IOC Report
Upper Shore Aging, Inc.pdf

loading gif

Files

File Path
Type
Category
Malicious
Upper Shore Aging, Inc.pdf
PDF document, version 1.7, 1 pages
initial sample
malicious
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
JSON data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\ee494920-93ca-44b7-91ce-348761fded13.tmp
JSON data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-240523181947Z-173.bmp
PC bitmap, Windows 3.x format, 117 x -152 x 32, cbSize 71190, bits offset 54
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages
SQLite 3.x database, last written using SQLite version 3040000, file counter 13, database pages 21, cookie 0x5, schema 4, UTF-8, version-valid-for 13
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
SQLite Rollback Journal
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
Microsoft Cabinet archive data, Windows 2000/XP setup, 69993 bytes, 1 file, at 0x2c +A "authroot.stl", number 1, 6 datablocks, 0x1 compression
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
data
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
data
modified
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt23.lst.5804
PostScript document text
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt23.lst (copy)
PostScript document text
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\IconCacheAcro65536.dat
data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\Edit_InApp_Aug2020
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\TESTING
data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\SOPHIA.json
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents
SQLite 3.x database, last written using SQLite version 3040000, file counter 25, database pages 3, cookie 0x2, schema 4, UTF-8, version-valid-for 25
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal
SQLite Rollback Journal
dropped
C:\Users\user\AppData\Local\Temp\MSIb9480.LOG
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\A91c1bc7y_1asfe5t_4h8.tmp
Zip data (MIME type "application/vnd.adobe.air-ucf-package+zip"?)
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\A91s1o56z_1asfe5w_4h8.tmp
Zip data (MIME type "application/vnd.adobe.air-ucf-package+zip"?)
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\A9d7ph25_1asfe5x_4h8.tmp
PDF document, version 1.6, 0 pages
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-05-23 14-19-44-898.log
ASCII text, with very long lines (393)
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
ASCII text, with very long lines (393), with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\acroNGLLog.txt
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\06908f03-167c-4d17-8ff4-a413966591cf.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\130ff988-1f15-4a06-ae02-7e55396a6f28.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\4a831429-749c-4620-a5a1-7ada47f2bf37.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\b9f452f7-3bfc-4cf1-b8f4-2c10d4b6f50a.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 33081
dropped
C:\Users\user\AppData\Roaming\Adobe\Acrobat\DC\JSCache\GlobSettings
ASCII text
dropped
C:\Users\user\AppData\Roaming\Adobe\Acrobat\DC\Security\CRLCache\915DEAC5D1E15E49646B8A94E04E470958C9BB89.crl
data
dropped
C:\Users\user\AppData\Roaming\Adobe\Acrobat\DC\Security\CRLCache\DF22CF8B8C3B46C10D3D5C407561EABEB57F8181.crl
data
dropped
Chrome Cache Entry: 334
ASCII text, with very long lines (2248)
downloaded
Chrome Cache Entry: 335
ASCII text, with very long lines (2147)
downloaded
Chrome Cache Entry: 336
ASCII text, with very long lines (3645)
downloaded
Chrome Cache Entry: 337
ASCII text, with very long lines (3769)
downloaded
Chrome Cache Entry: 338
ASCII text, with very long lines (8451)
downloaded
Chrome Cache Entry: 339
ASCII text, with very long lines (6303)
downloaded
Chrome Cache Entry: 340
ASCII text, with very long lines (4225)
downloaded
Chrome Cache Entry: 341
ASCII text, with very long lines (6421)
downloaded
Chrome Cache Entry: 342
ASCII text
downloaded
Chrome Cache Entry: 343
ASCII text, with very long lines (2013)
downloaded
Chrome Cache Entry: 344
ASCII text, with very long lines (22529)
downloaded
Chrome Cache Entry: 345
ASCII text, with very long lines (19593)
downloaded
Chrome Cache Entry: 346
ASCII text, with very long lines (37473)
downloaded
Chrome Cache Entry: 348
ASCII text, with very long lines (17219)
