Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
Untitled.msg

Overview

General Information

Sample name:Untitled.msg
Analysis ID:1548714
MD5:557d2676a8149ef6d2c2175d7a01df0a
SHA1:7c842ca447978309ef1244251cf0f13c55367612
SHA256:0507ae34c45fa252308d5e4fd2be7ffb9da83cf20169e92d93b262ec2c90b204
Infos:

Detection

Phisher
Score:64
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Yara detected Phisher
AI detected landing page (webpage, office document or email)
AI detected potential phishing Email
Phishing site detected (based on shot match)
Suspicious MSG / EML detected (based on various text indicators)
Creates a window with clipboard capturing capabilities
Detected non-DNS traffic on DNS port
Queries the volume information (name, serial number etc) of a device
Sigma detected: Office Autorun Keys Modification
Stores files to the Windows start menu directory
Stores large binary data to the registry
Uses Javascript AES encryption / decryption (likely to hide suspicious Javascript code)

Classification

  • System is w10x64_ra
  • OUTLOOK.EXE (PID: 2276 cmdline: "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" /f "C:\Users\user\Desktop\Untitled.msg" MD5: 91A5292942864110ED734005B7E005C0)
    • ai.exe (PID: 6744 cmdline: "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "1F464748-0016-4EDA-AAE5-1069D04D86F0" "5B701EA8-2958-4CB0-808B-C758CB037016" "2276" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx" MD5: EC652BEDD90E089D9406AFED89A8A8BD)
    • chrome.exe (PID: 5860 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fca.docusign.net%2FSigning%2FEmailStart.aspx%3Fa%3D3eabb332-8608-43c5-b918-c89fbdee8508%26etti%3D24%26acct%3D05ef1a28-71d5-43e4-92ea-8352f0ade227%26er%3D90aba876-c543-4fca-b41e-7b14b8118475&data=05%7C02%7Ccpl.claims%40tmhcc.com%7Cb91bd9d1506d4941993408dcfcfbdcd7%7C59744b1f09454a40984cc30b382e5dec%7C0%7C0%7C638663407476650644%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C20000%7C%7C%7C&sdata=JySADFj8rqRIvdabhJsStYzV1V44O3ZcYYbtH%2F8DARs%3D&reserved=0 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
      • chrome.exe (PID: 6568 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2184 --field-trial-handle=1976,i,7056898834795028669,8431941433511271941,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
SourceRuleDescriptionAuthorStrings
dropped/chromecache_202JoeSecurity_Phisher_2Yara detected PhisherJoe Security
    Source: Registry Key setAuthor: Victor Sergeev, Daniil Yugoslavskiy, Gleb Sukhodolskiy, Timur Zinniatullin, oscd.community, Tim Shelton, frack113 (split): Data: Details: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 , EventID: 13, EventType: SetValue, Image: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE, ProcessId: 2276, TargetObject: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\16.0\Outlook\Addins\OneNote.OutlookAddin\1
    No Suricata rule has matched

    Click to jump to signature section

    Show All Signature Results

    Phishing

    barindex
    Source: Yara matchFile source: dropped/chromecache_202, type: DROPPED
    Source: https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/Matcher: Template: captcha matched
    Source: https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/Matcher: Template: captcha matched
    Source: MSG / EMLOCR Text: @docusign REVIEW DOCUMENT
    Source: https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing-conversations.js?cs=9a65f556HTTP Parser: /*! for license information please see signing-conversations.js.license.txt */!function(){var e,t,n,r,o,i={57279:function(e,t,n){"use strict";var r=n(5946);object.defineproperty(t,"__esmodule",{value:!0}),t.default=void 0;var o=r(n(61240)),i=r(n(20271)),a=r(n(43563)),u=r(n(70533)),s=function(){function e(){(0,i.default)(this,e),(0,u.default)(this,"queue",new array),(0,u.default)(this,"workingonpromise",!1)}return(0,a.default)(e,[{key:"enqueue",value:function(e){var t=this;return new o.default((function(n,r){t.queue.push({worker:e,resolve:n,reject:r}),t.dequeue()}))}},{key:"dequeue",value:function(){var e=this;if(this.workingonpromise)return!1;var t=this.queue.shift();if(!t)return!1;try{this.workingonpromise=!0,t.worker().then((function(n){e.workingonpromise=!1,t.resolve(n),e.dequeue()})).catch((function(n){e.workingonpromise=!1,t.reject(n),e.dequeue()}))}catch(e){this.workingonpromise=!1,t.reject(e),this.dequeue()}return!0}}]),e}();t.default=s},74087:function(e,t,n){"use strict";var r=n(50697);object.definep...
    Source: https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3HTTP Parser: No favicon
    Source: https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.phpHTTP Parser: No favicon
    Source: https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/HTTP Parser: No favicon
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49711 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49715 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49720 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:49721 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.3.187.198:443 -> 192.168.2.16:51814 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51822 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51838 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51848 version: TLS 1.2
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: global trafficTCP traffic: 192.168.2.16:51806 -> 162.159.36.2:53
    Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
    Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
    Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 20.190.160.20
    Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
    Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
    Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
    Source: unknownTCP traffic detected without corresponding DNS query: 192.229.211.108
    Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
    Source: global trafficDNS traffic detected: DNS query: docucdn-a.akamaihd.net
    Source: global trafficDNS traffic detected: DNS query: augloop.office.com
    Source: global trafficDNS traffic detected: DNS query: nam10.safelinks.protection.outlook.com
    Source: global trafficDNS traffic detected: DNS query: ca.docusign.net
    Source: global trafficDNS traffic detected: DNS query: www.google.com
    Source: global trafficDNS traffic detected: DNS query: a.docusign.com
    Source: global trafficDNS traffic detected: DNS query: api.mixpanel.com
    Source: global trafficDNS traffic detected: DNS query: 198.187.3.20.in-addr.arpa
    Source: global trafficDNS traffic detected: DNS query: cdn.optimizely.com
    Source: global trafficDNS traffic detected: DNS query: pmii-raise.com
    Source: global trafficDNS traffic detected: DNS query: ibssaecuritye.za.com
    Source: global trafficDNS traffic detected: DNS query: challenges.cloudflare.com
    Source: global trafficDNS traffic detected: DNS query: a.nel.cloudflare.com
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51944
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51945
    Source: unknownNetwork traffic detected: HTTP traffic on port 51904 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51942
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51822
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51943
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51904
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51948
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51949
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51946
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51947
    Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51940
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51941
    Source: unknownNetwork traffic detected: HTTP traffic on port 51937 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51942 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51906
    Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
    Source: unknownNetwork traffic detected: HTTP traffic on port 51814 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51946 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51927 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51838
    Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51848 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51936 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51932 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51838 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51947 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
    Source: unknownNetwork traffic detected: HTTP traffic on port 51851 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
    Source: unknownNetwork traffic detected: HTTP traffic on port 51926 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51943 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51822 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51929 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
    Source: unknownNetwork traffic detected: HTTP traffic on port 51906 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51931 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51926
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51927
    Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51848
    Source: unknownNetwork traffic detected: HTTP traffic on port 51939 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51935 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51948 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51854 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51928
    Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51929
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
    Source: unknownNetwork traffic detected: HTTP traffic on port 51940 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51944 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
    Source: unknownNetwork traffic detected: HTTP traffic on port 51930 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51934
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51854
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51931
    Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51932
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51937
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51938
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51814
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51935
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51936
    Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51930
    Source: unknownNetwork traffic detected: HTTP traffic on port 51938 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51851
    Source: unknownNetwork traffic detected: HTTP traffic on port 51934 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51939
    Source: unknownNetwork traffic detected: HTTP traffic on port 51949 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
    Source: unknownNetwork traffic detected: HTTP traffic on port 51945 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
    Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51928 -> 443
    Source: unknownNetwork traffic detected: HTTP traffic on port 51941 -> 443
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49711 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49715 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.190.160.20:443 -> 192.168.2.16:49720 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:49721 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 20.3.187.198:443 -> 192.168.2.16:51814 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51822 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51838 version: TLS 1.2
    Source: unknownHTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.16:51848 version: TLS 1.2
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEWindow created: window name: CLIPBRDWNDCLASS
    Source: classification engineClassification label: mal64.phis.winMSG@22/103@33/305
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile created: C:\Users\user\Documents\Outlook Files\~Outlook Data File - NoEmail.pst.tmp
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile created: C:\Users\user\AppData\Local\Temp\Outlook Logging\OUTLOOK_16_0_16827_20130-20241104T1323020179-2276.etl
    Source: unknownProcess created: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" /f "C:\Users\user\Desktop\Untitled.msg"
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "1F464748-0016-4EDA-AAE5-1069D04D86F0" "5B701EA8-2958-4CB0-808B-C758CB037016" "2276" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx"
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fca.docusign.net%2FSigning%2FEmailStart.aspx%3Fa%3D3eabb332-8608-43c5-b918-c89fbdee8508%26etti%3D24%26acct%3D05ef1a28-71d5-43e4-92ea-8352f0ade227%26er%3D90aba876-c543-4fca-b41e-7b14b8118475&data=05%7C02%7Ccpl.claims%40tmhcc.com%7Cb91bd9d1506d4941993408dcfcfbdcd7%7C59744b1f09454a40984cc30b382e5dec%7C0%7C0%7C638663407476650644%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C20000%7C%7C%7C&sdata=JySADFj8rqRIvdabhJsStYzV1V44O3ZcYYbtH%2F8DARs%3D&reserved=0
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2184 --field-trial-handle=1976,i,7056898834795028669,8431941433511271941,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "1F464748-0016-4EDA-AAE5-1069D04D86F0" "5B701EA8-2958-4CB0-808B-C758CB037016" "2276" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx"
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fca.docusign.net%2FSigning%2FEmailStart.aspx%3Fa%3D3eabb332-8608-43c5-b918-c89fbdee8508%26etti%3D24%26acct%3D05ef1a28-71d5-43e4-92ea-8352f0ade227%26er%3D90aba876-c543-4fca-b41e-7b14b8118475&data=05%7C02%7Ccpl.claims%40tmhcc.com%7Cb91bd9d1506d4941993408dcfcfbdcd7%7C59744b1f09454a40984cc30b382e5dec%7C0%7C0%7C638663407476650644%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C20000%7C%7C%7C&sdata=JySADFj8rqRIvdabhJsStYzV1V44O3ZcYYbtH%2F8DARs%3D&reserved=0
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2184 --field-trial-handle=1976,i,7056898834795028669,8431941433511271941,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: apphelp.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: c2r64.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: userenv.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: msasn1.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: kernel.appcore.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: cryptsp.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: rsaenh.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: cryptbase.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: gpapi.dll
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\ClickToRun\REGISTRY\MACHINE\Software\Classes\Wow6432Node\CLSID\{F959DBBB-3867-41F2-8E5F-3B8BEFAA81B3}\InprocServer32
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEWindow found: window name: SysTabControl32
    Source: Window RecorderWindow detected: More than 3 window changes detected
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEKey opened: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Common

    Persistence and Installation Behavior

    barindex
    Source: EmailLLM: Page contains button: 'REVIEW DOCUMENT' Source: 'Email'
    Source: EmailLLM: Email contains prominent button: 'review document'
    Source: EmailLLM: Detected potential phishing email: Email contains DocuSign branding but lacks proper sender information
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
    Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEKey value created or modified: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\16.0\Common\ExperimentConfigs\Ecs\outlook\ConfigContextData 1
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile Volume queried: C:\Windows\SysWOW64 FullSizeInformation
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile Volume queried: C:\Windows\SysWOW64 FullSizeInformation
    Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information queried: ProcessInformation
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeQueries volume information: C:\Program Files (x86)\Microsoft Office\root\Office16\AI\WordCombinedFloatieLreOnline.onnx VolumeInformation
    Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
    ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
    Gather Victim Identity Information1
    Scripting
    Valid AccountsWindows Management Instrumentation2
    Browser Extensions
    1
    Process Injection
    1
    Masquerading
    OS Credential Dumping1
    Process Discovery
    Remote Services1
    Clipboard Data
    2
    Encrypted Channel
    Exfiltration Over Other Network MediumAbuse Accessibility Features
    CredentialsDomainsDefault AccountsScheduled Task/Job1
    Scripting
    1
    Registry Run Keys / Startup Folder
    1
    Modify Registry
    LSASS Memory13
    System Information Discovery
    Remote Desktop ProtocolData from Removable Media1
    Non-Application Layer Protocol
    Exfiltration Over BluetoothNetwork Denial of Service
    Email AddressesDNS ServerDomain AccountsAt1
    Registry Run Keys / Startup Folder
    1
    DLL Side-Loading
    1
    Process Injection
    Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
    Application Layer Protocol
    Automated ExfiltrationData Encrypted for Impact
    Employee NamesVirtual Private ServerLocal AccountsCron1
    DLL Side-Loading
    Login Hook1
    Deobfuscate/Decode Files or Information
    NTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput CaptureProtocol ImpersonationTraffic DuplicationData Destruction
    Gather Victim Network InformationServerCloud AccountsLaunchdNetwork Logon ScriptNetwork Logon Script1
    DLL Side-Loading
    LSA SecretsInternet Connection DiscoverySSHKeyloggingFallback ChannelsScheduled TransferData Encrypted for Impact

    This section contains all screenshots as thumbnails, including those not shown in the slideshow.


