(e){return e instanceof t(e).HTMLElement||e instanceof HTMLElement}function o(e){return"undefined"!=typeof ShadowRoot&&(e instanceof t(e).ShadowRoot||e instanceof ShadowRoot)}var i=Math.max,a=Math.min,s=Math.round;function f(e,t){void 0===t&&(t=!1);var n=e.getBoundingClientRect(),o=1,i=1;if(r(e)&&t){var a=e.offsetHeight,f=e.offsetWidth;f>0&&(o=s(n.width)/f||1),a>0&&(i=s(n.height)/a||1)}return{width:n.width/o,height:n.height/i,top:n.top/i,right:n.right/o,bottom:n.bottom/i,left:n.left/o,x:n.l
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):7046
                                  Entropy (8bit):4.366660582007607
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:95B9D6186D08CA521A1F62F0E411A0F4
                                  SHA1:4A771E1C1EE9B7F33CB3969D6491E4D5E7888AE4
                                  SHA-256:A57A0A3FBBE9DF744244DF527BBD8D36EAACC73BDBA9D41060CBFE8297EB337E
                                  SHA-512:F347706C900B40F4F13B625721D61A67DA4F1562CA00A91AFC404CE7491B67F477EFB884DB1F4BD6DFF11A84A01AC5ABAAF7064F3B362EB49F93346BD503A104
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/layout.js?v=2.11
                                  Preview:$(function(){. mp_layout();. mp_layout.resizePositioning();.});..function mp_layout(){. let layoutElems = {. globalHeader: $('#global-header'),. globalContainer: $('#global-container'),. appHeader: $('#app-header'),. leftSidebar: $('#sidebar-left'),. rightSidebar: $('.js-sidebar-actual'),. rightSidebarSibling: $('.js-sidebar-sister'),. rightSidebarParent: $('.js-sidebar-parent'),. pageWrap: $('.page-contents'),. virtualContent: $('#virtual-main-content'),. mobileNavBtn: $('#mini-nav-hide'),. pollFooter: $('.poll-footer'),. theatreBtn: $('#enable-theatre'). }.. let layoutValues = {. headerHeight : 0. }... mp_layout.initEvents = function(){. // positioning of core elements. mp_layout.positioning();.. if(layoutElems.rightSidebar.length){. mp_layout.scrollPositioning();. }.. },.. mp_layout.positioning = function(){.. // on large
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):17528
                                  Entropy (8bit):4.22961937909014
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:72B3DC9526F3C382615FB4BF0FFBB96D
                                  SHA1:606206EA922CD5952A0BF7D6C004CDF40D1BCB5B
                                  SHA-256:C3D75CCF1B51C29F87709C071C3CC181B3424515291CF27FF9A1D11A70118153
                                  SHA-512:74EB11D75FCF190B85C4982C9C51DAB0119C1FF615DCA218508451FC1801C50881FD62803F235360CA7F08F5543C386F55833CFE2DF3C5EF36CB8B16B22CE4B0
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/sections/persistent-video.js
                                  Preview:/*!. * jQuery plugin to handle persistent video over top of the app content. * Author: Ryan Taggart. */..// setup our function.var mpPersistentVideo = {. /**. * Default Options. */. default_options: {. placement: "bottom-right",. removeVideoOnComplete: true,. triggerBtnIcon: "window-restore",. videoPlayerId: "persistent-video-player",. alertTimeout: 1400,. triggerOnLeave: true, // whether it should happen on leaving a page or by action. },. /**. * Our common elements. */. elems: {},. /**. * Our State. */. state: {},. /**. * Our Init function. * @param {Object} options Options to customize the function (combines data attr and js passed options). * @param {jQuery} elem jQuery Object of the table to run on. */. init: function (opts, elem) {. this.elems.container = elem;. this.elems.$container = $(elem);.. // setup options. this.options = $.extend(true, {
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):6532
                                  Entropy (8bit):4.307185898646061
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:567EB4E716FB83C5F987C7E2C2F1C097
                                  SHA1:04394549B98980366F9984E7E7A24EB7F3F65C11
                                  SHA-256:A37682F8732B5B4909592581E03A18DAE19CDB9A13ADA3EA434729B5A6D39227
                                  SHA-512:9A32FAF99173C2FCB531A85146DB9F6FBCA093A57F7B1DE5DF2DBBAAFFA0C10848E8CE9CFDD262A5D7B44D0E31681E6C55DDC64350EC1A2A5BA66B46DD7265A5
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/reservations.js?v=2.11
                                  Preview:$(function(){.. let sidebarcontent = $('#events-scroll');. let originalhtml = $('#events-scroll').html();.. $('.venue').on('click', function(e){. e.preventDefault();. let venueid = $(this).data('venueid');.. $('.venue').removeClass('active');. $(this).addClass('active');.. sidebarcontent.html('<img src="/includes/images/default/ellipsis.gif" class="loader"/>');.. $.ajax({. url: '/_getVenueEvents/?venueid='+venueid,. success: function(data){. sidebarcontent.hide();. sidebarcontent.html(data);. sidebarcontent.fadeIn();. }. });. });.. $('#events-scroll').on('click', '.js-back', function(e){. e.preventDefault();. $('.venue').removeClass('active');. sidebarcontent.html(originalhtml);. });.. $('body').on('click', '.js-locaton-enroll', function(e){. e.preventDefault();.. let btn = $(this);. let locationid
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with no line terminators
                                  Category:downloaded
                                  Size (bytes):156
                                  Entropy (8bit):5.271566146626312
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:6F06B3E0423E26B9312D7A97C38C62AA
                                  SHA1:32AAA859939CE560A9F37975BC1661AABBD87E8E
                                  SHA-256:7F5CFB69761AE04DB3E7E7638D0EC284250390500119012AEF4DD545A17B2AAB
                                  SHA-512:475E3B9824D7A51164E38A904FE5A319930939CFC3BAD561D833172CFE0512F17BD7098035CE13F00880781DD49A0F6DF0072081930FC04B2FE276DEDE351F9B
                                  Malicious:false
                                  Reputation:low