downloaded
Chrome Cache Entry: 349
ASCII text, with very long lines (4075)
downloaded
Chrome Cache Entry: 350
ASCII text, with very long lines (4586)
downloaded
Chrome Cache Entry: 351
ASCII text, with very long lines (48756)
downloaded
Chrome Cache Entry: 352
ASCII text, with very long lines (456)
downloaded
Chrome Cache Entry: 353
OpenType font data
downloaded
Chrome Cache Entry: 354
HTML document, ASCII text, with very long lines (56858), with CRLF line terminators
downloaded
Chrome Cache Entry: 355
ASCII text, with very long lines (5725)
downloaded
Chrome Cache Entry: 356
ASCII text, with very long lines (2947)
downloaded
Chrome Cache Entry: 357
ASCII text, with very long lines (4421)
downloaded
Chrome Cache Entry: 358
ASCII text, with very long lines (8536)
downloaded
Chrome Cache Entry: 359
ASCII text, with very long lines (9379)
downloaded
Chrome Cache Entry: 360
Unicode text, UTF-8 text, with very long lines (2613)
downloaded
Chrome Cache Entry: 361
ASCII text, with very long lines (1325)
downloaded
Chrome Cache Entry: 362
ASCII text, with very long lines (23862)
downloaded
Chrome Cache Entry: 363
ASCII text, with very long lines (3597)
downloaded
Chrome Cache Entry: 364
ASCII text, with very long lines (12142)
downloaded
Chrome Cache Entry: 365
Unicode text, UTF-8 text, with very long lines (18800)
downloaded
Chrome Cache Entry: 366
ASCII text, with very long lines (1863)
downloaded
Chrome Cache Entry: 367
ASCII text, with very long lines (6636)
downloaded
Chrome Cache Entry: 368
ASCII text, with very long lines (1851)
downloaded
Chrome Cache Entry: 369
ASCII text, with very long lines (9170)
downloaded
Chrome Cache Entry: 370
ASCII text, with very long lines (1938)
downloaded
Chrome Cache Entry: 371
ASCII text, with very long lines (10607)
downloaded
Chrome Cache Entry: 372
ASCII text, with very long lines (5156)
downloaded
Chrome Cache Entry: 373
ASCII text, with very long lines (63603)
downloaded
Chrome Cache Entry: 374
ASCII text, with very long lines (34483)
downloaded
Chrome Cache Entry: 375
ASCII text, with very long lines (65302)
downloaded
Chrome Cache Entry: 376
data
dropped
Chrome Cache Entry: 377
ASCII text, with very long lines (11654)
downloaded
Chrome Cache Entry: 378
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 379
Unicode text, UTF-8 text, with very long lines (13396)
downloaded
Chrome Cache Entry: 380
ASCII text, with very long lines (2636)
downloaded
Chrome Cache Entry: 381
ASCII text, with very long lines (3636)
downloaded
Chrome Cache Entry: 382
ASCII text, with very long lines (1539)
downloaded
Chrome Cache Entry: 383
ASCII text, with very long lines (3701)
downloaded
Chrome Cache Entry: 384
ASCII text, with very long lines (4992)
downloaded
Chrome Cache Entry: 385
data
downloaded
Chrome Cache Entry: 386
Unicode text, UTF-8 text, with very long lines (2683)
downloaded
Chrome Cache Entry: 387
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 388
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 389
ASCII text, with very long lines (3465)
downloaded
Chrome Cache Entry: 390
ASCII text, with very long lines (25133)
downloaded
Chrome Cache Entry: 391
ASCII text, with very long lines (1380)
downloaded
Chrome Cache Entry: 392
ASCII text, with very long lines (21024)
downloaded
Chrome Cache Entry: 393
ASCII text, with very long lines (2064)
downloaded
Chrome Cache Entry: 394
JSON data
downloaded
Chrome Cache Entry: 395
ASCII text, with very long lines (19739)
downloaded
Chrome Cache Entry: 396
Unicode text, UTF-8 text, with very long lines (22055)
downloaded
Chrome Cache Entry: 397
ASCII text, with very long lines (39086)
downloaded
Chrome Cache Entry: 398
Unicode text, UTF-8 text, with very long lines (11289)
downloaded
Chrome Cache Entry: 399
Unicode text, UTF-8 text, with very long lines (14940)
downloaded
Chrome Cache Entry: 400
ASCII text, with very long lines (9938)
downloaded
Chrome Cache Entry: 401
ASCII text, with very long lines (5174)
downloaded
Chrome Cache Entry: 402
ASCII text, with very long lines (17437)
downloaded
Chrome Cache Entry: 403
Unicode text, UTF-8 text, with very long lines (12837)
downloaded
Chrome Cache Entry: 404
Unicode text, UTF-8 text, with very long lines (10100)
downloaded
Chrome Cache Entry: 405
ASCII text, with very long lines (416)
downloaded
Chrome Cache Entry: 406
Unicode text, UTF-8 text, with very long lines (19262)