    windows-stand
    No Antivirus matches
    No Antivirus matches
    No Antivirus matches
    No Antivirus matches
    No Antivirus matches
    NameIPActiveMaliciousAntivirus DetectionReputation
    cdn.optimizely.com
    104.18.66.57
    truefalse
      unknown
      a.nel.cloudflare.com
      35.190.80.1
      truefalse
        high
        ibssaecuritye.za.com
        104.21.71.106
        truefalse
          unknown
          challenges.cloudflare.com
          104.18.94.41
          truefalse
            high
            nam10.safelinks.eop-tm2.outlook.com
            104.47.58.28
            truefalse
              unknown
              www.google.com
              142.250.185.196
              truefalse
                high
                api.mixpanel.com
                35.190.25.25
                truefalse
                  unknown
                  pmii-raise.com
                  203.154.140.229
                  truefalse
                    unknown
                    arya-1323461286.us-west-2.elb.amazonaws.com
                    54.187.212.170
                    truefalse
                      unknown
                      augloop.office.com
                      unknown
                      unknownfalse
                        unknown
                        198.187.3.20.in-addr.arpa
                        unknown
                        unknownfalse
                          unknown
                          nam10.safelinks.protection.outlook.com
                          unknown
                          unknownfalse
                            unknown
                            a.docusign.com
                            unknown
                            unknownfalse
                              unknown
                              docucdn-a.akamaihd.net
                              unknown
                              unknownfalse
                                unknown
                                ca.docusign.net
                                unknown
                                unknownfalse
                                  unknown
                                  NameMaliciousAntivirus DetectionReputation
                                  https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/true
                                    unknown
                                    https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3false
                                      unknown
                                      https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.phpfalse
                                        unknown
                                        • No. of IPs < 25%
                                        • 25% < No. of IPs < 50%
                                        • 50% < No. of IPs < 75%
                                        • 75% < No. of IPs
                                        IPDomainCountryFlagASNASN NameMalicious
                                        104.18.66.57
                                        cdn.optimizely.comUnited States
                                        13335CLOUDFLARENETUSfalse
                                        2.20.245.133
                                        unknownEuropean Union
                                        20940AKAMAI-ASN1EUfalse
                                        130.211.34.183
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        20.189.173.8
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        142.250.186.174
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        2.16.238.157
                                        unknownEuropean Union
                                        20940AKAMAI-ASN1EUfalse
                                        173.194.76.84
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        104.18.94.41
                                        challenges.cloudflare.comUnited States
                                        13335CLOUDFLARENETUSfalse
                                        104.47.58.28
                                        nam10.safelinks.eop-tm2.outlook.comUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        44.239.225.250
                                        unknownUnited States
                                        16509AMAZON-02USfalse
                                        216.58.206.35
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        52.109.68.129
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        2.19.126.140
                                        unknownEuropean Union
                                        16625AKAMAI-ASUSfalse
                                        35.190.80.1
                                        a.nel.cloudflare.comUnited States
                                        15169GOOGLEUSfalse
                                        142.250.184.202
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        52.113.194.132
                                        unknownUnited States
                                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        1.1.1.1
                                        unknownAustralia
                                        13335CLOUDFLARENETUSfalse
                                        52.111.231.2
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        216.58.206.67
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        172.217.18.4
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        2.16.241.15
                                        unknownEuropean Union
                                        20940AKAMAI-ASN1EUfalse
                                        35.190.25.25
                                        api.mixpanel.comUnited States
                                        15169GOOGLEUSfalse
                                        2.19.126.151
                                        unknownEuropean Union
                                        16625AKAMAI-ASUSfalse
                                        239.255.255.250
                                        unknownReserved
                                        unknownunknownfalse
                                        142.250.185.196
                                        www.google.comUnited States
                                        15169GOOGLEUSfalse
                                        203.154.140.229
                                        pmii-raise.comThailand
                                        4618INET-TH-ASInternetThailandCompanyLimitedTHfalse
                                        2.16.241.14
                                        unknownEuropean Union
                                        20940AKAMAI-ASN1EUfalse
                                        52.109.28.46
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        142.250.186.142
                                        unknownUnited States
                                        15169GOOGLEUSfalse
                                        52.235.59.100
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        184.28.90.27
                                        unknownUnited States
                                        16625AKAMAI-ASUSfalse
                                        104.21.71.106
                                        ibssaecuritye.za.comUnited States
                                        13335CLOUDFLARENETUSfalse
                                        54.187.212.170
                                        arya-1323461286.us-west-2.elb.amazonaws.comUnited States
                                        16509AMAZON-02USfalse
                                        52.235.63.109
                                        unknownUnited States
                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                        IP
                                        192.168.2.16
                                        Joe Sandbox version:41.0.0 Charoite
                                        Analysis ID:1548714
                                        Start date and time:2024-11-04 19:22:29 +01:00
                                        Joe Sandbox product:CloudBasic
                                        Overall analysis duration:
                                        Hypervisor based Inspection enabled:false
                                        Report type:full
                                        Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                        Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                        Number of analysed new started processes analysed:16
                                        Number of new started drivers analysed:0
                                        Number of existing processes analysed:0
                                        Number of existing drivers analysed:0
                                        Number of injected processes analysed:0
                                        Technologies:
                                        • EGA enabled
                                        Analysis Mode:stream
                                        Analysis stop reason:Timeout
                                        Sample name:Untitled.msg
                                        Detection:MAL
                                        Classification:mal64.phis.winMSG@22/103@33/305
                                        Cookbook Comments:
                                        • Found application associated with file extension: .msg
                                        • Exclude process from analysis (whitelisted): dllhost.exe, svchost.exe
                                        • Excluded IPs from analysis (whitelisted): 52.109.28.46, 2.20.245.133, 2.20.245.140, 52.109.68.129, 184.28.90.27, 2.19.126.151, 2.19.126.160, 52.113.194.132, 52.111.231.2
                                        • Excluded domains from analysis (whitelisted): omex.cdn.office.net, eur.roaming1.live.com.akadns.net, fs-wildcard.microsoft.com.edgekey.net, fs-wildcard.microsoft.com.edgekey.net.globalredir.akadns.net, ecs-office.s-0005.s-msedge.net, roaming.officeapps.live.com, a1737.b.akamai.net, e16604.g.akamaiedge.net, frc-azsc-000.roaming.officeapps.live.com, officeclient.microsoft.com, prod.fs.microsoft.com.akadns.net, a1864.dscd.akamai.net, ecs.office.com, fs.microsoft.com, prod.configsvc1.live.com.akadns.net, osiprod-frc-buff-azsc-000.francecentral.cloudapp.azure.com, ctldl.windowsupdate.com, augloop-prod.trafficmanager.net, prod.roaming1.live.com.akadns.net, docucdn-a.akamaihd.net.edgesuite.net, s-0005-office.config.skype.com, augloop-prod-002.francecentral.cloudapp.azure.com, s-0005.s-msedge.net, config.officeapps.live.com, ecs.office.trafficmanager.net, omex.cdn.office.net.akamaized.net, europe.configsvc1.live.com.akadns.net, uks-azsc-config.officeapps.live.com
                                        • Not all processes where analyzed, report is missing behavior information
                                        • Report size getting too big, too many NtQueryAttributesFile calls found.
                                        • Report size getting too big, too many NtQueryValueKey calls found.
                                        • Report size getting too big, too many NtReadVirtualMemory calls found.
                                        • VT rate limit hit for: Untitled.msg
                                        InputOutput
                                        URL: Model: claude-3-5-sonnet-latest
                                        {
                                            "explanation": [
                                                "Email contains DocuSign branding but lacks proper sender information",
                                                "Contains suspicious URL with multiple redirects and encoded parameters",
                                                "Missing critical email header information (from, to, date fields empty)"
                                            ],
                                            "phishing": true,
                                            "confidence": 9
                                        }
                                        {
                                            "date": "", 
                                            "subject": "NO SUBJECT", 
                                            "communications": [
                                                "\t <https://docucdn-a.akamaihd.net/olive/images/2.62.0/global-assets/email-templates/email-logo.png> \n \n\t\n \n      REVIEW DOCUMENT       <https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fca.docusign.net%2FSigning%2FEmailStart.aspx%3Fa%3D3eabb332-8608-43c5-b918-c89fbdee8508%26etti%3D24%26acct%3D05ef1a28-71d5-43e4-92ea-8352f0ade227%26er%3D90aba876-c543-4fca-b41e-7b14b8118475&data=05%7C02%7Ccpl.claims%40tmhcc.com%7Cb91bd9d1506d4941993408dcfcfbdcd7%7C59744b1f09454a40984cc30b382e5dec%7C0%7C0%7C638663407476650644%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C20000%7C%7C%7C&sdata=JySADFj8rqRIvdabhJsStYzV1V44O3ZcYYbtH%2F8DARs%3D&reserved=0> \n \n \n\t\n\t\n\t\n \n"
                                            ], 
                                            "from": "", 
                                            "to": "", 
                                            "attachements": []
                                        }
                                        URL: Email Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "contains_trigger_text": true,
                                          "trigger_text": "REVIEW DOCUMENT",
                                          "prominent_button_name": "REVIEW DOCUMENT",
                                          "text_input_field_labels": "unknown",
                                          "pdf_icon_visible": false,
                                          "has_visible_captcha": false,
                                          "has_urgent_text": false,
                                          "has_visible_qrcode": false
                                        }
                                        URL: Email Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "brands": [
                                            "Docusign"
                                          ]
                                        }
                                        URL: Model: claude-3-5-sonnet-latest
                                        {
                                            "typosquatting": false,
                                            "unusual_query_string": false,
                                            "suspicious_tld": false,
                                            "ip_in_url": false,
                                            "long_subdomain": false,
                                            "malicious_keywords": false,
                                            "encoded_characters": false,
                                            "redirection": false,
                                            "contains_email_address": false,
                                            "known_domain": true,
                                            "brand_spoofing_attempt": false,
                                            "third_party_hosting": false
                                        }
                                        URL: URL: https://ca.docusign.net
                                        URL: https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3 Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "contains_trigger_text": true,
                                          "trigger_text": "Please review the documents below.",
                                          "prominent_button_name": "CONTINUE",
                                          "text_input_field_labels": "unknown",
                                          "pdf_icon_visible": false,
                                          "has_visible_captcha": false,
                                          "has_urgent_text": false,
                                          "has_visible_qrcode": false
                                        }
                                        URL: https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3 Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "brands": [
                                            "Docusign"
                                          ]
                                        }
                                        URL: https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3 Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "contains_trigger_text": true,
                                          "trigger_text": "Open And Review The Document",
                                          "prominent_button_name": "unknown",
                                          "text_input_field_labels": "unknown",
                                          "pdf_icon_visible": false,
                                          "has_visible_captcha": false,
                                          "has_urgent_text": false,
                                          "has_visible_qrcode": false
                                        }
                                        URL: https://ca.docusign.net/Signing/?ti=cad55de6aec0404a95a3da9443bc40b3 Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "brands": [
                                            "Docusign"
                                          ]
                                        }
                                        URL: https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/ Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "contains_trigger_text": true,
                                          "trigger_text": "Ensuring your safety with browser verification.",
                                          "prominent_button_name": "unknown",
                                          "text_input_field_labels": "unknown",
                                          "pdf_icon_visible": false,
                                          "has_visible_captcha": false,
                                          "has_urgent_text": false,
                                          "has_visible_qrcode": false
                                        }
                                        URL: Model: claude-3-5-sonnet-latest
                                        {
                                            "typosquatting": false,
                                            "unusual_query_string": false,
                                            "suspicious_tld": false,
                                            "ip_in_url": false,
                                            "long_subdomain": false,
                                            "malicious_keywords": false,
                                            "encoded_characters": false,
                                            "redirection": false,
                                            "contains_email_address": false,
                                            "known_domain": false,
                                            "brand_spoofing_attempt": false,
                                            "third_party_hosting": false
                                        }
                                        URL: URL: https://pmii-raise.com
                                        URL: https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/ Model: claude-3-haiku-20240307