                                  URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISOglX9nCwXwJw4xIFDVlec5USBQ1EkXeGEgUNQu3VgRIFDaucj7YSBQ3OQUx6EgUNaJPQ_xIFDQzLOWw=?alt=proto
                                  Preview:CnIKCw1ZXnOVGgQIAxgBCgsNRJF3hhoECAUYAQoRDULt1YEaBAgJGAEaBAhWGAIKCw2rnI+2GgQIDRgBCiANzkFMehoECEwYAioTCApSDwoFIUAkIyoQARj/////DwoLDWiT0P8aBAhfGAIKBw0MyzlsGgA=
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:HTML document, ASCII text, with very long lines (818)
                                  Category:downloaded
                                  Size (bytes):12319
                                  Entropy (8bit):5.197101010297669
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:42FA794B6716EFBDA0B8159AC4603754
                                  SHA1:FC1BFEEED9D875D73E58D8708D6321A568669643
                                  SHA-256:3BBD626D487D8DBF3BD8F5EAE8154B83551105FC6D4E617F305637BAE5D3E10E
                                  SHA-512:D965DDA8FC3D2BD89E525FF141E6D759E806632EE8C76DA718D400FBAE449EFA11E400459D6DA35B4B4FA8988252E62BCD21322DB9FAB64B053FA362E10B3607
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/login/?msg=404
                                  Preview:...<!DOCTYPE html>.<html lang="en">..<head>...<title>Chasegetsyoucloser.com</title>...<meta http-equiv="content-type" content="text/html;charset=UTF-8" />...<meta name = "viewport" content = "width=device-width, minimum-scale=1.0, maximum-scale = 1.0, user-scalable = no">...<meta name="apple-mobile-web-app-capable" content="yes">...<link rel="manifest" href="/includes/site.json">...<meta name="msapplication-TileColor" content="#31357a">...<meta name="theme-color" content="#31357a">...<link rel="icon" type="image/png" sizes="32x32" href="/favicon-32x32.png">...<link rel="icon" type="image/png" sizes="16x16" href="/favicon-16x16.png">....<link rel="stylesheet" href="https://cdn.mpeventapps.com/fontawesome/6.1.1/css/all.min.css">....<style>..:root {..--primary-bc: #0e6cb5;..--secondary-bc: #297953;..--tertiary-bc: #00214d;...--page-header: rgba(16, 108, 182, .6);...--navigation-bc: rgba(255,255,255,.8);.}../* Theme images */...body {...background: #fff;..}.....#login-background {...backg
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):5748
                                  Entropy (8bit):4.751098389716603
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:40A55F6D72A0BB03B7027644375CE2F2
                                  SHA1:9AB2D54AF70353ED45C4A4E1230B089334395BAD
                                  SHA-256:D52DBE6B6842D761C7EF7A25DF7C8CEB4CA68F8BDBDD5D7371AEBB9FC1A9CAC3
                                  SHA-512:C1F4A87498C7CFE5C27BF460CA70E4C9D1DB57A9B9FE97971281EC4E0AAD144871A3881F7CEFCDC21B3A6C62F6F2A457FA908016799E9BBB8E23C083331A6F49
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/jquery.browser/jquery.browser.js
                                  Preview:/*!. * jQuery Browser Plugin 0.1.0. * https://github.com/gabceb/jquery-browser-plugin. *. * Original jquery-browser code Copyright 2005, 2015 jQuery Foundation, Inc. and other contributors. * http://jquery.org/license. *. * Modifications Copyright 2015 Gabriel Cebrian. * https://github.com/gabceb. *. * Released under the MIT license. *. * Date: 05-07-2015. */./*global window: false */..(function (factory) {. if (typeof define === 'function' && define.amd) {. // AMD. Register as an anonymous module.. define(['jquery'], function ($) {. return factory($);. });. } else if (typeof module === 'object' && typeof module.exports === 'object') {. // Node-like environment. module.exports = factory(require('jquery'));. } else {. // Browser globals. factory(window.jQuery);. }.}(function(jQuery) {. "use strict";.. function uaMatch( ua ) {. // If an UA is not provided, default to the current browser UA.. if ( ua === undefined ) {. ua = window.navigator.userA
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:Web Open Font Format (Version 2), TrueType, length 48412, version 1.0
                                  Category:downloaded
                                  Size (bytes):48412
                                  Entropy (8bit):7.9960297576602555
                                  Encrypted:true
                                  SSDEEP:
                                  MD5:31A8297826CDCEA344698FF952694A7F
                                  SHA1:4FA1EE4C471D1C05E9141855EEC5EE09B898D594
                                  SHA-256:7C7818C25A18E8A38553FCBCBC2AD0B5E964103A7D2E494F82815E3F70BF3FC5
                                  SHA-512:A303971F0E1EA4759679ADF3BE3DC26DFFB13D9AB6B9D2B3C1CC34F57EA6B7870F18E4B7C8552B9225915A5E9E070FAA37DC17F83B5CD66CDBC9149238692123
                                  Malicious:false
                                  Reputation:low
                                  URL:https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTS-muw.woff2
                                  Preview:wOF2..............BX.................................:..h?HVAR...`?STAT.$'...0+...|.../V........+..2.0..\.6.$..`. ..~......[.1qE....M.u.../.V..Y.F..V..@..@.q.1..Z.....I..L..(.:.......5*.m....!..8.....oX.Y].!.Z...P'+..#XV.H..>^.R..y!(./.. _n..=..[.e.\!...|..KXX.sb>.C....o.>....1..G./..{G_.".N.(H$.S...Gz.z...Xf.....PKR.g.>..'.r8..8.v5l.pR.tt.....b.j..&9.m.h..A..D.........K.d.7x...k.q._...lxa.-J<.j.{..}....F.n.../&....u........"M.(.e.$..j"...Rt.......{.B,..F..^..K{e'6Fa....r.v..`..px6..IE'.w&';....*...w_..l&.6..%@... .bD..?.^;oF..7...x...k.E..-B."Zt.@....W..g?...`*dNE.....n=...Z...+....&.i..QVv.;n.1...7om...s...G... !N..!!x1)-.d...........|o'....fR[.......K.........F.....%M)../Rs..x.m.L...........Fpu........RJ..+.=..[._Z.J.*<.XP..O xAQ]...;..7..gE.{....c.y@_.G.(.5.u>../.n.>......[4.A....D......g.d.r..mw....3.$.!<..^......G....b.......$p....)...t.....py.]..^.p...U P.O..(.h.M@6hN..]......v...zu#!.Y.a..u/......4i.F..X..B.>..}..+I...zz.