downloaded
Chrome Cache Entry: 407
ASCII text, with very long lines (1872)
downloaded
Chrome Cache Entry: 408
Unicode text, UTF-8 text, with very long lines (41492)
downloaded
Chrome Cache Entry: 409
ASCII text, with very long lines (48756)
downloaded
Chrome Cache Entry: 410
ASCII text, with very long lines (12903)
downloaded
Chrome Cache Entry: 411
ASCII text, with very long lines (10420)
downloaded
Chrome Cache Entry: 412
Unicode text, UTF-8 text, with very long lines (2072)
downloaded
Chrome Cache Entry: 413
ASCII text, with very long lines (1075)
downloaded
Chrome Cache Entry: 414
ASCII text, with very long lines (7613)
downloaded
Chrome Cache Entry: 415
ASCII text, with very long lines (4285)
downloaded
Chrome Cache Entry: 416
Unicode text, UTF-8 text, with very long lines (11293)
downloaded
Chrome Cache Entry: 417
Unicode text, UTF-8 text, with very long lines (3305)
downloaded
Chrome Cache Entry: 418
Unicode text, UTF-8 text, with very long lines (13396)
downloaded
Chrome Cache Entry: 419
JSON data
dropped
Chrome Cache Entry: 420
TrueType Font data, 15 tables, 1st "GDEF", 38 names, Microsoft, language 0x409
downloaded
Chrome Cache Entry: 421
ASCII text, with very long lines (17499)
downloaded
Chrome Cache Entry: 422
ASCII text, with very long lines (57990)
downloaded
Chrome Cache Entry: 423
PDF document, version 1.3, 1 pages
downloaded
Chrome Cache Entry: 424
ASCII text, with very long lines (50629)
downloaded
Chrome Cache Entry: 425
ASCII text, with very long lines (24242)
downloaded
Chrome Cache Entry: 426
Unicode text, UTF-8 text, with very long lines (18788)
downloaded
Chrome Cache Entry: 427
ASCII text, with very long lines (49572)
downloaded
Chrome Cache Entry: 428
Unicode text, UTF-8 text, with very long lines (22062)
downloaded
Chrome Cache Entry: 429
ASCII text, with very long lines (17333)
downloaded
Chrome Cache Entry: 430
Unicode text, UTF-8 text, with very long lines (12837)
downloaded
Chrome Cache Entry: 431
ASCII text, with very long lines (863)
downloaded
Chrome Cache Entry: 432
Unicode text, UTF-8 text, with very long lines (8564)
downloaded
Chrome Cache Entry: 433
ASCII text, with very long lines (7140)
downloaded
Chrome Cache Entry: 434
ASCII text, with very long lines (22324)
downloaded
Chrome Cache Entry: 435
ASCII text, with very long lines (695)
downloaded
Chrome Cache Entry: 436
ASCII text, with very long lines (59235)
downloaded
Chrome Cache Entry: 437
ASCII text, with very long lines (11048)
downloaded
Chrome Cache Entry: 438
ASCII text, with very long lines (4674)
downloaded
Chrome Cache Entry: 439
Unicode text, UTF-8 text, with very long lines (2310)
downloaded
Chrome Cache Entry: 440
ASCII text, with very long lines (5195)
downloaded
Chrome Cache Entry: 441
ASCII text, with very long lines (8443)
downloaded
Chrome Cache Entry: 442
ASCII text, with very long lines (21852)
downloaded
Chrome Cache Entry: 443
ASCII text, with very long lines (11345)
downloaded
Chrome Cache Entry: 444
ASCII text, with very long lines (22896)
downloaded
Chrome Cache Entry: 445
ASCII text, with very long lines (1095)
downloaded
Chrome Cache Entry: 446
ASCII text, with very long lines (11048)
downloaded
Chrome Cache Entry: 447
ASCII text, with very long lines (15315)
downloaded
Chrome Cache Entry: 448
ASCII text, with very long lines (44515)
downloaded
Chrome Cache Entry: 449
Unicode text, UTF-8 text, with very long lines (18788)
downloaded
Chrome Cache Entry: 450
ASCII text, with very long lines (601)
downloaded
Chrome Cache Entry: 451
ASCII text, with very long lines (11266)
downloaded
Chrome Cache Entry: 452
Unicode text, UTF-8 text, with very long lines (15717)
downloaded
Chrome Cache Entry: 453
Unicode text, UTF-8 text, with very long lines (28671)
downloaded
Chrome Cache Entry: 454
Unicode text, UTF-8 text, with very long lines (4909)
downloaded
Chrome Cache Entry: 455
ASCII text, with very long lines (1089)
downloaded
Chrome Cache Entry: 456
ASCII text
downloaded
Chrome Cache Entry: 457
Unicode text, UTF-8 text, with very long lines (14939)
downloaded
Chrome Cache Entry: 458
ASCII text, with very long lines (17556)
downloaded
Chrome Cache Entry: 459
ASCII text, with very long lines (23904)
downloaded
Chrome Cache Entry: 460
ASCII text, with very long lines (27905)
downloaded
Chrome Cache Entry: 461
ASCII text, with very long lines (7328)
downloaded