                                        ```json
                                        {
                                          "brands": [
                                            "Cloudflare"
                                          ]
                                        }
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):231348
                                        Entropy (8bit):4.3940833464197055
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B0034C3140C3FB85F79FFFD40F1C835C
                                        SHA1:BDE7BE73170113B5270666864BCF3C458035D680
                                        SHA-256:B21B36DA2C001EA24A77C220EE8733969ADD9E2FAAC4FBF2B1480AC15120CBD8
                                        SHA-512:FC805AEE120384C205FA9DDEC341D3A62A53A3025C7CECF4B7BA179F6157C082610F40B5F1A9C649AD9CE80A3C961ACB0635069F3D45D45E22DA127DB004C079
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:TH02...... .P..........SM01X...,...p..............IPM.Activity...........h...............h............H..h.......)9.T...h........X...H..h\cal ...pDat...h(B..0...8......h.<.=...........h........_`Nk...h.;.=@...I.lw...h....H...8.Sk...0....T...............d.........2h...............k..............!h.............. h.1W?....P.....#h....8.........$hX.......8....."h........`.....'h..............1h.<.=<.........0h....4....Sk../h....h.....SkH..h`*..p........-h .......|.....+hy<.=....................... ..............F7..............FIPM.Activity.st.Form.e..Standard.tanJournal Entry.pdIPM.Microsoft.FolderDesign.FormsDescription................F.k..........1122110020000000.000Microsoft.ofThis form is used to create journal entries.........kf...... ..........&...........(.......(... ...@.....................................................................................................................fffffffff........wwwwwwww.p....pp..............p...............pw..............pw..DDDDO..
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:XML 1.0 document, ASCII text, with very long lines (1869), with no line terminators
                                        Category:dropped
                                        Size (bytes):1869
                                        Entropy (8bit):5.085620620274683
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:DEA5B1DE507B1263649C29584FAE35A7
                                        SHA1:3727661EC0E7784A387674F4BE1176E9A558015B
                                        SHA-256:078650F81197781A59EC83DDEE4363392AB296088EA6F3949363EE36AD334A46
                                        SHA-512:BF11D4C29CD6B8BB6CA35148C90F9AAC5A3D2557E64F3CE9D273B3C92865B11B9849CA368783B6780A0E5584EBF80061203D7A74BF1789E4F7469891E051923B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:<?xml version="1.0" encoding="UTF-8" standalone="yes"?><root><version>1</version><Count>12</Count><Resource><Id>Aptos_26215680</Id><LAT>2024-11-04T18:23:03Z</LAT><key>29939506207.ttf</key><folder>Aptos</folder><type>4</type></Resource><Resource><Id>Aptos_45876480</Id><LAT>2023-10-06T09:25:29Z</LAT><key>27160079615.ttf</key><folder>Aptos</folder><type>4</type></Resource><Resource><Id>Aptos Narrow_26215424</Id><LAT>2023-10-06T09:25:29Z</LAT><key>31558910439.ttf</key><folder>Aptos Narrow</folder><type>4</type></Resource><Resource><Id>Aptos Display_26215680</Id><LAT>2023-10-06T09:25:29Z</LAT><key>23001069669.ttf</key><folder>Aptos Display</folder><type>4</type></Resource><Resource><Id>Aptos Narrow_45876224</Id><LAT>2023-10-06T09:25:29Z</LAT><key>24153076628.ttf</key><folder>Aptos Narrow</folder><type>4</type></Resource><Resource><Id>Aptos Display_45876480</Id><LAT>2023-10-06T09:25:29Z</LAT><key>30264859306.ttf</key><folder>Aptos Display</folder><type>4</type></Resource><Resource><Id>Aptos_
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:JSON data
                                        Category:dropped
                                        Size (bytes):521377
                                        Entropy (8bit):4.9084889265453135
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C37972CBD8748E2CA6DA205839B16444
                                        SHA1:9834B46ACF560146DD7EE9086DB6019FBAC13B4E
                                        SHA-256:D4CFBB0E8B9D3E36ECE921B9B51BD37EF1D3195A9CFA1C4586AEA200EB3434A7
                                        SHA-512:02B4D134F84122B6EE9A304D79745A003E71803C354FB01BAF986BD15E3BA57BA5EF167CC444ED67B9BA5964FF5922C50E2E92A8A09862059852ECD9CEF1A900
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:{"MajorVersion":4,"MinorVersion":40,"Expiration":14,"Fonts":[{"a":[4294966911],"f":"Abadi","fam":[],"sf":[{"c":[1,0],"dn":"Abadi","fs":32696,"ful":[{"lcp":983041,"lsc":"Latn","ltx":"Abadi"}],"gn":"Abadi","id":"23643452060","p":[2,11,6,4,2,1,4,2,2,4],"sub":[],"t":"ttf","u":[2147483651,0,0,0],"v":197263,"w":26215680},{"c":[1,0],"dn":"Abadi Extra Light","fs":22180,"ful":[{"lcp":983042,"lsc":"Latn","ltx":"Abadi Extra Light"}],"gn":"Abadi Extra Light","id":"17656736728","p":[2,11,2,4,2,1,4,2,2,4],"sub":[],"t":"ttf","u":[2147483651,0,0,0],"v":197263,"w":13108480}]},{"a":[4294966911],"f":"ADLaM Display","fam":[],"sf":[{"c":[536870913,0],"dn":"ADLaM Display Regular","fs":140072,"ful":[{"lcp":983040,"lsc":"Latn","ltx":"ADLaM Display"}],"gn":"ADLaM Display","id":"31965479471","p":[2,1,0,0,0,0,0,0,0,0],"sub":[],"t":"ttf","u":[2147491951,1107296330,0,0],"v":131072,"w":26215680}]},{"a":[4294966911],"f":"Agency FB","fam":[],"sf":[{"c":[536870913,0],"dn":"Agency FB Bold","fs":54372,"ful":[{"lcp":9830
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:TrueType Font data, 10 tables, 1st "OS/2", 7 names, Microsoft, language 0x409, \251 2018 Microsoft Corporation. All Rights Reserved.msofp_4_40RegularVersion 4.40;O365
                                        Category:dropped
                                        Size (bytes):773040
                                        Entropy (8bit):6.55939673749297
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:4296A064B917926682E7EED650D4A745
                                        SHA1:3953A6AA9100F652A6CA533C2E05895E52343718
                                        SHA-256:E04E41C74D6C78213BA1588BACEE64B42C0EDECE85224C474A714F39960D8083
                                        SHA-512:A25388DDCE58D9F06716C0F0BDF2AEFA7F68EBCA7171077533AF4A9BE99A08E3DCD8DFE1A278B7AA5DE65DA9F32501B4B0B0ECAB51F9AF0F12A3A8A75363FF2C
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:........... OS/29....(...`cmap.s.,.......pglyf..&....|....head2..........6hheaE.@v.......$hmtx...........@loca.U.....8...Dmaxp........... name.P+........post...<...... .........b~1_.<...........<......r......Aa...................Q....Aa....Aa.........................~...................................................3..............................MS .@.......(...Q................. ...........d...........0...J.......8.......>..........+a..#...,................................................/...K.......z...............N......*...!...-...+........z.......h..%^..3...&j..+...+%..'R..+..."....................k......$A...,.......g...&...=.......X..&........*......&....B..(B...............#.......j...............+...P...5...@...)..........#...)Q...............*...{.. ....?..'...#....N...7......<...;>.............. ]...........5......#....s.......$.......$.......^..................+...>....H.......%...7.......6.......O...V...........K......"........c...N......!...............$...&...*p..
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                        Category:dropped
                                        Size (bytes):180288
                                        Entropy (8bit):5.29100515241055
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:448F75303BE1D191F376FD4AEB964EB4
                                        SHA1:574AC7E4E127B3A3ACEED91CBE1BCEED065BD6DE
                                        SHA-256:2E962F8B944CCE9954DEF0FF25EA8DE5D61E01E661ECE64ADF235F1DB94C60C7
                                        SHA-512:43D210E11FD1387E45EFF368428009CCF13E321BA32A492659A00FEE66420F660AB0EAAE36CC5604A449731B03C59B40026A6FCC75B186C821A8A89E4082C288
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:<?xml version="1.0" encoding="utf-8"?>..<o:OfficeConfig xmlns:o="urn:schemas-microsoft-com:office:office">.. <o:services o:GenerationTime="2024-11-04T18:23:05">.. Build: 16.0.18223.40125-->.. <o:default>.. <o:ticket o:headerName="Authorization" o:headerValue="{}" />.. </o:default>.. <o:service o:name="Research">.. <o:url>https://word-edit.officeapps.live.com/we/rrdiscovery.ashx</o:url>.. </o:service>.. <o:service o:name="ORedir">.. <o:url>https://o15.officeredir.microsoft.com/r</o:url>.. </o:service>.. <o:service o:name="ORedirSSL">.. <o:url>https://o15.officeredir.microsoft.com/r</o:url>.. </o:service>.. <o:service o:name="ClViewClientHelpId" o:authentication="1">.. <o:url>https://[MAX.BaseHost]/client/results</o:url>.. <o:ticket o:policy="MBI_SSL_SHORT" o:idprovider="1" o:target="[MAX.AuthHost]" o:headerValue="Passport1.4 from-PP='{}&amp;p='" />.. <o:ticket o:idprovider="3" o:headerValue="Bearer {}" o:resourceId="[
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:SQLite 3.x database, last written using SQLite version 3023002, writer version 2, read version 2, file counter 2, database pages 1, cookie 0, schema 0, largest root page 1, unknown 0 encoding, version-valid-for 2
                                        Category:dropped
                                        Size (bytes):4096
                                        Entropy (8bit):0.09216609452072291
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F138A66469C10D5761C6CBB36F2163C3
                                        SHA1:EEA136206474280549586923B7A4A3C6D5DB1E25
                                        SHA-256:C712D6C7A60F170A0C6C5EC768D962C58B1F59A2D417E98C7C528A037C427AB6
                                        SHA-512:9D25F943B6137DD2981EE75D57BAF3A9E0EE27EEA2DF19591D580F02EC8520D837B8E419A8B1EB7197614A3C6D8793C56EBC848C38295ADA23C31273DAA302D9
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:SQLite format 3......@ .......................................................................... .....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:SQLite Rollback Journal
                                        Category:dropped
                                        Size (bytes):4616
                                        Entropy (8bit):0.13760166725504608
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:D3C84B8D0C06B7BD6E1BD194D34CC198
                                        SHA1:6A9100838E000A1E6E5A166940A77B6EFC32CC81
                                        SHA-256:25B25AFE6F9AE223072F17B5DF89A81FBEB9E9845D1D60376FDF47E3FD39B3EC
                                        SHA-512:C226E9D9F9233A54467C926FE7CBB7DA746AF70396F7E2E38B24D6C767982185BE711F2E31E29365475FCA0D508F5F7EFEA27E0083C2F7233A4C63DF3C1CBFC3
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.... .c.....=.A.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................SQLite format 3......@ .......................................................................... .................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):32768
                                        Entropy (8bit):0.0447824104283491
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:26FA03A7B13D44182403430C50C28706
                                        SHA1:50D7EBF8B9A6CF62264548301C24CB6A8BA064C4
                                        SHA-256:C7D0CB3791F8A3BE8CBE4B534AF80EEC3D0741B04D6263CBB052B511CBE2D40C
                                        SHA-512:C70FA857D4524C9C692AF728095F42489696A00ED3C060C5F2040FCD33C6356909362503264E57C13D2CA2E9D1EB218204106389918623E8A8AF0C302754CE46
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:..-.....................].~r&O2..}..$.)..kJA......-.....................].~r&O2..}..$.)..kJA............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:SQLite Write-Ahead Log, version 3007000
                                        Category:modified
                                        Size (bytes):45352
                                        Entropy (8bit):0.3941346126953022
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:1CDC7FA461A50A4D53C49C82A8988ED1
                                        SHA1:E325F30F2360423884CC04AA917C118667CD6886
                                        SHA-256:050DA0A7E58B9B7A198B575E5114C8EE8FE023BAE1D8D2DB2FED517D54880E2F
                                        SHA-512:96C5FBF739CFE9CA3E2F7732DD26B9DC159B4CEADF883CCCBCB73F66739DCCE6707C2AC9699E588903994244043BDD6A5B41FF7A9E8E5607AFB16992C8BEDC09
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:7....-...........}..$.)......D..........}..$.)......SQLite format 3......@ .......................................................................... .............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:PNG image data, 228 x 50, 8-bit/color RGBA, non-interlaced
                                        Category:dropped
                                        Size (bytes):2684
                                        Entropy (8bit):7.901894652512653
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B4F8F0DCDA279711CB9224C2239323D4
                                        SHA1:3C1B1B68CD9D2D25FF5D7FB2C7A61271DFFBF41B
                                        SHA-256:53D92718DD6001A4EBF49D631AB9DF5B8194E6AF220790B1D8CF57164E38C6B0
                                        SHA-512:E97F783AF2EECCAFD684BDDE181C1509414997D2970405CC2AD7B9182439EF471EE6BF58253E6661A7B4491DD80523CC23C4544B0F9CF5AA0E9BFF4F20E7CA92
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.PNG........IHDR.......2.....L0w.....pHYs.................sRGB.........gAMA......a.....IDATx...n....#...C.y..R .!.So..s.J.%7..@..h..v.@.[....}....^.^.*r3Z.(.C.h3?s...q.....J.......3$.$..# ..D"..*.k...(..#..$Q........o."...{.).d.n.R.e...?.t5...._....2.+..... .....B..l...yQ*.....*..2.....e.X.}.{PG.SH....J.|..#....3D.FZ.Eh...d..............3..0......?."...x......4J.-....g..a8..9B$..e8....s.q...4JF[2....a.>.~3...6B.....D4d3*......o.....r#.....=.jK...1.?...o..YW..Hdgyx.7.[.....?x.......P.........K.fT..5Y&.%CbyS\.a.a.....6..y....._`.....r..!...G<...0......B.E...=:......#.p...6........!+..!MQ....t.....m.6RhO.:..odmu@P#....m.......]...|.ndS.PU\.]..`.f.Z...?.Ds]9....F).w....... ..W.........fW.R..J..4\.d4!.d.l..h..T.Rh/.+.z..R..5.h......-.{.n..@......V.k]..RR.H....(.+...C.MIl.\.LDG....C...k*...)..H0qM.{.._..A+.'.c.....-..WY......pG....A.. .......Y)EG.#t.....(...._..H....".....>.Zl.:..g...W_[I............@=Zh.75t.9.y\...N.e|..$....6...,9..h......3..fs.'9.
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):3896
                                        Entropy (8bit):3.492663388550667
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:AED1BB16C70E5826C845451EA1C63F2D
                                        SHA1:8EF9E8D3E7D25CFE2DA5B01AC307F80127BD79AD
                                        SHA-256:2E4C951D8A87BB0BD0455A33EB00BF7B3FC20694FEA55D3FEC3C98BD5B23B9AC
                                        SHA-512:24F9598F8C1A14A19B1F7CA516433DE9CB240E378E38DA70F2F17DAEC65CA4A0E54ABE597C6F3147DCAE0D7D28B05BA68F345C49DC5E07493C6CF0158CCE3606
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................`...b...d...f...h...j................................................................................................................................................................................................................................................................................................................................................................................................$.a$.*...$..$.If........!v..h.#v....:V.......t.....6......5.......4
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:ASCII text, with very long lines (857), with CRLF line terminators
                                        Category:dropped
                                        Size (bytes):20971520
                                        Entropy (8bit):0.04543651277274888
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:A28EC0A6A886E63BC62BEC4E9D5A3186
                                        SHA1:BFAEA1B8FFC3D3B05A596D45F22D845BBEB04193
                                        SHA-256:606E2C7750B452498DC1336064A525DD6AA220A1D7E3C0D2051EFDA09D45C3C1
                                        SHA-512:19C8419AEC612DE0256113352D7EA5C5422D55BF933D6971C2DAE04706F83AD1F9B8EF2516C2D5329137F300B2412BDE445C657C1FFB532E4995134DED2C9D52
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:Timestamp.Process.TID.Area.Category.EventID.Level.Message.Correlation..11/04/2024 18:23:02.403.OUTLOOK (0x8E4).0x888.Microsoft Outlook.Telemetry Event.b7vzq.Medium.SendEvent {"EventName":"Office.System.GracefulExit.GracefulAppExitDesktop","Flags":33777014402039809,"InternalSequenceNumber":17,"Time":"2024-11-04T18:23:02.403Z","Data.PreviousAppMajor":16,"Data.PreviousAppMinor":0,"Data.PreviousAppBuild":16827,"Data.PreviousAppRevision":20130,"Data.PreviousSessionId":"CB26C19C-11DF-46F3-AC0C-CE91ED999A9B","Data.PreviousSessionInitTime":"2024-11-04T18:22:45.262Z","Data.PreviousSessionUninitTime":"2024-11-04T18:22:48.371Z","Data.SessionFlags":2147483652,"Data.InstallMethod":0,"Data.OfficeUILang":1033,"Data.PreviousBuild":"Unknown","Data.EcsETag":"\"\"","Data.ProcessorArchitecture":"x64"}...11/04/2024 18:23:02.435.OUTLOOK (0x8E4).0x1AB4.Microsoft Outlook.Telemetry Event.b7vzq.Medium.SendEvent {"EventName":"Office.Telemetry.LoadXmlRules","Flags":33777014401990913,"InternalSequenceNumber":22,"T
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):20971520
                                        Entropy (8bit):0.0
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:8F4E33F3DC3E414FF94E5FB6905CBA8C
                                        SHA1:9674344C90C2F0646F0B78026E127C9B86E3AD77
                                        SHA-256:CD52D81E25F372E6FA4DB2C0DFCEB59862C1969CAB17096DA352B34950C973CC
                                        SHA-512:7FB91E868F3923BBD043725818EF3A5D8D08EBF1059A18AC0FE07040D32EEBA517DA11515E6A4AFAEB29BCC5E0F1543BA2C595B0FE8E6167DDC5E6793EDEF5BB
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:modified
                                        Size (bytes):114688
                                        Entropy (8bit):4.679049415232186
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:EA4289B1421477249F8872999937353B
                                        SHA1:0AF3B3309E143067A2AFCC90C3D7BC76F628155E
                                        SHA-256:404D24D49C01AD1840CAD5211AA15C44FC3AEACE160AB9679EA5FEE3923B08D2
                                        SHA-512:9FA95BE2C65C597EEC7C5D082D93C1BE00D3A6A6E218D92845284F4B6FBA9B5532F45AB3D07EFF2D9DCE140D038A73C39D307235F3A985481764C4C5E0B8815E
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:............................................................................^...........k.k.....................eJ..............Zb..2...................................,...@.t.z.r.e.s...d.l.l.,.-.1.1.2.......................................................@.t.z.r.e.s...d.l.l.,.-.1.1.1...........................................................@e...Y..........k.k.............v.2._.O.U.T.L.O.O.K.:.8.e.4.:.2.1.a.3.4.7.b.1.5.2.1.8.4.1.c.c.8.5.7.5.1.f.8.2.9.e.c.1.2.5.6.8...C.:.\.U.s.e.r.s.\.c.a.l.i.\.A.p.p.D.a.t.a.\.L.o.c.a.l.\.T.e.m.p.\.O.u.t.l.o.o.k. .L.o.g.g.i.n.g.\.O.U.T.L.O.O.K._.1.6._.0._.1.6.8.2.7._.2.0.1.3.0.-.2.0.2.4.1.1.0.4.T.1.3.2.3.0.2.0.1.7.9.-.2.2.7.6...e.t.l.........P.P.........k.k.............................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):538859