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):3729
                                  Entropy (8bit):5.0519430071424045
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:5C1DB675BF1545754173DC7194BEC331
                                  SHA1:FC925FCA714F8C53B7D852C0707AB936FF194D99
                                  SHA-256:67B896FAEFE9ECAD15133ED7E27120D1B13C658C65346C80CF0C900FA9D305F9
                                  SHA-512:D3D585C6D31048C60DFF85113F3167E8C78B766F7C8AE3AC41E03D012089D8F24C0BDBD2CCE5F60DF02F4878A9C91C46DC4A7D62325F29042A99B569A4C9E706
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/css-modernize/pages/login.css
                                  Preview:#sidebar-left {..display: none;.}.#global-container {..padding: 0 0 0 0;..max-width: 100%;..margin: 0 0 0 0;.}.#skip-to {..margin: 0 0 0 0;.}..gdpr-scroll {..max-height: 200px;..overflow-y: auto;..padding-right: 20px;.}...login-logo {..max-height: 40px;.}...login-centerit {..max-width: 800px;..margin: 0 auto;..color: #212529;.}../* Login Page $login =================================================================== */.#gdpr-scroll {..height: 140px;..overflow-y: auto;..font-size: 12px;..line-height: 16px;.}.#page-login .page-contents {..min-height: 100vh;..padding: 0 0 0 0;.}.#page-login h1 {..font-size: 2rem;.}.#page-login .left-side-login {..max-height: 100vh;..overflow: auto;.}.#page-login .page-contents {..background: transparent !important;.}.#page-login .center-form {..border-radius: 5px;..min-height: 697px;..box-shadow: #000 0px 5px 15px;.}.#page-login .login-form {..width: 520px;..max-width: 520px;..background: #fff;..border-top-right-radius: 5px;..border-bottom-right-radius: 5
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):827
                                  Entropy (8bit):4.964060503552779
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:7AD65D5218A49E168A5A7F191BF473B3
                                  SHA1:E8AE1531820362E2A9448AA51C6C0354CBF27EC2
                                  SHA-256:A8A599D5C0AC63DF14E9D4FC63649BB1822BFD1BDD21AFD3FEA515DB21C2CEBF
                                  SHA-512:95B08AF054E8018E9F2C5A87B6B0E64B9129B1C74B5BDC606771D8FECFC02B64E9BDD5248E10614611F19B406498D24F8D62A9C0EF450209A5FEC111981CA573
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/css-modernize/pages/parsley.css
                                  Preview:body {..background: #005eb8;.}..#chaselounge {..margin: 40px auto;..width: 500px;.}..#global-container {..padding-left: 0;.}...form-all {..margin: 0 auto;..margin-bottom: 70px;.}..input.parsley-success,.select.parsley-success,.textarea.parsley-success {. color: #468847;. background-color: #DFF0D8;. border: 1px solid #D6E9C6;.}..input.parsley-error,.select.parsley-error,.textarea.parsley-error {. color: #B94A48;. background-color: #F2DEDE;. border: 1px solid #EED3D7;.}...parsley-errors-list {. margin: 2px 0 3px;. padding: 0;. list-style-type: none;. font-size: 0.9em;. line-height: 0.9em;. opacity: 0;. color: #B94A48;.. transition: all .3s ease-in;. -o-transition: all .3s ease-in;. -moz-transition: all .3s ease-in;. -webkit-transition: all .3s ease-in;.}...parsley-errors-list.filled {. opacity: 1;.}.