Chrome Cache Entry: 462
Unicode text, UTF-8 text, with very long lines (18799)
downloaded
Chrome Cache Entry: 463
Unicode text, UTF-8 text, with very long lines (18799)
downloaded
Chrome Cache Entry: 464
Unicode text, UTF-8 text, with very long lines (12297)
downloaded
Chrome Cache Entry: 465
ASCII text, with very long lines (49572)
downloaded
Chrome Cache Entry: 466
ASCII text, with very long lines (10143)
downloaded
Chrome Cache Entry: 467
ASCII text, with very long lines (1521)
downloaded
Chrome Cache Entry: 468
ASCII text, with very long lines (5519)
downloaded
Chrome Cache Entry: 469
ASCII text, with very long lines (2368)
downloaded
Chrome Cache Entry: 470
ASCII text, with very long lines (10204)
downloaded
Chrome Cache Entry: 471
ASCII text, with very long lines (2789)
downloaded
Chrome Cache Entry: 472
ASCII text, with very long lines (5570)
downloaded
Chrome Cache Entry: 473
ASCII text
downloaded
Chrome Cache Entry: 474
WebAssembly (wasm) binary module version 0x1 (MVP)
dropped
Chrome Cache Entry: 475
ASCII text, with very long lines (9379)
downloaded
Chrome Cache Entry: 476
ASCII text, with very long lines (1681)
downloaded
Chrome Cache Entry: 477
ASCII text, with very long lines (27247)
downloaded
Chrome Cache Entry: 478
Unicode text, UTF-8 text, with very long lines (817)
downloaded
Chrome Cache Entry: 479
ASCII text, with very long lines (60481)
downloaded
Chrome Cache Entry: 480
Unicode text, UTF-8 text, with very long lines (2613)
downloaded
Chrome Cache Entry: 481
Unicode text, UTF-8 text, with very long lines (15713)
downloaded
Chrome Cache Entry: 482
ASCII text, with very long lines (5373)
downloaded
Chrome Cache Entry: 483
ASCII text, with very long lines (9697)
downloaded
Chrome Cache Entry: 484
ASCII text, with very long lines (3813)
downloaded
Chrome Cache Entry: 485
ASCII text, with very long lines (29155)
downloaded
Chrome Cache Entry: 486
ASCII text, with very long lines (13581)
downloaded
Chrome Cache Entry: 487
Web Open Font Format, TrueType, length 25088, version 1.3277
downloaded
Chrome Cache Entry: 488
ASCII text, with very long lines (11213)
downloaded
Chrome Cache Entry: 489
Unicode text, UTF-8 text, with very long lines (12297)
downloaded
Chrome Cache Entry: 490
Unicode text, UTF-8 text, with very long lines (14939)
downloaded
Chrome Cache Entry: 491
Unicode text, UTF-8 text, with very long lines (876)
downloaded
Chrome Cache Entry: 492
ASCII text, with very long lines (17121)
downloaded
Chrome Cache Entry: 493
ASCII text, with very long lines (5969)
downloaded
Chrome Cache Entry: 494
Unicode text, UTF-8 text, with very long lines (2764)
downloaded
Chrome Cache Entry: 495
Unicode text, UTF-8 text, with very long lines (4223)
downloaded
Chrome Cache Entry: 496
ASCII text, with very long lines (1325)
downloaded
Chrome Cache Entry: 497
Unicode text, UTF-8 text, with very long lines (886)
downloaded
Chrome Cache Entry: 498
ASCII text, with very long lines (8078)
downloaded
Chrome Cache Entry: 499
Unicode text, UTF-8 text, with very long lines (13396)
downloaded
Chrome Cache Entry: 500
ASCII text, with very long lines (5616)
downloaded
Chrome Cache Entry: 501
Unicode text, UTF-8 text, with very long lines (10119)
downloaded
Chrome Cache Entry: 502
ASCII text, with very long lines (19593)
downloaded
Chrome Cache Entry: 503
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 504
ASCII text, with very long lines (13196)
downloaded
Chrome Cache Entry: 505
ASCII text, with very long lines (2157)
downloaded
Chrome Cache Entry: 506
Unicode text, UTF-8 text, with very long lines (2483)
downloaded
Chrome Cache Entry: 507
Unicode text, UTF-8 text, with very long lines (22056)
downloaded
Chrome Cache Entry: 508
ASCII text, with very long lines (2360)
downloaded
Chrome Cache Entry: 509
ASCII text, with very long lines (20515)
downloaded
Chrome Cache Entry: 510
ASCII text, with very long lines (45376)
downloaded
Chrome Cache Entry: 511
Unicode text, UTF-8 text, with very long lines (22062)
downloaded
Chrome Cache Entry: 512
Unicode text, UTF-8 text, with very long lines (45666)
downloaded
Chrome Cache Entry: 513
ASCII text, with very long lines (24827)
downloaded
Chrome Cache Entry: 514
Unicode text, UTF-8 text, with very long lines (3890)
downloaded
Chrome Cache Entry: 515
Unicode text, UTF-8 text, with very long lines (45664)
downloaded
Chrome Cache Entry: 516