                                        Entropy (8bit):5.985606320615845
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:8E35EB68A650DFDB868455F0CB8A4E71
                                        SHA1:E2D8E644499B9014A23D4A77E1A47C8A809BD6DE
                                        SHA-256:FDEC5B69A4FB8C1D80FCD7DA1457DD2B798779EC8E3FAD9EEB130E9B2257EB71
                                        SHA-512:35B1F0979AE25EF9CB68EB42EC4F2A83A62B50B72875E5402D171E3F56DC1F4C6C6E6F1F44E6CF297383161ADE4A86388B86957855A20AACBD57E72041CF8CF6
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:RNWPREP...A..<.l.........8.......j.A.+.^..Z../...MT.=.G...T....@...P.Q.....uY|.8.......$S.,..`......L`.....$S...`VY.....L`.....M.Rb.................c.@........... ....Qb........Wg..`n.....Qb...<....Me..`......Qb..`.....jC..`......Qb..Lf....mM..`......Qb...y....ef..`......Qb........VI..`......Qb..=.....wc..`:.....Qb.@d.....Ps..`.....D..Qb2.I.....su..`.....D..Qb:.......Aa..`t.....Qb:.......jT..`......QbB..d....hw..`......QbF@......Zp..`.....D..Qbj.:.....Ss..`.....D..Qbr..w....ZC..`.....D..Qbz..6....zs..`F.....Qb~..i....Ha..`h.....Qb~.......Uy..`.....D..Qb...v....ze..`B.....Qb..C.....yv..`0....D..Qb.@......sS..`n....D..Qb...?....rg..`.....D..Qb...G....mw..`.....D..Qb........Pn..`.....D..Qb.......rp..`b.....Qb..5.....fh..`(....D..Qb.@D.....yM..`.....D..Qb.@".....L_..`.....D..Qb...&....Ge..`L.....Qb...C....By..`h....D..Qb.@......lI..`2....D..Qb...?....rx..`.....D..Qb........Dl..`.....D..Qb........hT..`.....D..Qb*......._l..`f.....Qb.......IT..`......Qb2.......Mw..`......Qb6..(....Fy..`
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):163840
                                        Entropy (8bit):0.30931596246318754
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:6BC75320E9784931636626E3A42DE857
                                        SHA1:329CD4502A4CF8738F06C476AEF13897A26D88F1
                                        SHA-256:478BBF49AB5606C8CD934197B740562736934870CFF8DDBAAA2CDDAFB7DAEE1B
                                        SHA-512:3AA0BD2A96421E503768CC36940A5A0FBADDCFDD79FB8740086F87D36DE8349A4AB79FDCB56EB979C6464B26458A87C37CF8EB2E8315E9BE24A0F168C40CB1F5
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):30
                                        Entropy (8bit):1.2389205950315936
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F53D8DD07EEE2B0D3D97E0F568DC13E4
                                        SHA1:0C2258D7EC6F990979460DB745089848FDBDA14C
                                        SHA-256:9F4748337521A0BBE60EFCF652AA9D54228C871CFEC4B5CD66AD7DA634F4DC36
                                        SHA-512:F6DEB03F631F156FCB62D4289BA2AED99068BE7733BD48BAC97201C951CB2D4C4E33D22A5E7A5623ABD4D5EA5E8AD49D0CECD45E63DE9AD88367B6D81007A6B3
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:....S.........................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:Composite Document File V2 Document, Cannot read section info
                                        Category:dropped
                                        Size (bytes):16384
                                        Entropy (8bit):0.6689785914807787
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:A383F82C3D80CC279EEEF6C7189A7A98
                                        SHA1:A95FC597D07A72BF624C4EE13FA4FEE74C12A70D
                                        SHA-256:1654E413EBA987621985032AB869154E9122ED6A756DA397B6868E862B6B5780
                                        SHA-512:72E7B3B3184AEA7B238D3FF6F0B70BAF8EBDAFAB374A7B2EA8B63C6C277C60BCBB79D1092DA35E6AB375AE7A0BEFF0123952F4DE453A7B33873830121875D58B
                                        Malicious:true
                                        Reputation:unknown
                                        Preview:......................>...............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 4 17:23:15 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2673
                                        Entropy (8bit):3.984246500598575
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:39798AFDA28C016B2C3BA121752F979E
                                        SHA1:809CD2F4B82EFE58536A60479C2900B6FC73009C
                                        SHA-256:AEE4F82D5DFDDB9C187FBBA3BFA512908F4299A6171E3470D639CCF2FBD8D3DD
                                        SHA-512:F9AF30CB726965F9C585AA6920C8BC3E97FE9CD9E64EB034F8546F4E1568807908D73D3319E7DD2D6794D8756C72262A7F52EB89E1B0CD941D11FE67765EECB9
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,....rq......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VdY............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 4 17:23:15 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2675
                                        Entropy (8bit):3.9988309274118543
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F3B425D383F3C15E75D411BC8ABA402D
                                        SHA1:6B90C7D6A51262FD74941F5D5D823EE5F9E8E5E5
                                        SHA-256:D97D4A8D88EC67B9F17BE57E255655B303442818CE485857B8E5E7882CF5B80D
                                        SHA-512:9C2949F67739682845CE69014C70F22705F1E03F77EFE04E09D15576A3FB302753A2188E46FE1122CF8BFD78ACAA3C3E3403CA03902286561DE1BC3021C868F6
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,....:V......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VdY............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2689
                                        Entropy (8bit):4.00830423783577
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:E57DA8824CA8FD1FBEA838BCAE621FF0
                                        SHA1:6A1BBFBCEC2FD06717939C41FBAC1953C6E53167
                                        SHA-256:72CB55A336C5AFE979B2DB8761D5201B9B03879261829DA4EA2ECD48D5C64BF7
                                        SHA-512:A11BB2BDEDCF040BCD5E3286833D86050B629941BEB0FFB7C6CB69E2ED456BB561269143136309F1DED597361F586C55AD9D0F09A39AD3EF0819E68E3B9014EE
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 4 17:23:15 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2677
                                        Entropy (8bit):3.9990149163443096
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:D38A0E9E6DE6FED085B6DF8C9D3CE466
                                        SHA1:563ABFD6A47C8163D796BFE42A9996368F4F16ED
                                        SHA-256:B6F6B14AD0424F5917B25A5C6E77BAF67D6A4824F1024C4040E743848BA0D2F4
                                        SHA-512:41C4334A8386C2AE266B9DADFA97997EC630D04E367C57BE03E2D82D35D45ED9917B735A2C6ACEB05DEA6B6E6A241E1F310A918C7159D08C9A43AF72DE4D43D5
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,....x......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VdY............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 4 17:23:15 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2677
                                        Entropy (8bit):3.987141522609231
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:480044EF786B0FBEF738C666A05D3D05
                                        SHA1:1AF5CB4264F580AE1A2760B05D191731FCF9775C
                                        SHA-256:C50F210F81AEA45F07BC418D31BF221AADCEB0FBFD24E4F0CEB5A69BEA6222C4
                                        SHA-512:08BA8B790C503B9A6D9768B906E4552C2B66798320074927C32001436012C8B898E1AA06B1D0563244635415B1DC30AEB9EB25734BE898DEBF8ED8748638063B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,....+......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VdY............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 4 17:23:15 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                        Category:dropped
                                        Size (bytes):2679
                                        Entropy (8bit):3.9974259908143117
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:9FAD5568CCF349A0E4B7EBC17DF632F4
                                        SHA1:4FA629DB7B834097DD0204119EA6638442C1A221
                                        SHA-256:D1C5AA92486DA3405432DE136B7D3492B7D74AB555DF3D65C3F7F5CC6BD92657
                                        SHA-512:719735DFDDADC9DAFA5ECB014775FEBA76DCEDB138BD46C0EAA9F4D61096663D0DBC6A2547CCDC58DCA0092BB6B8169727AAFCBC91C25B4599CE8C1BC7F23380
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:L..................F.@.. ...$+.,......z.....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IdY.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VdY.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VdY.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VdY............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VdY............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i...........=.kI.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:Microsoft Outlook email folder (>=2003)
                                        Category:dropped
                                        Size (bytes):271360
                                        Entropy (8bit):1.472189834550297
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:CD675603B1242AFB21597C48BB4164A9
                                        SHA1:364FC30DC68754CE73E2EC44D63FCF0CF7F26D0E
                                        SHA-256:67A00FC6D71FE56456491E92EC39107C6E405168708E664EB28CE41507BB7D51
                                        SHA-512:381F688C9A933FDB2A2144789C4AB6376A7BF429F1CB88409C3D76121BBC29BD180CC5F9A5A68BC0E6C4EFADFFEC8A76F164A876E7F2F822CF0301F185A0EFF6
                                        Malicious:true
                                        Reputation:unknown
                                        Preview:!BDN....SM......\.......................\................@...........@...@...................................@...........................................................................$.......D......@F..................................................................................................................................................................................................................................................................................................................................F.....D.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                        File Type:data
                                        Category:dropped
                                        Size (bytes):131072
                                        Entropy (8bit):0.8325729108585769
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:BABCE99E95A1E3D3510C18BE42952627
                                        SHA1:60BFB32E07953D7CE6DAB512337C334397DA321F
                                        SHA-256:17A7370FBC4B09C4DDF0175B0302446F36E1948A33B825BD870AD462DA865613
                                        SHA-512:AE8B4E1BDDB3ED8D200F90A6B086DBEAE2264C778857034C6D84803BF6FDD14DD021AB3C46837CC3126E229FFF3F6D95353AD17BDA7EB886FB47868F1576961B
                                        Malicious:true
                                        Reputation:unknown
                                        Preview:....C...J...........2.L.......................#.!BDN....SM......\.......................\................@...........@...@...................................@...........................................................................$.......D......@F..................................................................................................................................................................................................................................................................................................................................F.....D.2.L..........B............#.........................................................................................................................................................................................................................................................................................................................................................................................................
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):84993
                                        Entropy (8bit):5.266878130239354
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:388BD04B69B4A51F32438DCEFC4BA950
                                        SHA1:2628528AAB473325DFB08F0F8B27F8A9CC4A3C06
                                        SHA-256:F7AAB38FBB9AA270C41CFAC7E8A9CF9DD8DF3FC830C702183000D1ABDF236A8A
                                        SHA-512:2BF22B5E6E3C4B59945A9741783149F5D37653683B6A2793065A257F556072A92124F2995040CE060734574B98210A93CADA67EC6A6132EB5E1C2331C7866D1E
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.6826.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6826],{45603:function(e,t,n){n.d(t,{k:function(){return u}});var r=n(38008),o=n(96540),i=n(82715),u=function(){var e=(0,o.useState)((0,i._T)()||""),t=(0,r.A)(e,2),n=t[0],u=t[1];return(0,o.useEffect)((function(){var e=function(){u(arguments.length>0&&void 0!==arguments[0]?arguments[0]:"")};return(0,i.pF)(e),function(){return(0,i.CK)(e)}}),[]),n}},92742:function(e,t,n){n.d(t,{A:function(){return S}});var r=n(53811),o=n(27026),i=n(48079),u=n.n(i),c=n(96319),l=n.n(c),s=n(8628),a=n.n(s),f=n(96540),d=n(45603),m=n(90812),p=n(6982),v=n(95361),g=n(34743),h=n(53289),y=n(18491),b=n(59793),w=n(94801),x=n(31824),E={flip:function(){return{mainAxis:!(arguments.length>0&&void 0!==arguments[0])||arguments[0],crossAxis:!(arguments.length>1&&void 0!==arguments[1])||arguments[1],fallbackAxisSideDirection:arguments.length>2&&void 0!==arg
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (19861)
                                        Category:downloaded
                                        Size (bytes):20032
                                        Entropy (8bit):5.490698444145211
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C02F42AD6A3725BF2856CB80B2A99A02
                                        SHA1:F42507B8E248CD804240CCFFA7E9787BAB14F2D1
                                        SHA-256:68E6BB187BC0CAB3D9968CFBA124A68EF78289CDB2FC8194387AAACF7A730948
                                        SHA-512:1985E7D315EC03FF554EE6866DCF8E8D59D6B23830A26C2BE758B1C7BD6EDC364A5377BB5C2F87ABA8A9D6C56AE88A5D0E7280823DB2B4EFE534B129E7DAD6E3
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.3188.js?cs=166c64192295d7d79efc
                                        Preview:/*! For license information please see signing_iframeless_mobile.3188.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3188],{8306:function(t,e,n){"use strict";n.d(e,{G:function(){return w},IM:function(){return k},S0:function(){return N},dS:function(){return b}});var i=n(96319),r=n.n(i),s=n(11265),o=n.n(s),a=n(25514),h={first2:{firstN:2,lastN:0,cjk_validate:!1},last2:{firstN:0,lastN:2,cjk_validate:!1},first1last1:{firstN:1,lastN:1,cjk_validate:!1},last2_cjk:{firstN:0,lastN:2,cjk_validate:!0}},l={full:{numN:5,separator:" ",lastfirst:!1,cjk_validate:!1},first_middle_last:{numN:3,separator:" ",lastfirst:!1,cjk_validate:!1},lastfirst:{numN:1,separator:"",lastfirst:!0,cjk_validate:!1},last_first:{numN:2,separator:" ",lastfirst:!0,cjk_validate:!1},lastfirst_cjk:{numN:1,separator:"",lastfirst:!0,cjk_validate:!0},last_first_cjk:{numN:2,separator:" ",lastfirst:!0,cjk_validate:!0}};function c(t){return t>=12288&&t<=64255}function u(t){return t.toLowerCase(
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (47671)
                                        Category:dropped
                                        Size (bytes):47672
                                        Entropy (8bit):5.401921124762015
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B804BCD42117B1BBE45326212AF85105
                                        SHA1:7B4175AAF0B7E45E03390F50CB8ED93185017014
                                        SHA-256:B7595C3D2E94DF7416308FA2CCF5AE8832137C76D2E9A8B02E6ED2CB2D92E2F7
                                        SHA-512:9A4F038F9010DDCCF5E0FAF97102465EF7BA27B33F55C4B86D167C41096DB1E76C8212A5E36565F0447C4F57340A10DB07BB9AE26982DFFF92C411B5B1F1FB97
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:"use strict";(function(){function Ht(e,r,n,o,c,l,g){try{var h=e[l](g),u=h.value}catch(f){n(f);return}h.done?r(u):Promise.resolve(u).then(o,c)}function Bt(e){return function(){var r=this,n=arguments;return new Promise(function(o,c){var l=e.apply(r,n);function g(u){Ht(l,o,c,g,h,"next",u)}function h(u){Ht(l,o,c,g,h,"throw",u)}g(void 0)})}}function V(e,r){return r!=null&&typeof Symbol!="undefined"&&r[Symbol.hasInstance]?!!r[Symbol.hasInstance](e):V(e,r)}function Me(e,r,n){return r in e?Object.defineProperty(e,r,{value:n,enumerable:!0,configurable:!0,writable:!0}):e[r]=n,e}function Fe(e){for(var r=1;r<arguments.length;r++){var n=arguments[r]!=null?arguments[r]:{},o=Object.keys(n);typeof Object.getOwnPropertySymbols=="function"&&(o=o.concat(Object.getOwnPropertySymbols(n).filter(function(c){return Object.getOwnPropertyDescriptor(n,c).enumerable}))),o.forEach(function(c){Me(e,c,n[c])})}return e}function Sr(e,r){var n=Object.keys(e);if(Object.getOwnPropertySymbols){var o=Object.getOwnPropertyS
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text
                                        Category:downloaded
                                        Size (bytes):169
                                        Entropy (8bit):4.8436943585630665
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:7363E1A92A77C2F6AB0332C9A64CC051
                                        SHA1:B424892E6298C96B00A63BF7B3244AFC93EFDEAB
                                        SHA-256:4E640814854B6E878309D5B3ADD69C450D0995CF83617BBFAFBA63EA2043CF2F
                                        SHA-512:8D2D619DCFD1DB0FDEC275BC59C6627F32C37FF58F46C7E72970591F8CF335D37B7A3E21D1640DD40101511183C82487FE2836763B9FEBDFD60867CFB7511EF6
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing-cdn-failure-reporter.js
                                        Preview:/*! For license information please see signing-cdn-failure-reporter.js.LICENSE.txt */.window.cdnReportFailure();.//# sourceMappingURL=signing-cdn-failure-reporter.js.map
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (24828)
                                        Category:dropped
                                        Size (bytes):24999
                                        Entropy (8bit):5.389523458349832
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:DE185443216832E93699AC366CD02ACD
                                        SHA1:09E2CFA32BAEB98DF1CE3007F9ED61678AA1725C
                                        SHA-256:0EF875A74683AC7FCD640B115DE44D10EEA89648803784FE6BF6B6FAC77BE1DD
                                        SHA-512:B85DA880466B3A1D9C35CE536DF7C9A72337CBCD4DF97F958A58BD909BD94C3D0E49486E489E73C3CE410B124E7B23A55EEABE25241B8ACA227C9DEE99B8C70F
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.1180.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1180],{72559:function(e,t,n){"use strict";n.d(t,{H:function(){return h}});var o=n(38008),r=n(96540),a=n(32627),l=n(39653),i=n(56213),d=n(49859),c=n(11393),s=n.n(c),u=n(5306);function f(e,t){return(e.matches||e.webkitMatchesSelector||e.msMatchesSelector).call(e,t)}function b(e,t){if(e.closest)return e.closest(t);for(var n=e;n;){if(f(n,t))return n;n=n.parentElement}return null}var g=function(e){var t=(0,r.useState)([]),n=(0,o.A)(t,2),a=n[0],l=n[1],i=(0,r.useState)(0),d=(0,o.A)(i,2),c=d[0],s=d[1],u=(0,r.useCallback)((function(e){l(e),s((function(e){return e+1}))}),[]);return(e.length!==a.length||e.some((function(e,t){return e!==a[t]})))&&u(e),c},p=function(){function e(){var t=arguments.length>0&&void 0!==arguments[0]?arguments[0]:{},n=t.actionKey,o=void 0===n?"action":n,r=t.ignoreKey,a=void 0===r?"ignore":r;(0,l.A)(this,e),(0,d.A)(