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:HTML document, ASCII text, with very long lines (11849)
                                  Category:downloaded
                                  Size (bytes):40074
                                  Entropy (8bit):5.426813353470525
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:7FE7E3086EB66AB8AE1459E34680CB4B
                                  SHA1:E24A764AE578D72CF6233729712622C5244DC15C
                                  SHA-256:5D954E864DF3875D870D342D7ED1233CC9C35C1F9BE427B7E57CD0B02BC42F69
                                  SHA-512:3B1E1EEC08D04521E04B71E6D55A74D39C264962B31876D8E69F58AA597759F7716CCFE70CF437B6F97BCAB44110AC71C4AF1BA20A76773CA11B10B04FEBE5B5
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/create-account/
                                  Preview:...<!DOCTYPE html>.<html lang="en">..<head>...<title>Chasegetsyoucloser.com</title>...<meta http-equiv="content-type" content="text/html;charset=UTF-8" />...<meta name = "viewport" content = "width=device-width, minimum-scale=1.0, maximum-scale = 1.0, user-scalable = no">...<meta name="apple-mobile-web-app-capable" content="yes">...<link rel="manifest" href="/includes/site.json">...<meta name="msapplication-TileColor" content="#31357a">...<meta name="theme-color" content="#31357a">...<link rel="icon" type="image/png" sizes="32x32" href="/favicon-32x32.png">...<link rel="icon" type="image/png" sizes="16x16" href="/favicon-16x16.png">....<link rel="stylesheet" href="https://cdn.mpeventapps.com/fontawesome/6.1.1/css/all.min.css">....<style>..:root {..--primary-bc: #0e6cb5;..--secondary-bc: #297953;..--tertiary-bc: #00214d;...--page-header: rgba(16, 108, 182, .6);...--navigation-bc: rgba(255,255,255,.8);.}../* Theme images */...body {...background: #fff;..}.....#login-background {...backg
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):1679
                                  Entropy (8bit):4.340193230859561
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:D1164892F8C0AD0223A0F3C8F09184A9
                                  SHA1:9DAE20B89613C1B98814B4CBD54958BBAF6E5CA6
                                  SHA-256:C64519CDF3F2AE9B45D45B5AE837A3835EB15FB6BEB46E7BD39F7993E30EFA75
                                  SHA-512:AC4714F212AB30AD33E6199874154EA18DC93DBC31D643EDC13005936AAE0BB03D2BA61B97C3327A50D3398BAE4625E33E93405542E5CAA53FAE44FD3A8481A1
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/activitylogger/activityLogger.js
                                  Preview:var activityLogger = function() {. var prefix = "log-activity-";. var api_url = "/_log_activity/";..init = function() {. $('body').on("click","[data-log-activity=\"true\"]", function(){. var $elm =$(this). ,action=$elm.data( prefix + "action" ). ,type=$elm.data( prefix + "action-type" ). ,act_url=$elm.data( prefix + "url" ). ,userid=$elm.data( prefix + "userid" ). ,message=$elm.data( prefix + "message" ). ,ip=$elm.data( prefix + "ip" ). ,on_id=$elm.data( prefix + "action_on_id");.. logActivity( action, type, act_url, userid, message, ip, on_id );. });..}... logActivity = function( action, type, act_url, userid, message, ip, on_id ) {. var browser = $.browser;. var data = { action:action, action_type:type, url:act_url, userid:userid, browser:browser.name. , device:browser.platform, user_agent:window.navi
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):23630
                                  Entropy (8bit):4.236033206169145
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:C510F2D4D9C03B7B8E3199EBE30A5E57
                                  SHA1:17263A529AD7B92C8A130233AE9D679E211C22ED
                                  SHA-256:2A6878260C5632CEE6E3565EB6BE8B7A61AEDC7509BECA2BD65055EF951142F6
                                  SHA-512:719F88E3D846B5AA62E65D35C8F0304E072EF643179931C61CD8B506AEA3D669E63E6AAA4DBD7D3D6B2148429EA09C3984E51CD1EABF6177075850C3A55C5305
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/app.js?v=2.11
                                  Preview:$(document).ready(function() {.. // Adds body class to pages with unique page IDs. $('body').addClass($('[id*="page-"]').attr('id'));.. const tooltipTriggerList = document.querySelectorAll('[data-bs-toggle="tooltip"]'). const tooltipList = [...tooltipTriggerList].map(tooltipTriggerEl => new bootstrap.Tooltip(tooltipTriggerEl)).. $('body').on('click', '.option-toggle,.point-breakdown-toggle,.toggle-attendee-options,.post-toggle', function(e){. e.preventDefault();. var toggledElement = $(this).attr('href');. var findElement = $('body').find(toggledElement);.. $(this).toggleClass('active');. findElement.toggleClass('active');. });.. // prevent "right click" download on HTML5 videos. if($('video').length){. $('video').bind('contextmenu', function(e) {. return false;. });. }.. // Accessibility for top header keyboard nav. $('.primary-nav-link').on('click', function(){. $('.mph-sub-nav-item').
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with CRLF, LF line terminators
                                  Category:downloaded
                                  Size (bytes):8117
                                  Entropy (8bit):5.2454499468763505
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:F8C18E51ADFDA358AADB1A6964DA9394
                                  SHA1:D58467DF58265D94B2AA499159259D3200BB3C71
                                  SHA-256:26008312DF02A4412419600BBD27397819FA78C22F2DD3DB8C7BBF7B634EC171
                                  SHA-512:6B9708D1C8C88D261B664785FBB2C90A7F653AE5DF813AED1E05458AEE9B9B1FED0661BA10DBD993737F9DE8581C271DC14DDA6AED35AB7EDB1F4310DFAB9BE1
                                  Malicious:false
                                  Reputation:low
                                  URL:https://www.chase.com/apps/chase/clientlibs/foundation/tagmanagerextensions.js