ASCII text, with very long lines (2735)
downloaded
Chrome Cache Entry: 517
ASCII text, with very long lines (24845)
downloaded
Chrome Cache Entry: 518
ASCII text, with very long lines (65461)
downloaded
Chrome Cache Entry: 519
ASCII text, with very long lines (4119)
downloaded
Chrome Cache Entry: 520
ASCII text, with very long lines (3288)
downloaded
Chrome Cache Entry: 521
ASCII text, with very long lines (3433)
downloaded
Chrome Cache Entry: 522
ASCII text, with very long lines (5524)
downloaded
Chrome Cache Entry: 523
ASCII text, with very long lines (793)
downloaded
Chrome Cache Entry: 524
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 525
ASCII text, with very long lines (9627)
downloaded
Chrome Cache Entry: 526
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 527
ASCII text, with very long lines (2325)
downloaded
Chrome Cache Entry: 528
ASCII text, with very long lines (5166)
downloaded
Chrome Cache Entry: 529
ASCII text, with very long lines (691)
downloaded
Chrome Cache Entry: 530
Unicode text, UTF-8 text, with very long lines (21310)
downloaded
Chrome Cache Entry: 531
ASCII text, with very long lines (21126)
downloaded
Chrome Cache Entry: 532
ASCII text, with very long lines (15079)
downloaded
Chrome Cache Entry: 533
ASCII text, with very long lines (6703)
downloaded
Chrome Cache Entry: 534
ASCII text, with very long lines (12974)
downloaded
Chrome Cache Entry: 535
Unicode text, UTF-8 text, with very long lines (3881)
downloaded
Chrome Cache Entry: 536
ASCII text, with very long lines (5700)
downloaded
Chrome Cache Entry: 537
ASCII text, with very long lines (2064)
downloaded
Chrome Cache Entry: 538
Unicode text, UTF-8 text, with very long lines (11293)
downloaded
Chrome Cache Entry: 539
Unicode text, UTF-8 text, with very long lines (38355)
downloaded
Chrome Cache Entry: 540
ASCII text, with very long lines (2764)
downloaded
Chrome Cache Entry: 541
Unicode text, UTF-8 text, with very long lines (4085)
downloaded
Chrome Cache Entry: 542
Unicode text, UTF-8 text, with very long lines (11289)
downloaded
Chrome Cache Entry: 543
Unicode text, UTF-8 text, with very long lines (22063)
downloaded
Chrome Cache Entry: 544
ASCII text, with very long lines (8432)
downloaded
Chrome Cache Entry: 545
ASCII text, with very long lines (49570)
downloaded
Chrome Cache Entry: 546
ASCII text, with very long lines (8818)
downloaded
Chrome Cache Entry: 547
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 548
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 549
ASCII text, with very long lines (4172)
downloaded
Chrome Cache Entry: 550
Unicode text, UTF-8 text, with very long lines (1483)
downloaded
Chrome Cache Entry: 551
Unicode text, UTF-8 text, with very long lines (11131)
downloaded
Chrome Cache Entry: 552
Unicode text, UTF-8 text, with very long lines (12297)
downloaded
Chrome Cache Entry: 553
ASCII text, with very long lines (22833)
downloaded
Chrome Cache Entry: 554
ASCII text, with very long lines (1935)
downloaded
Chrome Cache Entry: 555
ASCII text, with very long lines (9332)
downloaded
Chrome Cache Entry: 556
ASCII text, with very long lines (9526)
downloaded
Chrome Cache Entry: 557
ASCII text, with very long lines (8243)
downloaded
Chrome Cache Entry: 558
Unicode text, UTF-8 text, with very long lines (11289)
downloaded
Chrome Cache Entry: 559
ASCII text, with very long lines (6980)
downloaded
Chrome Cache Entry: 560
ASCII text, with very long lines (11405)
downloaded
Chrome Cache Entry: 561
PDF document, version 1.3, 1 pages
dropped
Chrome Cache Entry: 562
ASCII text, with very long lines (7288)
downloaded
Chrome Cache Entry: 563
Unicode text, UTF-8 text, with very long lines (6437)
downloaded
Chrome Cache Entry: 564
ASCII text, with very long lines (3806)
downloaded
Chrome Cache Entry: 565
Unicode text, UTF-8 text, with very long lines (6437)
downloaded
Chrome Cache Entry: 566
Unicode text, UTF-8 text, with very long lines (45375)
downloaded
Chrome Cache Entry: 567
Unicode text, UTF-8 text, with very long lines (6437)
downloaded
Chrome Cache Entry: 568
Unicode text, UTF-8 text, with very long lines (4197)
downloaded
Chrome Cache Entry: 569
Unicode text, UTF-8 text, with very long lines (65471)
downloaded
Chrome Cache Entry: 570
ASCII text, with very long lines (20986)
downloaded
Chrome Cache Entry: 571
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
Chrome Cache Entry: 572