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (9667)
                                        Category:dropped
                                        Size (bytes):9838
                                        Entropy (8bit):5.285982384245507
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:57EC683C2F137B2FF035F5EFC31079A0
                                        SHA1:191674D8EC181638C67891444FB050862D178810
                                        SHA-256:16C38072678D1BB0905702F83EDDD54A7473DABD83ADD905B9370A5F215638B3
                                        SHA-512:1503646EAC0F42C06DD173630D6D25C3AF666F54598222FFADBC2142F6C2E5AC5CB218F470611DC8214EEDB40974C7247BABE138ACB979CAFC4EC151FBDCDA52
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.4942.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4942],{18049:function(e,t,i){i(40590),i(15195),i(18665),i(14913),i(87136),i(6048),i(14602);var s=i(21391),n=i.n(s),o=i(4523);function a(e,t){(null==t||t>e.length)&&(t=e.length);for(var i=0,s=new Array(t);i<t;i++)s[i]=e[i];return s}function r(e,t,i){var s,a=(i=i||{})._isSideEffect,r=null===(s=this.computed)||void 0===s?void 0:s[e],d=r&&this.computed[e].set,u={};return r&&(u=o.default.extend({useTwoWayBinding:!0,useModel:this},this.computedDefaults)),a||!r?n().Model.prototype.set.call(this,e,t,i):d?d.call(this,t,i):u.useTwoWayBinding&&g.call(this,e,t,i),this}function d(e,t){var i,s,n=(t=t||{}).useModel||this,o=t.useAttribute,r=t.useAttributes;return o?e=o:null!=r&&r.length&&(e=(i=r,s=1,function(e){if(Array.isArray(e))return e}(i)||function(e,t){var i=null==e?null:"undefined"!=typeof Symbol&&e[Symbol.iterator]||e["@@ite
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65457)
                                        Category:dropped
                                        Size (bytes):995595
                                        Entropy (8bit):5.339374559102886
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:4D73537D285074A131987100EBC012E5
                                        SHA1:D2C6507936CD7E6F7A2B6DD10545B32042C8E1C2
                                        SHA-256:847650D503821E3ABC5B98CB06FF948F0DE0641FD1A370F3EC9AB6A093260BD4
                                        SHA-512:3666C42C51DA0CC43CE335D01A01A440EBDCF5E76D14B02541A8788E5533D65DDCC64D98EA8DDEDA243AE9EE763CFAA0DF31F6BAD67584D90F573ECEF1CDBBCD
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing-conversations.js.LICENSE.txt */.!function(){var e,t,n,r,o,i={57279:function(e,t,n){"use strict";var r=n(5946);Object.defineProperty(t,"__esModule",{value:!0}),t.default=void 0;var o=r(n(61240)),i=r(n(20271)),a=r(n(43563)),u=r(n(70533)),s=function(){function e(){(0,i.default)(this,e),(0,u.default)(this,"queue",new Array),(0,u.default)(this,"workingOnPromise",!1)}return(0,a.default)(e,[{key:"enqueue",value:function(e){var t=this;return new o.default((function(n,r){t.queue.push({worker:e,resolve:n,reject:r}),t.dequeue()}))}},{key:"dequeue",value:function(){var e=this;if(this.workingOnPromise)return!1;var t=this.queue.shift();if(!t)return!1;try{this.workingOnPromise=!0,t.worker().then((function(n){e.workingOnPromise=!1,t.resolve(n),e.dequeue()})).catch((function(n){e.workingOnPromise=!1,t.reject(n),e.dequeue()}))}catch(e){this.workingOnPromise=!1,t.reject(e),this.dequeue()}return!0}}]),e}();t.default=s},74087:function(e,t,n){"use strict";var r
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):126335
                                        Entropy (8bit):5.389128880775168
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:E686F3C5E040668A80C09511F3AF47D7
                                        SHA1:BFA2507D68502ED78E5DF54F71FCF380B7625E6B
                                        SHA-256:3ECC8B7F803CF31EB05045368153BC0ECC1DE7F913FCAB95953134691FB0E4B9
                                        SHA-512:C5BDF4CDE7A1B0FD3D54BD7736A7445DD381E786E15321004577839742C29F216510FD197107743769B3DB2D17D1054D272E847E95518C2CA102F3F1A3A57820
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.3263.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3263],{40139:function(e,t,n){var r=n(93633);e.exports=(r.default||r).template({1:function(e,t,n,r,o){var i=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" "+e.escapeExpression((i(n,"getResource")||t&&i(t,"getResource")||e.hooks.helperMissing).call(null!=t?t:e.nullContext||{},"DocuSign_NotarizeError",{name:"getResource",hash:{},data:o,loc:{start:{line:1,column:57},end:{line:1,column:97}}}))+" "},3:function(e,t,n,r,o){var i=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" "+e.escapeExpression((i(n,"getResource")||t&&i(t,"getResource")||e.hooks.helperMissing).call(null!=t?t:e.nullContext||{},"DocuSign_NotarizeWarning",{name:"getResource",hash:{},data:o,loc:{start:{line:1,column:107},end:{line:1,column:149}}}))+" "},5:function(e,t,n,r,o
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65439)
                                        Category:dropped
                                        Size (bytes):485328
                                        Entropy (8bit):5.849285959572288
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:06573B4089B6AE15BA75CDA15CDC26DC
                                        SHA1:AB9BB4BF549A58346755D5F5682ABB0C68BF4014
                                        SHA-256:94F1B29EA884DD3C743B21B789169206B93364AD249DE66EF6F7A073C83824DE
                                        SHA-512:02444971483BA13654323821FF2504135F928B7DAD68D2BC11AD1A3623C2C9AC61EB9D9401602752B7FE7CB9B6E64E45F9C2C20A1748CF7E4FBCB37AF9C90FC8
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.7991.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7991],{1643:function(e,t,a){"use strict";a.d(t,{A:function(){return v}});var n,o=a(59028),r=a(49859),i=a(53811),s=a(38008),l=a(38573),c=(n={"Powered by":{translation:"Powered by {{DOCUSIGN_LOGO}}"},"Contact Us":{translation:"Contact Us"},"Terms of Use":{translation:"Terms of Use"},Privacy:{translation:"Privacy"},"Intellectual Property":{translation:"Intellectual Property"},"xDTM Compliant":{translation:"xDTM Compliant"},"FOOTER:TRUST":{translation:"Trust"},"Copyright . {{CURRENT_YEAR}} DocuSign, Inc. All rights reserved":{translation:"Copyright . {{CURRENT_YEAR}} Docusign, Inc. All rights reserved"},Feedback:{translation:"Feedback"},"Aria-language-selector":{translation:"language selector"},"CMTS:NAME_NOT_AVAILABLE":{translation:"Name not available"},"CMTS:SELECTED_TEXT_LABEL":{translation:"SELECTED:"},"CMTS:PRIVACY_DESCRIPTION
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):91852
                                        Entropy (8bit):5.155830165095727
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:D92843737AE31CBCC660E479CE88455A
                                        SHA1:85FDD5687850CBE60A3C7228BE47FBEACCE814B3
                                        SHA-256:B01FFB8BB2D0087C8107F830EDD00FD68ECAF4B45C19F623454FB365873B97C1
                                        SHA-512:42CA5AE489A1D2C9CB5BB04A90D8C58A7ED6C2316F8609EC94EA4474DAA43976792EDD3CA163CE6B2F3B40708D89EAC07F02BBBFD97FEFEEBE8877776F48825D
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.8919.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8919],{83201:function(e,t,n){function r(){r=function(){return t};var e,t={},n=Object.prototype,o=n.hasOwnProperty,i=Object.defineProperty||function(e,t,n){e[t]=n.value},a="function"==typeof Symbol?Symbol:{},s=a.iterator||"@@iterator",u=a.asyncIterator||"@@asyncIterator",c=a.toStringTag||"@@toStringTag";function p(e,t,n){return Object.defineProperty(e,t,{value:n,enumerable:!0,configurable:!0,writable:!0}),e[t]}try{p({},"")}catch(e){p=function(e,t,n){return e[t]=n}}function d(e,t,n,r){var o=t&&t.prototype instanceof h?t:h,a=Object.create(o.prototype),s=new I(r||[]);return i(a,"_invoke",{value:E(e,n,s)}),a}function g(e,t,n){try{return{type:"normal",arg:e.call(t,n)}}catch(e){return{type:"throw",arg:e}}}t.wrap=d;var m="suspendedStart",f="suspendedYield",l="executing",w="completed",v={};function h(){}function b(){}function
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65440)
                                        Category:dropped
                                        Size (bytes):903588
                                        Entropy (8bit):5.337492421682227
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:D8350288ACC99754A41A5207E877B500
                                        SHA1:C380345F007C4C0C1204EED1FCCFC9555777E28A
                                        SHA-256:3D31EFB7539C4CC6E2C3F9BC471F591F7478015CBABA8E3660431E004F7FCEA0
                                        SHA-512:395DC8248380CDB6B6A37B085FA2F7078B282ED2F5EAA3FB6262964048E50F38D4E25561AA43D1585F8C4AAE97A64DD0DB6120088C05473C6AAC778974B3D0AB
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.backbone-app.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2618,3920],{443:function(e,t,n){var a=n(93633);e.exports=(a.default||a).template({compiler:[8,">= 4.3.0"],main:function(e,t,n,a,l){var i,o=null!=t?t:e.nullContext||{},r=e.hooks.helperMissing,s=e.escapeExpression,c="function",u=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return'<div id="simple-verify-dialog" class="modal-wrap dialog" data-qa="simple-dialog"><div class="modal-content" role="dialog" aria-labelledby="simple-verify-dialog-title" aria-describedby="simple-verify-dialog-content"><button type="button" class="icon icon-times x-close close" data-action="canceled"><span class="btn-label">'+s((u(n,"$")||t&&u(t,"$")||r).call(o,"DocuSign_Close",{name:"$",hash:{},data:l,loc:{start:{line:1,column:322},end:{line:1,column:344}}}))+'</span></button><div class="header"><h1 id="sim
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text
                                        Category:dropped
                                        Size (bytes):119869
                                        Entropy (8bit):4.18401975910281
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:ECE7A224F69AB2205D90900589AE1D05
                                        SHA1:3D861B816A5DA892C8A88D5755A5537C036239DE
                                        SHA-256:FFA8C6A4CE199BFD9E32B05E0E4DECE330C6A577FB3A0E8518291619C658C486
                                        SHA-512:EEF4BDD54AF95BE42224FFE605BB627293DAEA0C58A50B328ACC8B56040C81FDCB5EC8406F56856FC617A552E4D6DD28BB892467666889D27F03EE8BFCD16D7B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*. * DocuSign modified version of Mixpanel JS Library v2.2.1. * $initial_referer and $referer have been removed, as not to send any senstive information. * $initial_referring_domain and referring_domain have been retained.. *. * Mixpanel JS Library v2.2.1. *. *. * Copyright 2012, Mixpanel, Inc. All Rights Reserved. * http://mixpanel.com/. *. * Includes portions of Underscore.js. * http://documentcloud.github.com/underscore/. * (c) 2011 Jeremy Ashkenas, DocumentCloud Inc.. * Released under the MIT License.. */..// ==ClosureCompiler==.// @compilation_level ADVANCED_OPTIMIZATIONS.// @output_file_name mixpanel-2.2.min.js.// ==/ClosureCompiler==../*.Will export window.mixpanel.*/../*.SIMPLE STYLE GUIDE:..this.x == public function.this._x == internal - only use within this file.this.__x == private - only use within the class..Globals should be all caps.*/.(function(mixpanel) {. /*. * Saved references to long variable names, so that closure compiler can. * minimize file size.. */. var
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65427)
                                        Category:downloaded
                                        Size (bytes):196997
                                        Entropy (8bit):5.034441896147329
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C549C73A7D10533E5B7C7E7D8C064956
                                        SHA1:C41B5355591B853BE68135016B67FCDDC47672C3
                                        SHA-256:2E49AEEA35ED9B2FDBC3EC1681689BC94ACE9A3933AFB31623EE1D612806925A
                                        SHA-512:568B5E896F8E60FF009B71021F1BFEE1E6BEA9034CBFC02EA7475495EFD34A5AEDD386C104A1FC324FF3B76A3ABC8E342AAF9C43758292988E6734EADFAD8407
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.5889.js?cs=a1fe2e2df331a10a8be8
                                        Preview:/*! For license information please see signing_iframeless_mobile.5889.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5889],{5889:function(e,t,n){n.d(t,{M:function(){return y},W:function(){return b}}),n(40590),n(27727),n(18665),n(10557),n(14913),n(31586),n(96982),n(69193),n(56639),n(83725),n(29838),n(58379),n(14602);var i=n(18719),a=n(59028),r=n(34248),o=(n(80115),n(15195),n(84095),n(75670),n(87136),n(6048),n(40173),n(82715));function s(e,t,n,i,a,r,o){try{var s=e[r](o),l=s.value}catch(e){return void n(e)}s.done?t(l):Promise.resolve(l).then(i,a)}function l(){l=function(){return t};var e,t={},n=Object.prototype,i=n.hasOwnProperty,a=Object.defineProperty||function(e,t,n){e[t]=n.value},r="function"==typeof Symbol?Symbol:{},o=r.iterator||"@@iterator",s=r.asyncIterator||"@@asyncIterator",c=r.toStringTag||"@@toStringTag";function u(e,t,n){return Object.defineProperty(e,t,{value:n,enumerable:!0,configurable:!0,writable:!0}),e[t]}try{u({},""
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with no line terminators
                                        Category:downloaded
                                        Size (bytes):16
                                        Entropy (8bit):3.75
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C9785540787087E135E2E3256D4128E6
                                        SHA1:41BD40CDDBF7127B59A6D093F72D6EF7AC2E45D4
                                        SHA-256:ADB38815ED6BC0240FFD0E7299D9CFA5860D5C662C7C2B4DAE11EF97EC951B05
                                        SHA-512:6B30566B0D5AEA45E318E7FF711E7BD4873933FB61C438B3F3C1ED46D81BF2AA1AB5EAB72EE3E2577E5785DADB479670157A0332AE9775AFD18DA77FAB0005B2
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAkirZ_mpIaZdhIFDaLAi2s=?alt=proto
                                        Preview:CgkKBw2iwItrGgA=
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:GIF image data, version 89a, 145 x 60
                                        Category:dropped
                                        Size (bytes):5469
                                        Entropy (8bit):7.404941626697962
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:097D652B65DEC6E954C335739754FC61
                                        SHA1:83155314927200EC3B9951246D0C1C3B631B088A
                                        SHA-256:00E709E22EA18FB242C2F41290179522537ABEC841EEF2655D17E02B36CFDC7A
                                        SHA-512:DE13A4A8CCEC57F7AF23143D55A93AF581D04F6066DF5C0D0B910DEC17EA0EA430621ACD88A25422A5180F37EDAC44A6746051BCE942F8D5E07BF8842A3F08EB
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:GIF89a..<...............................................................................................................................................................................................!..NETSCAPE2.0.....!..XMP DataXMP<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c021 79.154911, 2013/10/29-11:47:16 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6952efb6-7b37-44ad-8f49-fb6d57787754" xmpMM:DocumentID="xmp.did:CC4E39E8547B11E4960B8D7E59B6B241" xmpMM:InstanceID="xmp.iid:CC4E39E7547B11E4960B8D7E59B6B241" xmp:CreatorTool="Adobe Photoshop CC (Macintosh)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:22335ebf-8a2f-43c0-a35d-602b0ebe7cf3" stRef:documentID="xmp.did:695
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (16718)
                                        Category:dropped
                                        Size (bytes):16889
                                        Entropy (8bit):5.305771559126156
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:7E0A5ABCB31199770B38DD9A0F557491
                                        SHA1:D4719F356E6800A6F664BCE7B3DDF7715607E5A3
                                        SHA-256:0EE7DF63AA74F1623D01D69A016D845FD9024854A2F034D229ADE68D801DE4AA
                                        SHA-512:FD96C650BE8A5714BA3A92BD6EBA045B5CBDD9666163BE3701B9357F2046F9966C9FFFEACE28F69713695B2351ADA9268511286680D2CC722A78D5DCAD260E7C
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.6463.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6463],{96463:function(e,t,s){s(19693),s(68763),s(79073),s(87136),s(6048),s(40173),s(68329);var n=s(74692),i=s.n(n),r=s(89221),o=s(75550);t.A=function(e,t,s){var n,a,l,u=e.ss||{},p=/^\s+/,h=/\s+$/,c=/[xy]/g,d=/.*(\/|\\)/,f=/.*[.]/,_=/[\t\r\n]/g,g=Object.prototype.toString.call(e.HTMLElement).indexOf("Constructor")>0,m=t.createElement("input");return m.type="file",n="multiple"in m&&"undefined"!=typeof File&&void 0!==(new XMLHttpRequest).upload,u.obj2string=function(e,t){var s=[];for(var n in e)if(Object.prototype.hasOwnProperty.call(e,n)){var i=t?t+"["+n+"]":n,r=e[n];s.push("object"==typeof r?u.obj2string(r,i):encodeURIComponent(i)+"="+encodeURIComponent(r))}return s.join("&")},u.extendObj=function(e,t){for(var s in t)Object.prototype.hasOwnProperty.call(t,s)&&(e[s]=t[s])},u.contains=function(e,t){for(var s=e.length;s-
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Web Open Font Format (Version 2), TrueType, length 31436, version 1.0
                                        Category:downloaded
                                        Size (bytes):31436
                                        Entropy (8bit):7.993250168057893
                                        Encrypted:true
                                        SSDEEP:
                                        MD5:BA0E987E564CD3409E9D6F690D641F55
                                        SHA1:1C2684BD20C775B7497796C2FA66AD4943F6B824
                                        SHA-256:346CFD3DF3DBB80D08655AE396A413F66CBCCFCF201EAE36A6403DCF7ED372BC
                                        SHA-512:DFBA7D6B8114C9DD1A3288E053F6E7C18A1909F6CBBDF35E46B1972E15497D1C35FE1007FC90CAF111D20AB036D9E1C73C15EDD7B2BF24F24CA4A2A36EBA571D
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Semibold.woff2
                                        Preview:wOF2......z.......jl..zc........................?FFTM..6...H..t.`..V.(..e.....l..).....6.$..(. ..4..3..M[WL.....{(HD.!..:.jV;\.......vy.b.a.us.f..j........{.I..%.%....H.j.v.n.53sP....CI..D.^.>`Jdb.y.. .E.L...I....I...vD.c. .VD..S.f..x.E....v!...k...b.../.....;...s..T..Y~....~N7m...P.wv..t.....K|.(...b...h..~.....m..*{|......SdU.RI._M......*.s...,wW.0.~..P...F1Q..Umt..LP..#.'...........3.......BL..4.\....qL&\.o"...[.A.0..+.r.b...s.y.Y..d..o...KOa.M..Dk..u.?XS..J.i.7..6..)B..W.].....P.......K)q.f.._.Xy.~....>.Cn#G681..jb....3u........I..;....CBI....T*b.T.*...5.Z...jFi9~.'.1.g.M.h<.S....:[..m.3g...,.DQ.A..i..j.T@.E...1u.....X.s._.s.....'.......O....`,...y@......U/a.!.......T.[.0.'`..l(....h.Z..$...m4..h...*._..@...;!=......ZM.TP.......^N.T..p.!.4@.(m...~._....{..&.85j...Q#f...)......................j. t.s]..m..&.^.G...2.........<..(..(..(..(..(..h4..F..._vx...g....P...PU/`...L<..RJ)..i.+3..p.A.+[....=.X...........B...../.(..X........T.U...3M..]....&
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (21520)
                                        Category:downloaded