                                  Preview:CHASE.TagManager.midasActivity = function(TagId, AppID, TagMap, productId, sourceCode) {.... var additionalParams = {.. midas : {}.. };.... if (productId && productId != null) additionalParams.midas.productId = productId;.. if (AppID && AppID != null) additionalParams.midas.AppID = AppID;.. if (TagMap && TagMap != null) additionalParams.midas.TagMap = TagMap;.. if (TagId && TagId != null) additionalParams.midas.TagId = TagId;.. if (sourceCode && sourceCode != null) additionalParams.midas.sourceCode = sourceCode;.... var buildAndInvoke = function(EnvID) {.... var pixelUrl = "https://" + EnvID;.... pixelUrl = pixelUrl + "pageID={midas.TagId}";.. pixelUrl = pixelUrl + "&ssv_tmc={midas.TagMap}";.. pixelUrl = pixelUrl + "&ssv_v1st={v1st}";.. pixelUrl = pixelUrl + "&ssv_pfid={persona.pfid}";.. pixelUrl = pixelUrl + "&ssv_productid={midas.productId}";.. pixelUrl = pixelUrl + "&ssv_src={midas.sourceCode}";.. pixelUrl = pixelUrl + "&ssv_eci={pe
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):3826
                                  Entropy (8bit):4.74063192447041
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:56F4B77B6E5D662A822F0A430D612302
                                  SHA1:BC77F2983F0677E61AD6F5D6712623C79722A1C9
                                  SHA-256:204728A9291FE590174454D7DE696B6F406AB234DFF23FD4981A920B507889F2
                                  SHA-512:3B81FB7C62504687309933F34FAC567F51C0A71C793DA5B7C56DD4EA1F6FDCE4B6F4B746B5D66C5BFEB639CAFD788F080C124EEDC0E3F98C7D1FC5942D156D57
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/password.js
                                  Preview:$(function(){. const $password = $('#password');. const $confirmPassword = $('#confirm-password');. const $currentPassword = $("#current-password");. const $submit = $('#js-btn-submit');.. $password.on('keyup', e => {. onPasswordKeyup();. });.. $confirmPassword.on('keyup', e => {. onPasswordKeyup();. });.. $currentPassword.on('keyup', e => {. onPasswordKeyup();. });.. const onPasswordKeyup = debounce(() => {. if(allChecksPass()){. $submit.prop("disabled", false);. $submit.removeClass('disabled');. } else {. $submit.prop("disabled", true);. $submit.addClass('disabled');. }. });.. function debounce(callback, timeout = 200){. let timer;. return (...args) => {. clearTimeout(timer);. timer = setTimeout(() => { callback.apply(this, args); }, timeout);. };. }.. const $lengDisplay = $("#leng");. const $spaceDisplay = $(
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (40813)
                                  Category:downloaded
                                  Size (bytes):104271
                                  Entropy (8bit):4.90107926873035
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:F5F55189D1311150E3508CDFE0BB75C7
                                  SHA1:D74B154AC13D1DA6C45BDC900E2CB4FA4EB17AE0
                                  SHA-256:1411605B5AC41253699F9B4C7229C09BFF6CB49B8BFA0DE9894C864305D4D072
                                  SHA-512:C8A38BEDE4B73EC0E2853BE7A2FFF0695384A83986B4AD17897545F48B1EC4630D2F7BFBCE3B1C98EF554352590F6C85A29CACA6E9D44435B14AC1E71C2E6B50
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/sweetalert2/7.12.0/sweetalert2.js
                                  Preview:/*!. * sweetalert2 v7.12.0. * Released under the MIT License.. */.(function (global, factory) {..typeof exports === 'object' && typeof module !== 'undefined' ? module.exports = factory() :..typeof define === 'function' && define.amd ? define(factory) :..(global.Sweetalert2 = factory());.}(this, (function () { 'use strict';..var styles = "body.swal2-toast-shown.swal2-has-input > .swal2-container > .swal2-toast {\n -webkit-box-orient: vertical;\n -webkit-box-direction: normal;\n -ms-flex-direction: column;\n flex-direction: column;\n -webkit-box-align: stretch;\n -ms-flex-align: stretch;\n align-items: stretch; }\n body.swal2-toast-shown.swal2-has-input > .swal2-container > .swal2-toast .swal2-actions {\n -webkit-box-flex: 1;\n -ms-flex: 1;\n flex: 1;\n -ms-flex-item-align: stretch;\n align-self: stretch;\n -webkit-box-pack: end;\n -ms-flex-pack: end;\n justify-content: flex-end;\n height: 2.2em; }\n
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (65536), with no line terminators
                                  Category:downloaded
                                  Size (bytes):495836
                                  Entropy (8bit):5.150298855100028
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:9D9B262787A2E2A35B6ECF81633DD4CD
                                  SHA1:6CD06EC88B73FA79CD4DD9C8B1535449FDB18620
                                  SHA-256:E3575A0AB61B541AA214987DEA12A2CF75102F7D8377CACED8874426B5D97E28
                                  SHA-512:AEBAFD8771264238F2D2292BE58D983DDD134E759D8B825006E0A34B1C7109038696AF65A38A0A1C367D3943778BCBA58D18BB4C5AE033DB8B3A017D1F35A6C2
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn01.jotfor.ms/themes/CSS/5e6b428acc8c4e222d1beb91.css?v=3.3.40359&themeRevisionID=63a2351435646363a50e3ee0
                                  Preview:@font-face{font-family:Inter;src:url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Medium.woff2) format("woff2"),url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Medium.woff) format("woff");font-display:swap;font-style:normal;font-weight:500}@font-face{font-family:Inter;src:url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Black.woff2) format("woff2"),url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Black.woff) format("woff");font-display:swap;font-style:normal;font-weight:900}@font-face{font-family:Inter;src:url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Regular.woff2) format("woff2"),url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Regular.woff) format("woff");font-display:swap;font-style:normal;font-weight:400}@font-face{font-family:Inter;src:url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-ExtraLight.woff2) format("woff2"),url(https://cdn.jotfor.ms/fonts/inter/fonts/Inter-ExtraLight.woff) format("woff");font-display:swap;font-style:normal;font-weight:200}@font-face{font-fami