ASCII text, with very long lines (15315)
downloaded
Chrome Cache Entry: 573
Unicode text, UTF-8 text, with very long lines (7616)
downloaded
Chrome Cache Entry: 574
ASCII text, with very long lines (10292)
downloaded
Chrome Cache Entry: 575
ASCII text, with very long lines (25826)
downloaded
Chrome Cache Entry: 576
ASCII text, with very long lines (49573)
downloaded
Chrome Cache Entry: 577
ASCII text, with very long lines (10749)
downloaded
Chrome Cache Entry: 578
ASCII text, with very long lines (5565)
downloaded
Chrome Cache Entry: 579
Unicode text, UTF-8 text, with very long lines (11289)
downloaded
Chrome Cache Entry: 580
ASCII text, with very long lines (3686)
downloaded
Chrome Cache Entry: 581
ASCII text
downloaded
Chrome Cache Entry: 582
OpenType font data
dropped
Chrome Cache Entry: 583
ASCII text, with very long lines (7365)
downloaded
Chrome Cache Entry: 584
ASCII text, with very long lines (7585)
downloaded
Chrome Cache Entry: 585
ASCII text, with very long lines (6948)
downloaded
Chrome Cache Entry: 586
ASCII text, with very long lines (35884)
downloaded
Chrome Cache Entry: 587
Unicode text, UTF-8 text, with very long lines (7749)
downloaded
Chrome Cache Entry: 588
Unicode text, UTF-8 text, with very long lines (11293)
downloaded
Chrome Cache Entry: 589
TrueType Font data, 15 tables, 1st "GDEF", 38 names, Microsoft, language 0x409
dropped
Chrome Cache Entry: 590
ASCII text, with very long lines (1886)
downloaded
Chrome Cache Entry: 591
ASCII text, with very long lines (37729)
downloaded
Chrome Cache Entry: 592
ASCII text, with very long lines (683)
downloaded
Chrome Cache Entry: 593
ASCII text, with very long lines (8047)
downloaded
Chrome Cache Entry: 594
ASCII text, with very long lines (11226)
downloaded
Chrome Cache Entry: 595
ASCII text, with very long lines (14457)
downloaded
Chrome Cache Entry: 596
ASCII text, with very long lines (691)
downloaded
Chrome Cache Entry: 597
Unicode text, UTF-8 text, with very long lines (8564)
downloaded
Chrome Cache Entry: 598
Unicode text, UTF-8 text, with very long lines (528)
downloaded
Chrome Cache Entry: 599
ASCII text, with very long lines (3562)
downloaded
Chrome Cache Entry: 600
ASCII text, with very long lines (18789)
downloaded
Chrome Cache Entry: 601
ASCII text, with very long lines (898)
downloaded
Chrome Cache Entry: 602
Unicode text, UTF-8 text, with very long lines (13396)
downloaded
Chrome Cache Entry: 603
Unicode text, UTF-8 text, with very long lines (12980)
downloaded
Chrome Cache Entry: 604
ASCII text, with very long lines (1935)
downloaded
Chrome Cache Entry: 605
Unicode text, UTF-8 text, with very long lines (21309)
downloaded
Chrome Cache Entry: 606
Unicode text, UTF-8 text, with very long lines (11289)
downloaded
Chrome Cache Entry: 607
ASCII text, with very long lines (49572)
downloaded
Chrome Cache Entry: 608
Unicode text, UTF-8 text, with very long lines (2240)
downloaded
Chrome Cache Entry: 609
Web Open Font Format, TrueType, length 16740, version 1.3277
downloaded
Chrome Cache Entry: 610
ASCII text, with very long lines (4214)
downloaded
Chrome Cache Entry: 611
Unicode text, UTF-8 text, with very long lines (7057)
downloaded
Chrome Cache Entry: 612
ASCII text, with very long lines (9663)
downloaded
Chrome Cache Entry: 613
ASCII text, with very long lines (65457)
downloaded
Chrome Cache Entry: 614
Unicode text, UTF-8 text, with very long lines (21309)
downloaded
Chrome Cache Entry: 615
Unicode text, UTF-8 text, with very long lines (2289)
downloaded
Chrome Cache Entry: 616
ASCII text, with very long lines (4042)
downloaded
Chrome Cache Entry: 617
ASCII text, with very long lines (4865)
downloaded
Chrome Cache Entry: 618
ASCII text, with very long lines (19279)
downloaded
Chrome Cache Entry: 619
ASCII text, with very long lines (1247)
downloaded
Chrome Cache Entry: 620
ASCII text, with very long lines (19722)
downloaded
Chrome Cache Entry: 621
ASCII text, with very long lines (48909)
downloaded
Chrome Cache Entry: 622
Unicode text, UTF-8 text, with very long lines (19722)
downloaded
Chrome Cache Entry: 623
ASCII text, with very long lines (6281)
downloaded
Chrome Cache Entry: 624
ASCII text, with very long lines (1744)
downloaded
Chrome Cache Entry: 625
ASCII text, with very long lines (14965)
downloaded
Chrome Cache Entry: 626
Unicode text, UTF-8 text, with very long lines (5885)
downloaded
Chrome Cache Entry: 627