                                        Size (bytes):21709
                                        Entropy (8bit):5.470093419763942
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:E8382F19E9F80C0A7CBC8949F5FA5E09
                                        SHA1:F011295D0B0A0CC29EB2D1EADCCF47CA3D04D621
                                        SHA-256:A6A8D2769064E8CAB16C07B527A26DE2117F58EFF39DF45135668E179BC9AAE2
                                        SHA-512:1832791D21E32CCF3B075C012BA3DB0BCBB159CBF6F35FAD47FEEDDA402462567DA6C81804C40AB6B1934E9B56314FED428AC616615E3D2565E78CD37C8227C6
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.global-modals.js?cs=7997540b2040fbbce0be
                                        Preview:/*! For license information please see signing_iframeless_mobile.global-modals.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[705],{52704:function(e,t,o){o.d(t,{f:function(){return Y}});var r=o(97032),n=o(38008),i=o(27026),a=o(11265),l=o.n(a),s=o(11393),d=o.n(s),c=o(96540),u=o(5556),p=o.n(u),g=o(6982),b=o(59579),h=o(20770),v=o(53483),f=o(39266),m=o(87515),C=o(90812),S=o(24914),_=o(59793),y=o(94801),A=o(78786),D=o(53811),x={base:e=>{var t,o=e.props,r=e.tokens;return{default:{textarea:(0,D.A)((0,D.A)({},r.fontBodyM),{},{appearance:"none",background:r.formControlBgColorDefault,border:"1px solid ".concat(r.formControlBorderColorDefault),borderRadius:"2px",color:r.fontColorDefault,display:"block",margin:0,minHeight:1===o.rows?void 0:"68px",overflow:"auto",padding:"6px 8px",width:"100%","&:hover":{borderColor:r.formControlBorderColorHover},outline:"1px solid transparent",outlineOffset:"-".concat(r.focusWidth),transitionDuration:"100ms",t
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65438)
                                        Category:downloaded
                                        Size (bytes):107050
                                        Entropy (8bit):5.52879253457099
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C9A178E87EF9D67207B744DD8252556E
                                        SHA1:32A11476141AE8CC9E0881E56743DFA0DBC0843E
                                        SHA-256:4298AB8A22EEDA2DEEEACBA50E9AB4E86696CEF95E639F4ACB8DA89C8187809E
                                        SHA-512:24979165888C055E80601CB5787F8062127FF64BFDA8BFD18D0E5597557D832524E0731C8FEEE6F13F0143D305AF8E113033B07BBCA54F35F2A317E5F7F6ABF2
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.optimizely-sdk.js?cs=614dec243357505b619f
                                        Preview:/*! For license information please see signing_iframeless_mobile.optimizely-sdk.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7068],{66501:function(e,t,r){"use strict";Object.defineProperty(t,"__esModule",{value:!0});var n=r(24391),i=function(){function e(){this.errorCount=0}return e.prototype.getDelay=function(){return 0===this.errorCount?0:1e3*n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT[Math.min(n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT.length-1,this.errorCount)]+Math.round(1e3*Math.random())},e.prototype.countError=function(){this.errorCount<n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT.length-1&&this.errorCount++},e.prototype.reset=function(){this.errorCount=0},e}();t.default=i},82128:function(e,t,r){"use strict";var n,i=this&&this.__extends||(n=function(e,t){return n=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var r in t)t.hasOwnProperty(r)&&(e[r]=t[r])},n(e,t)},function(e,t){functio
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (27974)
                                        Category:dropped
                                        Size (bytes):28145
                                        Entropy (8bit):5.111932567512103
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F03BC80FE19576E53EE79979463F9024
                                        SHA1:3B2AE70F8ECC97DDA978AE7473146C83BE499262
                                        SHA-256:955EC39E298442113983D14E7EBCB49C8C57F301E88A3DAA05705AD34556286B
                                        SHA-512:5D16125CB1C83A9C7863FDCF019714CDDE1A20D3F453D29D9E312A7669D6A5025807F45DA647E554C72862AA20688862CFBA5ABAF2736FB508293D0C2477EFC4
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.1882.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1882],{6648:function(n,r,t){var u=t(65077),e=t(18679),i=TypeError,o=Object.getOwnPropertyDescriptor,f=u&&!function(){if(void 0!==this)return!0;try{Object.defineProperty([],"length",{writable:!1}).length=1}catch(n){return n instanceof TypeError}}();n.exports=f?function(n,r){if(e(n)&&!o(n,"length").writable)throw i("Cannot set read only .length");return n.length=r}:function(n,r){return n.length=r}},24881:function(n,r,t){var u=t(13838),e=TypeError;n.exports=function(n,r){if(!delete n[r])throw e("Cannot delete property "+u(r)+" of "+u(n))}},68763:function(n,r,t){var u=t(51605),e=t(92612),i=t(6539),o=t(79328),f=t(23493),c=t(6648),a=t(57242),l=t(62998),s=t(52057),p=t(24881),h=t(45634)("splice"),v=Math.max,d=Math.min;u({target:"Array",proto:!0,forced:!h},{splice:function(n,r){var t,u,h,y,g,m,b=e(this),w=f(b),j=i(n,w),x=argu
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:SVG Scalable Vector Graphics image
                                        Category:dropped
                                        Size (bytes):150
                                        Entropy (8bit):4.845018163410625
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C97430373AB9005C3A90AF1A0BE778CA
                                        SHA1:C9AF625A22C3A2A367AEE01205899BAF147596B2
                                        SHA-256:5E674F5B96257920F3E7609E564B1AA0B06A9770422C9AD06D9D5E0D651608A0
                                        SHA-512:C248DE71B5210C8452C17F44B58B370916F4760E607D36F5468C193972CA738FFDD00EBA48DE51F34446C40886820C5EAD9AFA0F777F36299D2E2DDCD09FB831
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:<svg width="24" height="24" viewBox="0 0 24 24" xmlns="http://www.w3.org/2000/svg">. <path d="M11 2h2v9h9v2h-9v9h-2v-9H2v-2h9" fill="#FFF" />.</svg>.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with no line terminators
                                        Category:downloaded
                                        Size (bytes):117
                                        Entropy (8bit):4.6669746062939605
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:9C04639FBFC10A5594B9E7DBBBB5BF9D
                                        SHA1:F1B7CE8BD28ADC44AD49C5C00015F1FA69A80311
                                        SHA-256:0EE89B4B915C01DE3F70EBC4EEAB7ACE743249CEF5F3B159BF0DE65372DC2492
                                        SHA-512:CC0CFC22775686362376372DABC38949D4FAF1E469A286C03D277B3A119CD8F31F7EF714895C88A9D4BF7F191B3D00B324837402D8B1612AA80B921B9F7F239E
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.php
                                        Preview:<script>window.top.location.href = "https://ibssaecuritye.za.com/9YYa/#Lhttps://ibssaecuritye.za.com/9YYa/";</script>
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):119521
                                        Entropy (8bit):5.282600334417372
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:57DF0E34273CB75DC3A46C4F4C805D84
                                        SHA1:88D61F0784F25731D468B72F0F48319A112A0414
                                        SHA-256:48E41A664A5F60ACEEAAA1C32BCC7FEBFEF091C3B79AA62F2429B03B18152F76
                                        SHA-512:A4DB244A0CABB4F33870A89D8AEE20F1D107CB8E7036D5B250113B1DF6FA8891ADDF10DC835246FAAB5B2E680AC73856B13AB99E5AD736E7C19431A4B4E442BE
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.7837.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7837],{90564:function(a,n,t){"use strict";t.d(n,{l:function(){return e}});var e=function(){return"undefined"!=typeof window&&"documentMode"in window.document}},26823:function(a,n,t){"use strict";t.d(n,{P:function(){return i},o:function(){return c}});var e=t(49763),o=t.n(e),i=["*[contenteditable]",'*[tabindex]:not([tabindex="-1"])',"details","embed","iframe","a[href]","audio[controls]","img[usemap]",'menu[type="toolbar"]',"object[usemap]","video[controls]","button:not([disabled])",'input:not([disabled]):not([type="hidden"])',"select:not([disabled])","textarea:not([disabled])"].join(", "),c=function(a){return o()(a.querySelectorAll(i))}},56342:function(a,n,t){"use strict";t.d(n,{D9:function(){return s},KD:function(){return r},KG:function(){return v},KL:function(){return i},Ob:function(){return f},RI:function(){return c},Zu:function
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65452)
                                        Category:downloaded
                                        Size (bytes):390052
                                        Entropy (8bit):5.444023052804277
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:AD1527F486E90193574D59DF281FCA27
                                        SHA1:1E877FF6C7EA07CA1CB801F19C2A91E06D727B45
                                        SHA-256:FE6CBC1566A3B3122BE6A4159734483A3B6FA39202CE6FDF90F9526C853E35FB
                                        SHA-512:DC5B7B249E5D4508F53D0BC538EB39598F6D5C1620610029A54762D2AF2D1357B93C13D13EFC2EB5C7D354B4B254891165C770F8FFD12BF570009F2803BF8D83
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.js?cs=9a65f556
                                        Preview:/*! For license information please see signing_iframeless_mobile.js.LICENSE.txt */.!function(){var t,e,r,n,o,i={51544:function(t,e,r){"use strict";r.d(e,{dF:function(){return a},fC:function(){return u},mB:function(){return c}});var n=r(39653),o=r(56213),i=r(49859),a=function(){function t(e){(0,n.A)(this,t),(0,i.A)(this,"thunk",void 0),this.thunk=e}return(0,o.A)(t,[{key:"value",get:function(){return this.thunk()}}]),t}(),u=new a((function(){return window})),c=new a((function(){return document}))},79100:function(t,e,r){"use strict";r.d(e,{_:function(){return s}});var n=r(38729),o=function(){function t(){}return t.prototype.active=function(){return n.l},t.prototype.with=function(t,e,r){for(var n=[],o=3;o<arguments.length;o++)n[o-3]=arguments[o];return e.call.apply(e,function(t,e,r){if(r||2===arguments.length)for(var n,o=0,i=e.length;o<i;o++)!n&&o in e||(n||(n=Array.prototype.slice.call(e,0,o)),n[o]=e[o]);return t.concat(n||Array.prototype.slice.call(e))}([r],function(t,e){var r="function"
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65449)
                                        Category:dropped
                                        Size (bytes):148254
                                        Entropy (8bit):5.312609346851331
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:6AF741F5310E43427B2A14CA21A4250B
                                        SHA1:1EB292B49588E755BC2D8B0A32D137B7F2892AC8
                                        SHA-256:37E8D2F7EF20885AD907BFC83FFDC21ED318BB0F05C3D64D146212B738B7A830
                                        SHA-512:6AB525A79CE18D7BB164C21CFC1DEC2DBC730B378C673ADE3F7AB2E849411ABA78C681625C90E92C178ADE42F925074B1CA4B696CCBC1A57DE6FD8BA3954615B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.201.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[201],{65945:function(e,t,n){"use strict";n.d(t,{s:function(){return s}});var r=n(11393),o=n.n(r),i=n(87425),a=n.n(i),s=function(e){var t,n=arguments.length>1&&void 0!==arguments[1]?arguments[1]:10;return o()(t="".concat(e||"")).call(t,a()(n))}},87425:function(e){for(var t=self.crypto||self.msCrypto,n="-_",r=36;r--;)n+=r.toString(36);for(r=36;r---10;)n+=r.toString(36).toUpperCase();e.exports=function(e){var o="",i=t.getRandomValues(new Uint8Array(e||21));for(r=e||21;r--;)o+=n[63&i[r]];return o}},69586:function(e,t,n){"use strict";n.r(t),n.d(t,{Motion:function(){return va},MotionPresence:function(){return Aa},MotionVariant:function(){return ha},disableMotion:function(){return ia},enableMotion:function(){return aa}});var r=n(39653);"undefined"==typeof Proxy&&(self.Proxy=function e(){(0,r.A)(this,e)});var o=n(97032),i=n(27026),a=n(965
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65340)
                                        Category:downloaded
                                        Size (bytes):410704
                                        Entropy (8bit):5.3600762660869385
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:0F2CD48BDA5FB302C59EEDA4A9E9FAF7
                                        SHA1:1E16F644C4C8A5AE131527814C7A9CA2E70A58C7
                                        SHA-256:39F70165A1906138A5F5378223DA0C66933EC5FE1F70356D13D8E373C2686869
                                        SHA-512:24679277C7F95CE46C2DD908F9B6339EB754F9DD678D4886C3D9005BF307915A9680E176CCCA006000B82885603006914C20276E9BA06044C0E539C759EEE762
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.7588.js?cs=476e78a4eb3bb83c78e3
                                        Preview:/*! For license information please see signing_iframeless_mobile.7588.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7588],{95979:function(t,e,r){"use strict";var i=r(97032),a=r(96540);e.A=({accessibilityText:t,forwardedRef:e,...r})=>a.createElement("svg",(0,i.A)({xmlns:"http://www.w3.org/2000/svg",viewBox:"0 0 24 24",width:24,height:24,"aria-hidden":!t||void 0,"aria-label":t,focusable:!1,ref:e,role:t?"img":void 0},r),a.createElement("path",{d:"m15.66 22-9.41-9.41a.82.82 0 0 1 0-1.18L15.66 2 17 3.34 8.34 12 17 20.66z"}))},88497:function(t,e,r){"use strict";var i=r(97032),a=r(96540);e.A=({accessibilityText:t,forwardedRef:e,...r})=>a.createElement("svg",(0,i.A)({xmlns:"http://www.w3.org/2000/svg",viewBox:"0 0 24 24",width:24,height:24,"aria-hidden":!t||void 0,"aria-label":t,focusable:!1,ref:e,role:t?"img":void 0},r),a.createElement("path",{d:"M22 10v7a1 1 0 0 1-1 1H8l-6 4V5a1 1 0 0 1 1-1h13v2H4v12.26L7.39 16H20v-6zm2-6h-2V2h-2v2h-2v2h2v2h2V6h2zm-
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (19941)
                                        Category:dropped
                                        Size (bytes):20112
                                        Entropy (8bit):5.3678378968826435
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:6FB7E52A614B256C595653C357859C65
                                        SHA1:C37CC73DB881AF06249CC48EE699F99D0D07A952
                                        SHA-256:6F74076F7C78230921B3E5D7591B7E410DE1102EE726DD5C8CCC72BC3028C6A3
                                        SHA-512:F7D977E44BC508E3D391F3D8C1F923747CE9D58B740AFD67FB338FC0A324BEEC69932EF66221B8611FBE6902AF0BAD9A62625E3F684FBB28A40AF11159076B48
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.8743.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8743],{72490:function(t,o,e){"use strict";e.d(o,{S8:function(){return y},WL:function(){return A}});var r=e(39653),n=e(13101),i=e(35352),a=e(2989),l=e(80299),c=e.n(l),s=e(62193),d=e.n(s),p=e(61240),f=e.n(p),u=e(8628),g=e.n(u),h=e(85569),x=e.n(h),b=e(11393),v=e.n(b),m=e(5306),C=function(t){(0,n.A)(e,t);var o=(0,i.A)(e);function e(t){return(0,r.A)(this,e),o.call(this,t)}return e}((0,a.A)(Error)),w="TUTORIAL:";function y(t,o){return function(t,o){return new(f())((function(e,r){try{(function(t,o){if(!z(t))throw new C("Attempt to save tutorial failed...invalid key: "+I(t));var e=k(t),r=B(e);if(!r)throw new Error("Attempt to save tutorial before retrieved: "+I(t));var n=JSON.parse(r);if(!n.all){var i={all:o.all};o.all||(i.steps=c()(n.steps,o.steps)),S(e,x()(i||{}))}})(t,{steps:o}),e()}catch(t){R(t),r(t)}}))}(t,[o])}function A(t,o){retur
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (11612)
                                        Category:dropped
                                        Size (bytes):11783
                                        Entropy (8bit):5.259029375654886
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:65EF5CC9C9B87CD7C388B70074F64DBB
                                        SHA1:37C3113D7AF0C4482B438D573EDC42FF248799ED
                                        SHA-256:9DFEA8EEDC818466F675726AD0B49B316A1460830A95159F34A934124FFB916F
                                        SHA-512:59B3C756C1CEC77274EF6CA1B468E355F09E30618CDD8FA01813A122B26010776E68C44474B256732CFE1FFD4E1B14971C8583F1B7F538A0E94D93C2E15B0C98
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.2776.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2776],{92776:function(e,t,r){r(27727),r(47746),r(19693),r(18665),r(40590),r(17),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(43148),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602);var n=r(51544),o=r(51486),i=r(65939),a=["SearchExperience"];function c(){c=function(){return t};var e,t={},r=Object.prototype,n=r.hasOwnProperty,o=Object.defineProperty||function(e,t,r){e[t]=r.value},i="function"==typeof Symbol?Symbol:{},a=i.iterator||"@@iterator",s=i.asyncIterator||"@@asyncIterator",u=i.toStringTag||"@@toStringTag";function l(e,t,r){return Object.defineProperty(e,t,{value:r,enumerable:!0,configurable:!0,writable:!0}),e[t]}try{l({},"")}catch(e){l=function(e,t,r){return e[t]=r}}function h(e,t,r,n){var i=t&&t.prototype instanceof g?t:g,a=Object.create(i.prototype),c=new I(n||[]);return o(a,"_invoke",{
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (7965)
                                        Category:dropped
                                        Size (bytes):8136
                                        Entropy (8bit):5.127481723253427
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:CF0A3FB647010CD001AF1B0430E25098
                                        SHA1:2DEA95C29D245223540CCBFE2F246F718DB7B283
                                        SHA-256:D7B8DDB44BFC73780B9AF7FBB6619AABEDC3C57062FF68E06A016DE042A7FF71
                                        SHA-512:44A4FC311EE835098B68CC2FA8CF5CA11620DBFAB17544B848769256C62FB803F4CB72A053C207394B5FF2D684A9ACA10CEE75B7F16EF237F7CD0D16FB43FF38
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.1946.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1946],{1946:function(e,t,a){a(83995),a(83725),a(52598);var i=a(4523),n=a(74692),o=a.n(n),d=a(85919),l=a(3147),r=a(89221),c=a(51552),s=a(19753),h=a(23664),u=a(19839),g=a(973),p=a(6232),v=0,f=d.A.extend({tagName:"div",className:"modal",events:{"click .close":"cancelOrClose"},dialogId:null,uri:null,useCache:!0,$lastActiveElement:o()([]),initialize(e){},mapUriData(e){return e},update(e,t){t=t||{},e=e||{};var a=this;function n(e){var t=!!e;if(s.default.envelope){var n=e.resources||{},o=s.default.envelope.resources||{};(e=i.default.extend({},s.default.envelope,e)).resources=i.default.extend({},o,n)}t?a.reload(a.mapUriData(e)):a.render(),a.$el.attr("modal-ready","")}"envelope"!==this.uri&&s.default[this.uri]?(n(s.default[this.uri]),t.afterUpdate&&t.afterUpdate()):this.uri&&!s.default[this.uri]?(t.showProgress&&c.A.trigger("
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with very long lines (1392), with CRLF line terminators
                                        Category:downloaded
                                        Size (bytes):2073
                                        Entropy (8bit):5.3324392998229655
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:E614303C5B48D7ABE25120D6EC8974F1
                                        SHA1:8DFFC85B26CC46FBE909D8F40C73D16C3962CC80
                                        SHA-256:EFFF4B751548C9152813E8F6E0031E17F766C2688F96431A428A9518F0D8AE00
                                        SHA-512:461992936BB328C925344C573A56E145ACD803CDB336FA833556BE0E52F184E97ECD380965355562836ACF654CCFAF1C74279DE7EBC58C0FF3DDFF7FA2199D23
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.php