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:Web Open Font Format (Version 2), TrueType, length 19308, version 1.0
                                  Category:downloaded
                                  Size (bytes):19308
                                  Entropy (8bit):7.990467454575646
                                  Encrypted:true
                                  SSDEEP:
                                  MD5:0D17DC102F6109715E0D74D9E267CBD7
                                  SHA1:204A106F9EB8C74953D411F200196C544ED87300
                                  SHA-256:883BD0F053CDE78238A0881291E4B6647ACD9B3FA73808DB5AC83D286BB4B44E
                                  SHA-512:F71E1FA9C57CFC513FA02CB5D0FF8DBA40095A7762324A1A03DCB2E0EC34AD9D8D45C41C314E3ADB6E8E8D754BACB0F6712C19BE5E7FB7F1FD977E8D560493DD
                                  Malicious:false
                                  Reputation:low
                                  URL:https://fonts.gstatic.com/s/opensans/v35/memQYaGs126MiZpBA-UFUIcVXSCEkx2cmqvXlWq8tWZ0Pw86hd0Rk8ZkWVAewA.woff2
                                  Preview:wOF2......Kl.......D..K...........................$..8..n.`?STATZ..@..8........h.....>..6.$..x. ..\..c....i.%.!.<..q...(Y...@.q.p.;'...@....n (X...K*.+d\.5.]R....b......`W..7....n.....#(&.sW$..[...PQ...P....Mw.Z.._x..uI...Q....Q........}..?J%..Y..Zc....?9/.C$..j.?@..P@..tt.F.2...............,.Ec.n.9..X.SD.v.E.,u....Y~..*....L&...G.......]r......>].o~..#?..r.[.V..B.......TD...}...]a\.a..O..;...C.t;.b.....)=.3.T.StZ.tKcY....\..;..........z.Vd.w.O.;...JD..BT0..X...D..`."**`.V.o.s..Wy.mW..v..]..*.W....x/.`Hy.T...zq.......H..+.t.3.W.Z......._T.Y........9.*.Z.v...i..9..X..Blg.......23..2.g.N>.....9t>..8.k........M-K..Gs..Y.@X3#OY.,W&.c....y..>....M6.....;.I...hF......UQ.6.1..P.K9..r.fe]....././...L&:............5.a.P.C.o.D.P..B.O...P.......^.-..'.....\..V.....)...A_]}.4.:..?.o.(k....|.fc....a..\VaI..u<{\...EK.A +.VJ.%..D88...NA...<...........z......O..}g......k.R.gat..{..B@OH8......M@O.X8...#G;....U. ..QP:+T....X........@ Y)%|{!8..H.
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text
                                  Category:downloaded
                                  Size (bytes):11872
                                  Entropy (8bit):5.523896371829263
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:D836C3120A609A0D23D18327D48CCB05
                                  SHA1:504187CDA381BE9A44E5277C317044AA4DAF9CC8
                                  SHA-256:40BB7D6DDBD03C8A64A67438A112F32304829D333CB3A3D0CD0DA85CE1CED1B9
                                  SHA-512:40245CDBB01484ABD51466FD89DEE30479AE48CA1F48DD0E3F6D8A9E2E892DCBADE84EFAD0872943C3089C1485F0B0A14141FDB3CE9DA686F4184CB661C82E39
                                  Malicious:false
                                  Reputation:low
                                  URL:"https://fonts.googleapis.com/css2?family=Open+Sans:ital,wght@0,300;0,400;0,700;1,400&display=swap"
                                  Preview:/* cyrillic-ext */.@font-face {. font-family: 'Open Sans';. font-style: italic;. font-weight: 400;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memQYaGs126MiZpBA-UFUIcVXSCEkx2cmqvXlWq8tWZ0Pw86hd0Rk8ZkWV0ewJER.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Open Sans';. font-style: italic;. font-weight: 400;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memQYaGs126MiZpBA-UFUIcVXSCEkx2cmqvXlWq8tWZ0Pw86hd0Rk8ZkWVQewJER.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Open Sans';. font-style: italic;. font-weight: 400;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memQYaGs126MiZpBA-UFUIcVXSCEkx2cmqvXlWq8tWZ0Pw86hd0Rk8ZkWVwewJER.woff
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (17003)
                                  Category:downloaded
                                  Size (bytes):45701
                                  Entropy (8bit):5.487189511941434
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:EF975C5531DEE5D2ADF795366E2924ED
                                  SHA1:EE13E20C966216E4F625FA70CFF458A0FD22D5F5
                                  SHA-256:A5C7078E9CA5251BD6D83893BDCBDA871CD2754CFA91A6C9F008A414027D87A4
                                  SHA-512:0851EBBA04779D60395938738847E3EED437216C145391A6B832F5D4D3C9E029055758F4822B29BAE3222D2AAD92C6386414104A73ECE27ACD80331C120A1742
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/es-module-shims/es-module-shims.js
                                  Preview:/* ES Module Shims 1.5.2 */.(function () {...const noop = () => {};. ..const optionsScript = document.querySelector('script[type=esms-options]');. ..const esmsInitOptions = optionsScript ? JSON.parse(optionsScript.innerHTML) : {};..Object.assign(esmsInitOptions, self.esmsInitOptions || {});. ..let shimMode = !!esmsInitOptions.shimMode;. ..const importHook = globalHook(shimMode && esmsInitOptions.onimport);..const resolveHook = globalHook(shimMode && esmsInitOptions.resolve);..let fetchHook = esmsInitOptions.fetch ? globalHook(esmsInitOptions.fetch) : fetch;..const metaHook = esmsInitOptions.meta ? globalHook(shimModule && esmsInitOptions.meta) : noop;. ..const skip = esmsInitOptions.skip ? new RegExp(esmsInitOptions.skip) : null;. ..let nonce = esmsInitOptions.nonce;. ..const mapOverrides = esmsInitOptions.mapOverrides;. ..if (!nonce) {.. const nonceElement = document.querySelector('script[nonce]');.. if (nonceElement)...nonce = nonceElement.nonce || nonceElement.getAttribute