ASCII text, with very long lines (7235)
downloaded
Chrome Cache Entry: 628
ASCII text, with very long lines (758)
downloaded
Chrome Cache Entry: 629
Unicode text, UTF-8 text, with very long lines (4977)
downloaded
Chrome Cache Entry: 630
ASCII text, with very long lines (2915)
downloaded
Chrome Cache Entry: 631
ASCII text, with very long lines (2525)
downloaded
Chrome Cache Entry: 632
ASCII text, with very long lines (46022)
downloaded
Chrome Cache Entry: 633
ASCII text, with very long lines (476)
downloaded
Chrome Cache Entry: 634
Java source, ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 635
ASCII text, with very long lines (10589)
downloaded
Chrome Cache Entry: 636
ASCII text, with very long lines (2280)
downloaded
Chrome Cache Entry: 637
ASCII text, with very long lines (60473)
downloaded
Chrome Cache Entry: 638
ASCII text, with very long lines (4720)
downloaded
Chrome Cache Entry: 639
Unicode text, UTF-8 text, with very long lines (51284)
downloaded
Chrome Cache Entry: 640
ASCII text, with very long lines (6968)
downloaded
Chrome Cache Entry: 641
Unicode text, UTF-8 text, with very long lines (12837)
downloaded
Chrome Cache Entry: 642
ASCII text, with very long lines (11732)
downloaded
Chrome Cache Entry: 643
Unicode text, UTF-8 text, with very long lines (6437)
downloaded
Chrome Cache Entry: 644
Unicode text, UTF-8 text, with very long lines (4716)
downloaded
Chrome Cache Entry: 645
Unicode text, UTF-8 text, with very long lines (16717)
downloaded
Chrome Cache Entry: 646
ASCII text, with very long lines (7063)
downloaded
Chrome Cache Entry: 647
ASCII text, with very long lines (2998)
downloaded
Chrome Cache Entry: 648
ASCII text, with very long lines (1761)
downloaded
Chrome Cache Entry: 649
ASCII text, with very long lines (2248)
downloaded
Chrome Cache Entry: 650
ASCII text, with very long lines (1873)
downloaded
Chrome Cache Entry: 651
ASCII text, with very long lines (49572)
downloaded
Chrome Cache Entry: 652
ASCII text, with very long lines (2091)
downloaded
Chrome Cache Entry: 653
Unicode text, UTF-8 text, with very long lines (22055)
downloaded
Chrome Cache Entry: 654
ASCII text, with very long lines (36907)
downloaded
Chrome Cache Entry: 655
ASCII text, with very long lines (1377)
downloaded
Chrome Cache Entry: 656
ASCII text, with very long lines (19722)
downloaded
Chrome Cache Entry: 657
Unicode text, UTF-8 text, with very long lines (11293)
downloaded
Chrome Cache Entry: 658
ASCII text, with very long lines (63569)
downloaded
Chrome Cache Entry: 659
Unicode text, UTF-8 text, with very long lines (7672)
downloaded
Chrome Cache Entry: 660
Unicode text, UTF-8 text, with very long lines (65473)
downloaded
Chrome Cache Entry: 661
ASCII text, with very long lines (4204)
downloaded
Chrome Cache Entry: 662
WebAssembly (wasm) binary module version 0x1 (MVP)
downloaded
Chrome Cache Entry: 663
ASCII text, with very long lines (2365)
downloaded
Chrome Cache Entry: 664
ASCII text, with very long lines (6308)
downloaded
Chrome Cache Entry: 665
ASCII text, with very long lines (8283)
downloaded
Chrome Cache Entry: 666
JSON data
dropped
Chrome Cache Entry: 667
ASCII text, with very long lines (22493)
downloaded
Chrome Cache Entry: 668
ASCII text, with very long lines (64121)
downloaded
Chrome Cache Entry: 669
ASCII text, with very long lines (50600)
downloaded
Chrome Cache Entry: 670
ASCII text, with very long lines (12422)
downloaded
Chrome Cache Entry: 671
ASCII text, with very long lines (27634)
downloaded
Chrome Cache Entry: 672
Unicode text, UTF-8 text, with very long lines (2716)
downloaded
Chrome Cache Entry: 673
ASCII text, with very long lines (2502)
downloaded
Chrome Cache Entry: 674
ASCII text, with very long lines (529)
downloaded
Chrome Cache Entry: 675
Web Open Font Format, TrueType, length 15696, version 1.3277
downloaded
Chrome Cache Entry: 676
ASCII text, with very long lines (24768)
downloaded
Chrome Cache Entry: 677
ASCII text, with very long lines (2653)
downloaded
Chrome Cache Entry: 678
ASCII text, with very long lines (1355)
downloaded
Chrome Cache Entry: 679
Unicode text, UTF-8 text, with very long lines (12837)
downloaded
Chrome Cache Entry: 680
ASCII text, with very long lines (12686)
downloaded
Chrome Cache Entry: 681
ASCII text, with very long lines (19334)
downloaded
Chrome Cache Entry: 682
ASCII text, with very long lines (21591)
downloaded
Chrome Cache Entry: 683