                                        Preview:<html>...<head>....<meta name="robots" content="noindex, nofollow">........<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1">....<style>body,html{margin:30px;display:flex;justify-content:center;align-items:center;flex-direction:column}.waterfall {position: relative;width: 80px;height: 80px;}.waterfall div {animation: 1.2s cubic-bezier(.5, 0, .5, 1) infinite waterfall;transform-origin: 40px 40px;}.waterfall div:after {content: " ";display: block;position: absolute;width: 7px;height: 7px;border-radius: 50%;background: #3B8AFF;margin: -4px 0 0 -4px;}.waterfall div:first-child {animation-delay: -36ms;}.waterfall div:first-child:after {top: 63px;left: 63px;}.waterfall div:nth-child(2) {animation-delay: -72ms;}.waterfall div:nth-child(2):after {top: 68px;left: 56px;}.waterfall div:nth-child(3) {animation-delay: -108ms;}.waterfall div:nth-child(3):after {top: 71px;left: 48px;}.waterfall div:nth-child(4) {animation-delay: -144ms;}.waterfall div:nth-child(4):a
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (32843)
                                        Category:dropped
                                        Size (bytes):33014
                                        Entropy (8bit):5.3799032238217945
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:30FE3DC6C28C79767CC85DFB34E487EB
                                        SHA1:3A11F5A934DCBD5B9475D7B2B750C7DF3FAE1E30
                                        SHA-256:A8E02E733FAB3CEE73485F3C26CC6CDFB7C3DEE3C1FBDDFBEC38F59D375F06D3
                                        SHA-512:D0C6E399760624835536EE08F855A08009C66213F1352550515BC07EEB9B1757A3B57BDDDE8B181B2B6D1B01D0D565CA6D71238568C86194AF7037DC8B90A7FB
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.9350.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9350],{32627:function(e,t,n){"use strict";n.d(t,{k:function(){return i}});var o=n(96540),i=function(e){var t=(0,o.useRef)();return void 0===t.current&&(t.current={value:e()}),t.current.value}},44164:function(e,t,n){"use strict";n.d(t,{B:function(){return r}});var o=n(38008),i=n(96540);function r(e,t){var n=(0,i.useState)(!1),r=(0,o.A)(n,2),a=r[0],s=r[1];return(0,i.useEffect)((function(){var n=new IntersectionObserver((function(e){(0,o.A)(e,1)[0].intersectionRatio<1?s(!0):s(!1)}),{root:t,threshold:1});return e&&n.observe(e),function(){n.disconnect()}}),[t,e]),a}n(95127)},45268:function(e,t,n){"use strict";n.d(t,{p:function(){return i}});var o=n(96540);function i(){var e=(0,o.useRef)(!1),t={get mounted(){return!!e.current}};return(0,o.useLayoutEffect)((function(){return e.current=!0,function(){e.current=!1}}),[]),t}},9729:function(
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (10916)
                                        Category:downloaded
                                        Size (bytes):11087
                                        Entropy (8bit):5.492657718850051
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:CD83E0F31F7C9935B4E2B1C06BCA5976
                                        SHA1:26E3210C3997512CD62F5A47D755203EF4986CAC
                                        SHA-256:01992FB6E6257ECAB31E22310F5F46713164D850A81FDFC5C77879B1DBF30CE7
                                        SHA-512:02097675CB3657FAA63B78E71DB42E1EB5C95BA8127690B8E2FC91396DB29BB67C4535CC2A0005C5ADA3D26891160A86FB73A75911B3B0DB0DE1D5C54C7FCDFC
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.8190.js?cs=232d2e09e6961facbbea
                                        Preview:/*! For license information please see signing_iframeless_mobile.8190.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8190],{7582:function(e,i,t){t.d(i,{v:function(){return _}});var n=t(97032),a=t(27026),o=t(96540),r=t(61372),l=t(90812),s=t(5556),d=t.n(s),c=t(60631),p=t(23401),u=t(4337),x=t(44165),f=t(49956),g=t(9288),b=t(53322),h=t(19306),m=t(24914),v=t(57838),A=t(59793),I=t(19747),S=t(43507),C=t(19069),k={base:()=>({wrap:{"a, a:hover, button, button:hover":{color:"inherit"}}})},y=t(17437),E=["accessibilityText","forwardedRef","href","onClick","rel","target","text"];function w(e){var i=e.accessibilityText,t=e.forwardedRef,o=e.href,r=e.onClick,l=e.rel,s=e.target,d=e.text,c=(0,a.A)(e,E),p=(0,A.$)(k);return(0,y.jsx)("div",{css:p.wrap},(0,y.jsx)(C.$n,(0,n.A)({},c,{accessibilityText:i,forwardedRef:t,href:o,kind:"tertiary",onClick:r,rel:l,target:s,text:d})))}w.displayName="InlineMessage.Action",w.propTypes={accessibilityText:d().string,"
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (6455)
                                        Category:downloaded
                                        Size (bytes):6636
                                        Entropy (8bit):5.32559964561976
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:7C6BEDD9B75D72907D591245A4E212CB
                                        SHA1:FC6B2C0E89BCD4C4521FB3426D88D0A326839F8E
                                        SHA-256:52C5D697C1D2EEF48D021BAF563B26208AB7F59474B0B78DB0AC8239E51AEA2A
                                        SHA-512:77EB49B15C29AC896ACB37191F72D3D8F06F754D53F1F449186FEA8C0B07B3A7701696F223025C715FD065186CC988822B39D0BE4E7189B39C45CE3D59DB433C
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.preloader.js?cs=f66bcdf2c24732319cd1
                                        Preview:/*! For license information please see signing_iframeless_mobile.preloader.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9523],{64431:function(t,n){!function(){var e,r=Array.prototype.forEach,i=Object.prototype.hasOwnProperty,o=Array.prototype.slice,c=0,u={keys:Object.keys||function(t){if("object"!=typeof t&&"function"!=typeof t||null===t)throw new TypeError("keys() called on a non-object");var n,e=[];for(n in t)t.hasOwnProperty(n)&&(e[e.length]=n);return e},uniqueId:function(t){var n=++c+"";return t?t+n:n},has:function(t,n){return i.call(t,n)},each:function(t,n,e){if(null!=t)if(r&&t.forEach===r)t.forEach(n,e);else if(t.length===+t.length)for(var i=0,o=t.length;i<o;i++)n.call(e,t[i],i,t);else for(var c in t)this.has(t,c)&&n.call(e,t[c],c,t)},once:function(t){var n,e=!1;return function(){return e||(e=!0,n=t.apply(this,arguments),t=null),n}}};e={on:function(t,n,e){return a(this,"on",t,[n,e])&&n?(this._events||(this._events={}),(this._events[t]||
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (30053)
                                        Category:dropped
                                        Size (bytes):30252
                                        Entropy (8bit):5.375757672630295
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B868D1EAE4EB6D3D1A79776F0F53DF72
                                        SHA1:BDAB7D5F94DA637AD3134D63C54BBBBC037EED18
                                        SHA-256:35590E10528DDFABA953058B85695AC98BD7CAA30D251F45CAF9B8CFA7EF6B0D
                                        SHA-512:0C7C07AE79EA9C2182B17BCF441C3E1D00E5842D0A91628FFB7C6A56B26F7E974FDC27A14D4B020590FEB471C7112A73855C4738B95D69D8F2307FC147B68F19
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.telemetry-recorder.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4043],{62247:function(e,t,r){r.r(t),r.d(t,{default:function(){return Z},registerTabLookup:function(){return Q}});var n={};r.r(n),r.d(n,{cleanUpTelemetryArr:function(){return A},getShouldUseSendBeaconForSave:function(){return k},isTelemetryFeatureEnabled:function(){return T},promiseToSwallowErrors:function(){return j},save:function(){return N},swallowErrors:function(){return x},telemetryRecorder:function(){return E}});var o=r(72398),i=(r(40590),r(27727),r(80115),r(17),r(15195),r(18665),r(59581),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(87136),r(6048),r(54989),r(44154),r(56639),r(2100),r(83725),r(35019),r(29838),r(51339),r(58379),r(14602),r(74692)),a=r.n(i),c=r(83973),u=r(23487),l=r(3574),f=r(28936),s=r(40010),p=r(46887);function d(e,t){var r=Object.keys(e);if(Object.getOwnPropertySymbols){va
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:JSON data
                                        Category:downloaded
                                        Size (bytes):25175
                                        Entropy (8bit):5.053386843782226
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:4983168CB4AD8E7D88D8F8B138E469CA
                                        SHA1:03B299A38A4503BD50F09DB084A1B7DAF24957C8
                                        SHA-256:07B12A4DCC9E7823160C498470FDB9C9291E29181624DF3C2A64699DB789025F
                                        SHA-512:DA3F5708236EAD922F962AF91228994A330B0FDA926BB9B892B38536055CB44FEF0CE9F2B1534D6540CB548614973BB8088064CA7E5E2108A8F9D878C5083D43
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://cdn.optimizely.com/datafiles/MUGKFLCdCtxUSgrSTyhbw.json
                                        Preview:{"accountId":"275532918","projectId":"28979720534","revision":"115","attributes":[{"id":"28960590398","key":"senderAccountId"},{"id":"28995200462","key":"account_id"},{"id":"29059960131","key":"ring"},{"id":"29732750086","key":"isCaptiveRecipient"},{"id":"29742800020","key":"language"},{"id":"29754640024","key":"isAccountless"},{"id":"29766230035","key":"recipientEmailDomain"},{"id":"29771920059","key":"environment"},{"id":"30161890713","key":"userLanguage"},{"id":"30233280179","key":"browserLanguage"},{"id":"30247090071","key":"isMobile"},{"id":"4739065589792768","key":"isNotary"},{"id":"5038366994464768","key":"isBranded"},{"id":"5361812727136256","key":"senderAccountPlanName"},{"id":"6039513536397312","key":"senderAccountDistributorCode"}],"audiences":[{"name":"signer_monetization","conditions":"[\"or\", {\"match\": \"exact\", \"name\": \"$opt_dummy_attribute\", \"type\": \"custom_attribute\", \"value\": \"$opt_dummy_value\"}]","id":"29771490115"},{"name":"en_us_desktop_only","condi
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Web Open Font Format, TrueType, length 13780, version 1.0
                                        Category:downloaded
                                        Size (bytes):13780
                                        Entropy (8bit):7.973002703865565
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:D2793531447C140874B62B7448EF7191
                                        SHA1:1CE36AA9C6445DACDFA8B597BD79A34514CC9F60
                                        SHA-256:2B1A1F78DF06385464750F48AED402C315164D51FD9475E8B5A47D897CF9C084
                                        SHA-512:33EDD561F46BFEE5D1A9AFA119F8EC6CAD9B9FD6B54FFD25B1862B5AFFFB1B82DB74D2A4AE11B7893D8261E0520EF5B5E5AF21E7D2D39D02BB849B9FDA268DDD
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/olive/17.20.0/fonts/olive-icons.woff
                                        Preview:wOFF......5......._.........................GSUB.......;...T .%zOS/2...D...A...V6>H.cmap...........P.<..glyf......(v..E.....head.......3...6..*.hhea...P.......$.?..hmtx...p...J...dU...loca.......4...4CYTHmaxp../........ ....name..0....0...:...Lpost..1@.........+@.x.c`d``.b0`.c`rq..a..I,.c.b`a...<2.1'3=.......i. f....&;.H.x.c`d~.8.....A.i.............X.....4........_..Q.....4#H.....>...x....r.W...@.(.A..s..s..A..%r.ND..g.E.s.6.|./.{....N.T.[.jfV.......[...S.wt..ok:..L..kk.......O.+...L*.......^n...eyU.w.C..G.>..V6u.l....+.x.{...V~..W..cj.1...c..%>...|..t.;=|...M.....1...3...a(..c8#.....].a,....&2.g...L.yf0.Y.f.s..|....|.F.u).X..V...a-.X..6...la+....v....a/......D3.8.....1.s...r...,.8...h.".....r....&.....r..<.!......o...<.).x....{^..?..._.....?..W..?Y.../.._..?....M.....R..[....4D5CeRT.U..{.........w(.5..+m.]Ki.........=My.....}Ny.T..<..)/.S@y.T..*<..7.....O..]xn(..7...%...T...|.N.IC..3.j......u.O$...M.=<..Gx^Q...^..F.........O8...u.?<......p....L@..t@
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (12839)
                                        Category:dropped
                                        Size (bytes):13052
                                        Entropy (8bit):5.287652716056971
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:8121EBC1ED98F1C422DB06BD07314F28
                                        SHA1:3EED7BFA7B27DF00C245B328AC1ED42DC7F6581E
                                        SHA-256:EE129C66EF904C9E672419CD355922936DED5DA313AAEC82F314777AF0E9809F
                                        SHA-512:2AFE96701A6D3B7A671F49693AFE2A72ACDE52B7F65B002DA0EB15BD38A3789E989B90E254F7D98E8E82A1458D2B450A2A0D8E8FAD74F336EE8191C6F6535DEF
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.search-box-enabled-checks.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4047],{3727:function(t,e,r){var n=r(47061).match(/firefox\/(\d+)/i);t.exports=!!n&&+n[1]},77413:function(t,e,r){var n=r(47061);t.exports=/MSIE|Trident/.test(n)},79965:function(t,e,r){var n=r(47061).match(/AppleWebKit\/(\d+)\./);t.exports=!!n&&+n[1]},35231:function(t,e,r){"use strict";var n=r(51605),o=r(30281),i=r(24601),a=r(92612),c=r(23493),u=r(24881),s=r(95362),l=r(92074),f=r(68039),h=r(92349),p=r(3727),v=r(77413),y=r(6845),d=r(79965),g=[],b=o(g.sort),m=o(g.push),w=l((function(){g.sort(void 0)})),O=l((function(){g.sort(null)})),j=h("sort"),E=!l((function(){if(y)return y<70;if(!(p&&p>3)){if(v)return!0;if(d)return d<603;var t,e,r,n,o="";for(t=65;t<76;t++){switch(e=String.fromCharCode(t),t){case 66:case 69:case 70:case 72:r=3;break;case 68:case 71:r=4;break;default:r=2}for(n=0;n<47;n++)g.push({k:e+n,v:r})}for(
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:PNG image data, 14 x 13, 8-bit/color RGB, non-interlaced
                                        Category:dropped
                                        Size (bytes):61
                                        Entropy (8bit):4.022997040570905
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:FCB9E378D81FEAC2DFFBB1088739741A
                                        SHA1:B417A8F682A313D9305A2B9A31A9FEC4B3911132
                                        SHA-256:0A9BC6D5C01B5A48382612A27CC5BF7160DA1FED3ECF4628B5C343C0FABA93C2
                                        SHA-512:73286E7915AD9BA6C84CBD74CFF667B588E61E775E7DA20B9E30EED5C0CA105379B27A0139D2BF3A72FD028DEBE616D31D79A3BE4676F3640693F5479E98475B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.PNG........IHDR................(....IDAT.....$.....IEND.B`.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (24600)
                                        Category:downloaded
                                        Size (bytes):24771
                                        Entropy (8bit):5.16649553919226
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:3A048EA7BE88ABF0FEC5899DF72EA291
                                        SHA1:9E55AD7A3831A792FD826A40CE75845737D9097D
                                        SHA-256:AE697CD440125DBC55C2C885FF02503330876535812CE1EF53918E5FE42D74D8
                                        SHA-512:B97D812BEE3386702A3A7EF1EE5CE992E47B5EC2B758508482088456680156A408FCC4D9D4A2AB7FC3B18EEF3D23FFF0BB2E16698AC323E063F4FDDF6E4A3B61
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.9028.js?cs=22872eaeb7dadb7137d1
                                        Preview:/*! For license information please see signing_iframeless_mobile.9028.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9028],{33617:function(e,t,r){r.d(t,{e:function(){return re}});var n=r(53811),s=r(34963),a=r(39653),i=r(56213),o=r(49859),u=r(44828),c=r.n(u),l=r(61240),h=r.n(l),d=r(50697),f=r.n(d),p=r(96319),v=r.n(p),y=r(11393),k=r.n(y),m={get:function(){return null},has:function(){return!1},forEach:function(){return""}},A=function e(t,r,n,s){(0,a.A)(this,e),(0,o.A)(this,"status",void 0),(0,o.A)(this,"description",void 0),(0,o.A)(this,"request",void 0),(0,o.A)(this,"error",void 0),(0,o.A)(this,"willRetry",void 0),(0,o.A)(this,"attempt",void 0),this.request=n,this.description=r,this.status=t,this.error=s},q=r(11922),g=r(49166),T=r(13101),b=r(35352),w=r(85569),R=r.n(w),x=(r(78624),r(56152),r(8628)),C=r.n(x),E=r(165),L=r.n(E),H=function(){function e(){(0,a.A)(this,e)}var t,r,n,o,u;return(0,i.A)(e,[{key:"get",value:(u=(0,s.A)(c().mark((
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):398830
                                        Entropy (8bit):5.723161832804715
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:DAAD01ADC359B47B49908A74ECD07F2D
                                        SHA1:BE29F6DC813A64F11D18E08CE79734E535DC8721
                                        SHA-256:56409FCCE2E54B4570CB4A69827D0000CC0530A67A41B911516A2D90C61F2F71
                                        SHA-512:E716C88D56DF5431DA387E8730DEE1A0E2FEEDC17137599A1DCF4373FE392EA57D1444FD1DBF0497BF7A01DD03F596EF393B70E51EC4B331D0B97E1062F400AD
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.2191.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2191,1976],{82715:function(e,t,r){"use strict";r.d(t,{pF:function(){return b},sf:function(){return L},_T:function(){return M},Xo:function(){return w},CK:function(){return H},xw:function(){return D},j0:function(){return O},sS:function(){return E}});var n=r(22204),o=r(71426),a=r.n(o),i=r(50697),s=r.n(i),c=r(59261),u=r.n(c),l=r(74707),_=r.n(l),f=r(11393),v=r.n(f),m=r(49763),d=r.n(m),p=r(25514),h="other";var A=r(38987),C=r(49166),E=function(e,t,r){var n=a()(t).call(t,(function(t){return void 0!==t[e]}));if(n){var o=n[e];if("string"==typeof o)return g(o,r);var i=T(e,n,r);if(i)return g(i,r)}return e},g=function(e,t){return t?s()(t).reduce((function(e,r){return e.replace(new RegExp("{{\\s*"+r+"\\s*}}","g"),t[r]+"")}),e):e},T=function(e,t,r){var o=t[e];if("object"===(0,n.A)(o)){var a,i=r?r.PLURAL_COUNT:void 0,s=null!==(a=t._LOCALE)&&void
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Web Open Font Format (Version 2), TrueType, length 29516, version 1.0
                                        Category:downloaded
                                        Size (bytes):29516
                                        Entropy (8bit):7.993944632054563
                                        Encrypted:true
                                        SSDEEP:
                                        MD5:5D66C3D97D4F69A2B3527E3997CBB66B
                                        SHA1:94EF4F31C1A1CD780A172EDFBF9E3DE61697EF5A
                                        SHA-256:1BF53B33743C5C45D6C944815F74CBF58B228806858FB6E3A0B86C1204F4BE06
                                        SHA-512:FEB229CF976DC037130CE7E7A6C0E32FA8BD0C63382B0FFAD82E4448767B88F8C17C431055BF834AF6A5E92E2D34A6EC7432AFDABCEA9FAE867517613AFD3621
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Regular.woff2
                                        Preview:wOF2......sL......b...r.........................?FFTM..6...l..t.`..V.*..e.....\..V.....6.$..(. ..Z..3..p[sDq....2.r...n....%2...z..q.Te-;@..%..I......;......{...Rk...@...HG.)G...8.U.x2.q.qZ.../....6".tQw..YVg9V.k.b.)...j.x..D4L_(.Y0.....k(.w...#U.. .;F.T8..j.v.x..p.:$-[o-.W.~~...{.u..3.*..)..J.<w..M.V.(a.......;..7g.,X.fu...............i.]..@..*Y.[x......!....lG....a"...Nd../.k.V...Q...(.BPe.S.E...C$.........W....L.2.%.2.+O..D..TV...h"T.h/N!....,.gaX.....%...x..r.,.Zz....-...f^.T..sZ..e.Ed.8N....%:./...B...m3......E@A...#.....#.}.~.f,2..3.o_..wX.U.uRI...`i...../D.../~.3.......W..#*....U2.r.2.u.B.{.]r"rP{M....V.........LhNU=..{L.......'.U...].0.`...$...4Y..RN...E/........i..<@Y.....:...X.-...R.]..@z...(....p...Y.....").N=...!....,..]D....Z.......o........N.y......g.t..1f#.........o.Y;.y..{...G.......K......>/.,.d.....NU.>7v..KQ....J..l..{w.FH..&..!..?4.q...1wY..7..RJ):..a....<..*..G.M.m..k......."Vhq..xsk...M|...o..d.....w......F.(..(..(..(..(..(..(::
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:PNG image data, 80 x 80, 8-bit/color RGBA, non-interlaced
                                        Category:dropped