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with no line terminators
                                  Category:dropped
                                  Size (bytes):53
                                  Entropy (8bit):4.671804068694575
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:68D961E46C71146B19D04904070C3D7B
                                  SHA1:F52416ADF8BD548EA9A9592C638EC1B0D52B2005
                                  SHA-256:55BBBC84CE4E42A25F18D7DEC2B764BD13BA35DF24949A7851FC43E9B1E0E97F
                                  SHA-512:893B6B2C611A6A3500F04FE9CF52D223D11697549A4FF8CAB2FD2924CB822881AF9EFB71257E521221FA606113B639C58F935537608757894BDBAE72F521F8A7
                                  Malicious:false
                                  Reputation:low
                                  Preview:CHASE.TagManager.processTags({"jsonScriptArray":[]});
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:Web Open Font Format (Version 2), TrueType, length 424536, version 769.768
                                  Category:downloaded
                                  Size (bytes):424536
                                  Entropy (8bit):7.994999375929394
                                  Encrypted:true
                                  SSDEEP:
                                  MD5:B7412EB0B0D0A37DEFFBB70250B4011D
                                  SHA1:B89AD9DFE0720D47EB134B6A32806F185CC12EE3
                                  SHA-256:515954FE1DC163277D36B51F79FE56265F6B6CF79F99E307BBF6E52B477B9C87
                                  SHA-512:C5DAE743BAD81C8CFCD0A2601A2CD3BBCD2309C585E2D1ADFE29C0080A164F7765DC195E8888EAFE0F74440E36C0935C2E9CF79FC2403356746B250644E3F945
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/fontawesome/6.1.1/webfonts/fa-light-300.woff2
                                  Preview:wOF2......zX.......T..z..........................8.$. .`..T......8..X..d. ........6.......Ij.....z..........p\..... ..O~.._..w~....O../..o....._..?........n...b...N...........z....j..f&@p.....' t..0....PY#t@_{.^.X...%QJ...[...B.qe).q..>.Hr.(..$%v..V..#.i.....k.|U.m; .....A...CR.....|.......r......A...y..?.M....N7..O....>......|o.......U.A.A.....2....=.+..p.._......FH$..N.+.. ..l.....j..k..R.a^z!.x\~V..z..3.0.$_.C....G...+4..j.H. .dC`.M,).=..">0W?.|.ua.2=..`.W.....k.t..................$".b.. ..R...I%?......j...qV8.=;.z]....1..lC.qZ....u..!.R.z.......4P.0....;....Y.N.\.K....HQCR.(.....4....J...S8..l..../.!_..%_.....?....kf....e...ZK.,..HYL.qJ."g......'Ly..........?..R..R..r...X..Xq,us........r.8.G.#...}.9.....x.m.....g.o.N.......3........3....,7p.....a.2.,.M..Z"..J"e*.B.i.R.*8.....!.Y.z^g....?....UwUuu..\3.gz.{6N...j.#.$..E...fl.N.A..a...G.;.|y..%].{).R...=.y\j..\@.^...(.d.h.#....$..n.v..}....g....y.y.~..0...?.J..UuUuuwU5V.p.t.....3...v$;..rd.v...8
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with CRLF line terminators
                                  Category:downloaded
                                  Size (bytes):42
                                  Entropy (8bit):4.037255294606302
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:6CEB56441A47178FA348BE479B08A92B
                                  SHA1:A4303A8061A1875B79FC821EA71F9610DE528118
                                  SHA-256:1583C781105A9EBDC56AA8BE7DD5F3D25AB0893457606BB3FF5D4CA2A0B5CA74
                                  SHA-512:D8F0659CD4EC9705DE65B82D0356A654E4DE5F39121DD5D296849798036D91F166D2838259E47A485160A13675CC92595DB586BE02558DBE519E080177467AAF
                                  Malicious:false
                                  Reputation:low
                                  URL:https://www.chase.com/etc/chase/appsconfig/clientconfig.enableCCPA.js
                                  Preview:....define({....enableCCPA:"true"....});..
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:JSON data
                                  Category:downloaded
                                  Size (bytes):71
                                  Entropy (8bit):4.219668775284155
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:4DC87C0FCEC3D3126E8244CE9FFD7FC4
                                  SHA1:7410078E456938FF1D1D8A13D301417786B6126C
                                  SHA-256:02BD4F7E91351008074CFCC1AC7D6157D3F541C6556E2A355A8723F767BAC03E
                                  SHA-512:E258C1D32096C97642CBE07A73743175FB62031B4E68EFA169A6B9BC938B0A0624893A6FAEF8BEEDA55A704F4978F4BE783945962BA3976719FDF547272B4526
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/site.json
                                  Preview:{. "short_name": "MeetingPlay",. "name": "MeetingPlay - Events".}
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (42732)
                                  Category:downloaded
                                  Size (bytes):42773
                                  Entropy (8bit):5.223813784339764
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:FCFE6AE30A25B06F0C24394F88E39F9A
                                  SHA1:7FA9C3B26B48C3BC9342CE8631BAFCEC3F2176C3
                                  SHA-256:A44767FE9276B724F7EDAC5B1083E4C9451FB86D725D1D3E615FA1FA3A617A6E
                                  SHA-512:7B21CBD5AB5837271735764C0E7771AC384D01E807D810D6B754E691724FA067F558B94D62DD3C0928E4A85E659C2466766DC8AE41E277CB368CE518E0D21955
                                  Malicious:false
                                  Reputation:low
                                  URL:https://chasegetsyoucloser.com/includes/js/parsley.min.js