Java source, ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 684
ASCII text, with very long lines (19401)
downloaded
Chrome Cache Entry: 685
HTML document, ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 686
ASCII text, with very long lines (4975)
downloaded
There are 396 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Desktop\Upper Shore Aging, Inc.pdf"
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2104 --field-trial-handle=1728,i,8770776599338431289,11718991557357239957,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "https://uppershoreaging-my.sharepoint.com/:b:/g/personal/ahollis_uppershoreaging_org/Ebz29aVe_0BFkoX8rVx6WqEBFvs4tBqhfQJRfgE22OIa3Q?e=bsm9nf/"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2036 --field-trial-handle=2004,i,12642297534387425534,918895744987096326,262144 /prefetch:8

URLs

Name
IP
Malicious
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments%2FReview%20and%20Print%2DRFP%200447283%2Epdf&parent=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments&ga=1
malicious
https://livefilestore.com/
unknown
https://outlook.office.com/search
unknown
https://portal.office.com/
unknown
https://make.powerautomate.com
unknown
https://sharepoint.uservoice.com/forums/329214-sites-and-collaboration
unknown
https://uppershoreaging-my.sharepoint.com:443/_api/v2.0/drives/b
unknown
http://www.contoso.com
unknown
http://www.unicode.org/copyright.html
unknown
https://northcentralus1-medias.svc.ms
unknown
https://centralus1-mediad.svc.ms
unknown
https://onedrive.live.com/?gologin=1
unknown
https://dour.creweli.com/reakg/)
unknown
http://linkless.header/
unknown
https://uppershoreaging-my.sharepoint.com/:b:/g/personal/ahollis_uppershoreaging_org/Ebz29aVe_0BFkoX
unknown
https://www.office.com/login?ru=%2Flaunch%2Fonedrive
unknown
http://scripts.sil.org/OFLThis
unknown
https://spoprod-a.akamaihd.net/files/odsp-common-library-prod_2019-02-15_20190219.002/require.js
unknown
https://1drv.com/
unknown
https://www.office.com/login?prompt=select_account&ru=%2Flaunch%2Fonedrive
unknown
https://reactjs.org/link/react-polyfills
unknown
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org
unknown
There are 12 hidden URLs, click here to show them.

IPs

IP
Domain
Country
Malicious
13.107.136.10
unknown
United States
142.250.184.196
unknown
United States
1.1.1.1
unknown
Australia
239.255.255.250
unknown
Reserved

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
aFS
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tDIText
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tFileName
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tFileSource
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sFileAncestors
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sDI
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sDate
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
uFileSize
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
uPageCount
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sAssetId
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
bisSharedFile
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
aFS
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
tDIText
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
tFileName
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
sDI
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
sDate
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
uFileSize
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
uPageCount
There are 8 hidden registries, click here to show them.

DOM / HTML

URL
Malicious
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments%2FReview%20and%20Print%2DRFP%200447283%2Epdf&parent=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments&ga=1
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments%2FReview%20and%20Print%2DRFP%200447283%2Epdf&parent=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments&ga=1
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments%2FReview%20and%20Print%2DRFP%200447283%2Epdf&parent=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments&ga=1
https://uppershoreaging-my.sharepoint.com/personal/ahollis_uppershoreaging_org/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments%2FReview%20and%20Print%2DRFP%200447283%2Epdf&parent=%2Fpersonal%2Fahollis%5Fuppershoreaging%5Forg%2FDocuments&ga=1