                                  Preview:!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?module.exports=e(require("jquery")):"function"==typeof define&&define.amd?define(["jquery"],e):(t=t||self).parsley=e(t.jQuery)}(this,function(h){"use strict";function n(t){return(n="function"==typeof Symbol&&"symbol"==typeof Symbol.iterator?function(t){return typeof t}:function(t){return t&&"function"==typeof Symbol&&t.constructor===Symbol&&t!==Symbol.prototype?"symbol":typeof t})(t)}function l(){return(l=Object.assign||function(t){for(var e=1;e<arguments.length;e++){var i=arguments[e];for(var r in i)Object.prototype.hasOwnProperty.call(i,r)&&(t[r]=i[r])}return t}).apply(this,arguments)}function o(t,e){return function(t){if(Array.isArray(t))return t}(t)||function(t,e){if(!(Symbol.iterator in Object(t)||"[object Arguments]"===Object.prototype.toString.call(t)))return;var i=[],r=!0,n=!1,s=void 0;try{for(var a,o=t[Symbol.iterator]();!(r=(a=o.next()).done)&&(i.push(a.value),!e||i.length!==e);r=!0);}catch(t){n=!0,s=t}finall
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with no line terminators
                                  Category:downloaded
                                  Size (bytes):48
                                  Entropy (8bit):4.472794209361695
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:0A978C9CBEF5E86B48E4A4A7C572EA2A
                                  SHA1:E2CC4D4D8CBDA7C4EEAC7F80E6D188CC7905D1E3
                                  SHA-256:7F39E50AC2FA15E83AF0223B1B93E0B64C4DC3E63E98D56D20C023A7B8C8076A
                                  SHA-512:E02E2CE12D9829EEDCB382C42AD48209F39ED9C9D481D7A877BEB68144848809996F81C7FFAA8B460B8333A172620E55517F8EEA3983D9DD169EAF06F3A2B814
                                  Malicious:false
                                  Reputation:low
                                  URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISFwl84lb22rjdERIFDYOoWz0SBQ3OQUx6?alt=proto
                                  Preview:CiAKEQ2DqFs9GgQICRgBGgQIVhgCCgsNzkFMehoECEsYAg==
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (862)
                                  Category:downloaded
                                  Size (bytes):219207
                                  Entropy (8bit):4.387052889274861
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:4B7BA41AC3E6A3C03C0D08F34A4B9F42
                                  SHA1:5285169A52B91EF77C9D7BEE98C46AEAA4C4446E
                                  SHA-256:5CBEB9095648444AE26AD665785931D937A10BC83B78F2CF51EAEFEA0DC0EC21
                                  SHA-512:EEEE5F1578A79F20B4FA304B9D79A309A7668E3A28070598D5FA90EBCA9E3D2A04C91E688AEC78B402A42BE422FC45439ED95BAE2409287AED50C1593552F217
                                  Malicious:false
                                  Reputation:low
                                  URL:https://rawgit.com/RobinHerbots/jquery.inputmask/3.x/dist/jquery.inputmask.bundle.js
                                  Preview:/*!.* jquery.inputmask.bundle.js.* https://github.com/RobinHerbots/Inputmask.* Copyright (c) 2010 - 2017 Robin Herbots.* Licensed under the MIT license (http://www.opensource.org/licenses/mit-license.php).* Version: 3.3.11.*/..!function(modules) {. function __webpack_require__(moduleId) {. if (installedModules[moduleId]) return installedModules[moduleId].exports;. var module = installedModules[moduleId] = {. i: moduleId,. l: !1,. exports: {}. };. return modules[moduleId].call(module.exports, module, module.exports, __webpack_require__), . module.l = !0, module.exports;. }. var installedModules = {};. __webpack_require__.m = modules, __webpack_require__.c = installedModules, __webpack_require__.d = function(exports, name, getter) {. __webpack_require__.o(exports, name) || Object.defineProperty(exports, name, {. configurable: !1,. enumerable: !0,. get: getter. })
                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                  File Type:ASCII text, with very long lines (65360)
                                  Category:downloaded
                                  Size (bytes):498160
                                  Entropy (8bit):4.671794264543212
                                  Encrypted:false
                                  SSDEEP:
                                  MD5:325672B036BAB9B57F6873AED5ECCC43
                                  SHA1:264F5DB348311950380AD1BCA79754FF593D87E2
                                  SHA-256:A35F901D01118E5649091BD03AC5784A7DB52E111FB3806524C412F3D1DCFC5D
                                  SHA-512:50A041C49E4DDFF318892B184E512C011B29E2F10B295448925103E0C6FAC29B9514E832E4196DFAC5D4773D530D17AA5AC9BAE31C41036428049442C48D31E5
                                  Malicious:false
                                  Reputation:low
                                  URL:https://cdn.mpeventapps.com/fontawesome/6.1.1/css/all.min.css
                                  Preview:/*!. * Font Awesome Pro 6.1.1 by @fontawesome - https://fontawesome.com. * License - https://fontawesome.com/license (Commercial License). * Copyright 2022 Fonticons, Inc.. */..fa{font-family:var(--fa-style-family,"Font Awesome 6 Pro");font-weight:var(--fa-style,900)}.fa,.fa-brands,.fa-duotone,.fa-light,.fa-regular,.fa-solid,.fa-thin,.fab,.fad,.fal,.far,.fas,.fat{-moz-osx-font-smoothing:grayscale;-webkit-font-smoothing:antialiased;display:var(--fa-display,inline-block);font-style:normal;font-variant:normal;line-height:1;text-rendering:auto}.fa-1x{font-size:1em}.fa-2x{font-size:2em}.fa-3x{font-size:3em}.fa-4x{font-size:4em}.fa-5x{font-size:5em}.fa-6x{font-size:6em}.fa-7x{font-size:7em}.fa-8x{font-size:8em}.fa-9x{font-size:9em}.fa-10x{font-size:10em}.fa-2xs{font-size:.625em;line-height:.1em;vertical-align:.225em}.fa-xs{font-size:.75em;line-height:.08333em;vertical-align:.125em}.fa-sm{font-size:.875em;line-height:.07143em;vertical-align:.05357em}.fa-lg{font-size:1.25em;line-height:.05em;v
                                  No static file info