                                        Size (bytes):996
                                        Entropy (8bit):7.667690083187348
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F4B52A4EB3D0CDD585A73EADE7CC734A
                                        SHA1:00BD17DB2EA7F845910C713CBFF3A6719D59A1EC
                                        SHA-256:94BACE793EA5F351B65F5B2948BEB949B01FB811274A3F8EB8D52B9719A149BB
                                        SHA-512:763AF2EADA1D18687D5A4B2BD8323A10D93CC22AE4E78139446D7DDDB617631CE55B695F24D07DF5FAD14B48F0674E56BD031B4DDC50AFCE013F320CF6447EAC
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.PNG........IHDR...P...P............tEXtSoftware.Adobe ImageReadyq.e<....IDATx..Kr.@...S2...l...,|.T..@|.N.8.."....... +....T..B..Dw..Z@..W.=.M.{&..?.}.>..vnT..0h.._>..{.w.LR.}.<.tri5l3.U..D.*@.....Jjq....=4....m?|^,..m.>{s.x.\.....j.z.........l.`...8L1..Z.t..@7......<s;.1...N.<:zg>|....s.vC].....^...P..%..B._. r.....lU.`..7U.e.B..+`.+.Y.....;.Mr.X.aW....lF/....Q..%p.f.@1.e.@...r.>.M.>...K.U...R{..P..T{.&....z".....T.*......RZ....Xd...(>@.>..\......@..x.-...l3............M....$r!l.v%.........a....&.../Hr.lU..!...M.m...N&.....bV.......Y...ww..!...}<.. tsNV....."..3....@o..s....;.....c...@..nG. .v4...:.KJ.o>.JX$..r..:.....M.... .,....u.1.."`r.FH..n^....q..Z.<.tB...).6$......f..6..D'op...G...W...v*y.t...u?]...,W..."...T.dV....%G...p./E..ie..6..i.!.4.>......^E...I.:......U..2.al.#.@x..VU..1IY....l.E.......l..%....v!l..y[..../.2%..z[...Z..}g.......%..*Q,......7.B...B%....6.`\&o....%e.ML..[%....2.}..J%!..bH-C..(..2......zb2..3..+..X.(K.......IEND.B`.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65447)
                                        Category:dropped
                                        Size (bytes):136176
                                        Entropy (8bit):5.178395204770072
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B996140AA55B4DCEFBE20B0EC96447B3
                                        SHA1:5C715DD38582604148904BADAF0342982195F698
                                        SHA-256:54C6DB3FC48C1F54FAD197E91744DA04EB8FB584FBDB581A5C1E92CD6E72E12D
                                        SHA-512:529A34EEEE2EB0765F549CBD667238928DA1C57CC48B41B5674CABA9098E44E7706B0B7F7B3FB9A22C69CD5ACF29EB0546DCAC4515FA2E298C72A7CD5B034561
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.olive.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1540],{43466:function(e){e.exports=function(e){function t(i){if(n[i])return n[i].exports;var o=n[i]={exports:{},id:i,loaded:!1};return e[i].call(o.exports,o,o.exports,t),o.loaded=!0,o.exports}var n={};return t.m=e,t.c=n,t.p="/",t(0)}([function(e,t,n){"use strict";n(1),n(2),n(3);var i=n(76);i.keys().forEach((function(e){i(e)}))},function(e,t,n){"use strict";!function(e,t){e.config={closePopoverOnEsc:!0,closePopoverOnClickAnywhere:!0,debug:!1,isAutoInitEnabled:!0},e.version="17.20.0",e.KEYS={tab:9,enter:13,esc:27,left:37,up:38,right:39,down:40},e.l10n={close:"Close",characterLimit:"{{REMAINING}} (maximum {{MAX}} characters)"},e.init=function(e){var t=[],n={add:function(e){return t.push(e),n},run:function(){var e;for(e=0;e<t.length;e++)t[e]();return n},afterLoad:function(){e.config.isAutoInitEnabled&&e.init.run(),e.util.polyfillFle
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65446)
                                        Category:dropped
                                        Size (bytes):176387
                                        Entropy (8bit):5.40101823577652
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:0DECA233F0EDA909CED3F721B00C5A9A
                                        SHA1:8BFCC7BBAB16A931CC54C238266069BEEE4918F6
                                        SHA-256:262E2E935A27B953730F7A4D8F153390F2E49F1A98AD02F91D379DBB1F7C64BA
                                        SHA-512:77067AAC31B312C775B6D450197F05955C5970099627B5563ACAA8DAE58D07C19797705EE204449F1D68231987EFA8DBD292517906FA353A1D3B9AADBDE9AA21
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.1358.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1358],{34861:function(e,t,r){"use strict";r.d(t,{$oX:function(){return h},EZk:function(){return p},EcY:function(){return y},EyF:function(){return v},Gpd:function(){return b},MRs:function(){return m},Md_:function(){return g},P6x:function(){return u},RJC:function(){return d},T1N:function(){return o},Tmo:function(){return C},W5p:function(){return a},Yro:function(){return i},Zkh:function(){return c},atX:function(){return l},ekt:function(){return f},f3R:function(){return S},ho7:function(){return s},iKt:function(){return n},j4I:function(){return x}});const n={avatarBgColor1:"#e2e0fc",avatarBgColor1Alt:"#eeddfc",avatarBgColor2:"#90f7c1",avatarBgColor2Alt:"#cdfce0",avatarBgColor3:"#fbdbdf",avatarBgColor3Alt:"#fcebed",avatarBgColor4:"#fee7a7",avatarBgColor4Alt:"#fef0cc",avatarBgColor5:"#e6e1de",avatarBgColor5Alt:"#f4f0ee",avatarBgColorDef
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (21951)
                                        Category:dropped
                                        Size (bytes):22134
                                        Entropy (8bit):5.443490893044838
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:1EFE457D1C83CF48B4AF8707A56585CE
                                        SHA1:E59F40262AE228F178D414DAA9D357A1689EDA71
                                        SHA-256:CBD9D7FA135C1929B8B2B3C5E98239968724D26E5DBA76FC17588B0AE5D4ED09
                                        SHA-512:145C726306ECD91B8B8A95A01764B5845E908981F21AA999241D680A02E337EE4D658D7849C35AE6188F7460E06B17059194CCC88EF397E26714F2DC02900E5A
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.optimizely.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4279],{90345:function(t,e,r){var n=r(51605),i=r(23172).values;n({target:"Object",stat:!0},{values:function(t){return i(t)}})},25949:function(t,e,r){"use strict";var n=r(51605),i=r(86172).every;n({target:"AsyncIterator",proto:!0,real:!0},{every:function(t){return i(this,t)}})},60178:function(t,e,r){"use strict";var n=r(51605),i=r(52929),o=r(24601),a=r(73938),s=r(60938);n({target:"Iterator",proto:!0,real:!0},{every:function(t){a(this),o(t);var e=s(this),r=0;return!i(e,(function(e,n){if(!t(e,r++))return n()}),{IS_RECORD:!0,INTERRUPTED:!0}).stopped}})},91277:function(t,e,r){"use strict";r.r(e),r.d(e,{default:function(){return b}}),r(40590),r(27727),r(17),r(15195),r(18665),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(87136),r(6048),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602);var n=r(41751),i=r(31096)
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with no line terminators
                                        Category:dropped
                                        Size (bytes):23
                                        Entropy (8bit):2.9140163035068447
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:84100B349395F367D41A8B44D0020355
                                        SHA1:676BB250F143F6C863C58C79B4CA1ABF7312DF00
                                        SHA-256:5EAE3F71BE133111621E17FEE9DC04578D885A74EAF4D40AAC9634B7DB4B5459
                                        SHA-512:ED8456F12F188F50E15D845B240AA62195709005505A59CB5A6033C139D902DF4D504873B80E7156D79358AC901A779DBD3CA6C0010BF16D5FE18C77385081CE
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:<success>true</success>
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (16859)
                                        Category:downloaded
                                        Size (bytes):17031
                                        Entropy (8bit):5.306521448060462
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:DEC04B57977555D02A949E88B04CA086
                                        SHA1:68CBDFCC8A9B00B93B4681986B88941C229F4FD9
                                        SHA-256:1E78776195DAC7AF74183205A1916FD78F21F150FFCF62F8D9AB0491D8DD6F41
                                        SHA-512:74C9499FD8D11C7BF856B5ADD280601298A10482A9D25537A1865FDC6118ED7663B3ECEABC879BE566543FAEFF60C81092C446949F8A055D0AD92C26BA326454
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.2088.js?cs=2de7373c65c21923c5a6
                                        Preview:/*! For license information please see signing_iframeless_mobile.2088.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2088],{52088:function(e,n,a){a.d(n,{T:function(){return t}});var r=a(96459),s=a(25514);function t(e,n){try{var a=(0,s.FJ)(),i=(0,r.T)(e,n);return(0,s.QK)(t.name,a),i}catch(n){return(0,s.UD)(t.name,n),e}}},96459:function(e,n,a){a.d(n,{T:function(){return x},k:function(){return w}});var r,s=a(11393),t=a.n(s),i=a(22204),l=a(71426),u=a.n(l),o=a(50697),d=a.n(o),c=["ar","bg_bg","cs_cz","da_dk","de_de","el_gr","en_au","en_gb","en_us","es_es","es_mx","et_ee","fa_ir","fi_fi","fr_ca","fr_fr","he_il","hi_in","hr_hr","hu_hu","hy_am","id_id","it_it","ja_jp","ko_kr","lt_lt","lv_lv","ms_my","nb_no","nl_nl","pl_pl","pt_br","pt_pt","ro_ro","ru_ru","sk_sk","sl_si","sr","sv_se","th_th","tr_tr","uk_ua","vi_vn","zh_cn","zh_tw","en_ca","en_ie","en_ph","en_in","en_za","en_nz","es_co","es_pr","fr_be","nl_be","es_ar","es_cr","es_cl","es_pe",
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65443)
                                        Category:downloaded
                                        Size (bytes):243051
                                        Entropy (8bit):5.380305811022724
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:04EC0CEE75C6EE3F3368CC73A67CBE19
                                        SHA1:FFB5D6691D590B36EA3478D4B2AA260235CE5B3F
                                        SHA-256:C5DFF262848DAE4313411419D4FEE6C0A9505E5AADEE1FE0B96DC5C9AB26FA31
                                        SHA-512:B060C415E81ECC3281369A23978FA068AC5EEAC10081A284F0C5B98614205EE67B3D759D29F4BF802C9F87C9664ABE462D4E6F418EF96AAC708CA4A8C9B8CC50
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.react-app.js?cs=d7e87b5f57a6429aa2d3
                                        Preview:/*! For license information please see signing_iframeless_mobile.react-app.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4210],{15324:function(e,t,r){var n=r(93633);e.exports=(n.default||n).template({compiler:[8,">= 4.3.0"],main:function(e,t,r,n,o){var i,a=e.lambda,l=e.escapeExpression,s=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return'<div class="center-content"><div class="text-wrap"><h3>'+l(a(null!=(i=null!=t?s(t,"resources"):t)?s(i,"slideUpTitle"):i,t))+"</h3> <p>"+(null!=(i=a(null!=(i=null!=t?s(t,"resources"):t)?s(i,"slideUpText"):i,t))?i:"")+'</p></div><button type="button" class="finish-button btn btn-main btn-lg" data-action="action-bar-finish" data-qa="slide-up-bar-finish-button" id="slide-up-bar-finish-button" aria-label="Finish" data-allow-unprompted-exit disabled="disabled"> '+l(a(null!=(i=null!=t?s(t,"resources"):t)?s(i,"slideUpButton"):i,t))+" </button></div>"},useData:!0})},69153:
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Web Open Font Format (Version 2), TrueType, length 31468, version 1.0
                                        Category:downloaded
                                        Size (bytes):31468
                                        Entropy (8bit):7.993603561926699
                                        Encrypted:true
                                        SSDEEP:
                                        MD5:B70FB054C362CBA0FE0E6233920555E4
                                        SHA1:C1C2CDF248E7042B196EE18512C1DE9418ED61F2
                                        SHA-256:C2DD95A4FD1D3569F219994B8BA845A5AE065733B80619B87157FA7BA97CCB74
                                        SHA-512:FBB77AC8709799B21EE698C88914A30E449BC37EAA2042A76D450A1FF27A8C9AB48376B539E8DBB67C9BE04DC18379FBCB4A4BCFF388BFFAB689AEFE1DAB570A
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Bold.woff2
                                        Preview:wOF2......z.......h...z.........................?FFTM..6...B..t.`..V.*..e.....L........6.$..(. .....3..M[.J....{.....t..?.:..O.%x....&c.e.(c.E....q`.}.8.......$..3. m....z......;\.g..<X'."..X..+3<..5sbc.'e.c...uj..X.. .r..)..."(M6I.U...l.$....pWI.TI.T{..:..7..?L.jL..^...qh1..];.........fE.[...-...]/jX)._X.9....J.d...Vm....1.v..i..[.v..m..TQEG."...."Dd..]60......".{.f\.B....3....,..;u:...E`..:./aZ....$_......Y..E...^.A......p..E....@u...$-a...X....PLP!.M.d..=.1..6..I{...(.......K........(f...'<.,..$2.D..I.....Q.r`.-.`l..Y.n...2.....B{FoF.. *QJ..J..".. !6&....)N]..m.m.OW.........4.Z.0.!-s...GbD......B#1..C.....e).E-.{' ~W!...TH.F(..;X..S...g.cH.w...$...5...GFA..Y..P./*...c:.w...k:......D.O.T.u.t...?8.Y....$=C.F......P.Ue....=\....+T..g...6A,..........Ey^ ..p...N...c.C...................qhdV.J....a...d.6.MyxA........KY...Y..F.@.t.:...1.6...;.C.K.4(..{.i..}7.5KD....q,;i...(YF.$>....wZ.S.EQ.EQ.EQ.EQ.EQ.E...t:.N...t:..i.T;vO........;....tlE0....
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (46070)
                                        Category:dropped
                                        Size (bytes):46239
                                        Entropy (8bit):5.323264589769793
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:391C1F9FA31B529CBEA46FFC79BCE553
                                        SHA1:18DE63D43B77588ECCD496E4A7D7A003FDFCC3C9
                                        SHA-256:4219E346960EE73C4C7A706FB1761FD14C9E2DACDCCF8D4ED3F2B0F47DD00503
                                        SHA-512:E9EA316F3CE13D3B097015917BD5DAA474D95507FDE9F85CA58D9F9E8911B7AE0C6F37001BCFEE1AD5A9AA1BE3E219C2B588CD9AD4AB23792BF89FC1451B529C
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.661.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[661],{54707:function(t,e,r){r.d(e,{C:function(){return _},R:function(){return P}}),r(40590),r(15195),r(18665),r(14913),r(87136),r(6048),r(14602);var n=r(96540),o=r(19069),a=r(22434),i=r(90993),c=(r(80115),r(47746),r(7918),r(79073),r(43148),r(40173),r(68329),r(56639),r(83725),r(29838),r(79404),r(39982),r(57399),r(86970),r(11048),r(2236),r(71650),r(26884),r(58710),r(63617),r(83019),r(98657),r(53380),r(58379),r(74692)),l=r.n(c),u=r(7456),s=r(63868),h=r(3574),f=r(60862),p=r(51552),d=r(5984),y=r(79361),v=r(75550);function m(t,e){return function(t){if(Array.isArray(t))return t}(t)||function(t,e){var r=null==t?null:"undefined"!=typeof Symbol&&t[Symbol.iterator]||t["@@iterator"];if(null!=r){var n,o,a,i,c=[],l=!0,u=!1;try{if(a=(r=r.call(t)).next,0===e){if(Object(r)!==r)return;l=!1}else for(;!(l=(n=a.call(r)).done)&&(c.push(n.v
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
                                        Category:dropped
                                        Size (bytes):326
                                        Entropy (8bit):6.860674885804344
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:AFE00DB89CE086B91A541C227EDBF136
                                        SHA1:961B2EE6FB39C4D515BDC49EC1BA688B0916F104
                                        SHA-256:E11827C678AF8519E702F364E525AC34509CAD49F8D839677E089949EDDA060E
                                        SHA-512:85F265A917E83BA92FEDB2152FBFADA273FCFF2937A85B080641307FD2E61D0138493162883E016796C9F68062A01D79DA60F546EFC2CB1FB4078760EB3451F0
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.PNG........IHDR................a....pHYs.................sRGB.........gAMA......a.....IDATx.....0...Uq...UP.|..v.K.>.O`.$.[.B....'pvJ}..B..P.h...I.!.rs.%.$....O"r!.I.m....J..........U.. ..F[.....j4<...6.b6.T!x..Y..]..;._.,..........K.F..b.~.$..M.......M....,...i....*.z...x8."C.r.{.2~.~........x...B.G.6.....IEND.B`.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):77442
                                        Entropy (8bit):5.338148878225273
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:AFEB5ECA8D00802FEABCACB1A960AC1E
                                        SHA1:2739EB27E219F5BC80C82E1BFC1A434AA494D0D7
                                        SHA-256:E451EEAE12302410673586871F0E545FB03379726222B64C3DF622D2320B6D1E
                                        SHA-512:9DD6691A620D1692C6B24142BECEEDE3222C4181C2B9F55AF8EF72C9538384D00CB6550862CFC9468BED4452FEA25F39039834404C4BDA76567A327569F5832B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.5140.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5140],{57279:function(t,e,n){"use strict";var r=n(5946);Object.defineProperty(e,"__esModule",{value:!0}),e.default=void 0;var o=r(n(61240)),a=r(n(20271)),i=r(n(43563)),u=r(n(70533)),c=function(){function t(){(0,a.default)(this,t),(0,u.default)(this,"queue",new Array),(0,u.default)(this,"workingOnPromise",!1)}return(0,i.default)(t,[{key:"enqueue",value:function(t){var e=this;return new o.default((function(n,r){e.queue.push({worker:t,resolve:n,reject:r}),e.dequeue()}))}},{key:"dequeue",value:function(){var t=this;if(this.workingOnPromise)return!1;var e=this.queue.shift();if(!e)return!1;try{this.workingOnPromise=!0,e.worker().then((function(n){t.workingOnPromise=!1,e.resolve(n),t.dequeue()})).catch((function(n){t.workingOnPromise=!1,e.reject(n),t.dequeue()}))}catch(t){this.workingOnPromise=!1,e.reject(t),this.dequeue()}return!0}}]),
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text
                                        Category:downloaded
                                        Size (bytes):1417
                                        Entropy (8bit):5.166978029275836
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:3B18057061B616E98854B03B255ACDC4
                                        SHA1:A4A53B6A2BB6184FBD284A2D1B22107B6C174CC0
                                        SHA-256:6BE625B57920DEE4B33D5023DCE7A58AA3BC3F58C16D0CA4ECDD52062B5BBD1D
                                        SHA-512:61A6DDDCB40505EA207B4AD9FB996A2487EC1F0B9CB9A261BC168EB2B76EF821807BD95DE3DD357EE4DA386A0F839E2DAA5A661F1A32F18DB525EB173EEC330F
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://pmii-raise.com/favicon.ico
                                        Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">.<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"><head>. <title>404 &mdash; Not Found</title>. <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/>. <meta name="description" content="Sorry, page not found"/>. <style type="text/css">. body {font-size:14px; color:#777777; font-family:arial; text-align:center;}. h1 {font-size:180px; color:#99A7AF; margin: 70px 0 0 0;}. h2 {color: #DE6C5D; font-family: arial; font-size: 20px; font-weight: bold; letter-spacing: -1px; margin: -3px 0 39px;}. p {width:320px; text-align:center; margin-left:auto;margin-right:auto; margin-top: 30px }. div {width:320px; text-align:center; margin-left:auto;margin-right:auto;}. a:link {color: #34536A;}. a:visited {color: #34536A;}. a:active {color: #34536A;}. a:hover {color: #34536A;}. </style>.</h
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (17329)
                                        Category:downloaded
                                        Size (bytes):17500
                                        Entropy (8bit):5.316856666332215
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:BC03940CFAB2484BAC8A2D41FE9E4C53
                                        SHA1:7E050C5FA27B3792A117745CBB1C63D42FF117EF
                                        SHA-256:0E1D410DD2C0ABB80B9FA543A104A97D927A411D3D8A81FE614BD7D6ECEF632D
                                        SHA-512:D7099E1D5920D25683208C2DFF6122D4116D69E6141F0A6F7D5B0C1F0D1DF1DE69E139952A0BD809630527A93ED69E4310BF836E4D2850E3D7E4622E899C515C
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.5524.js?cs=a875b4bfb03b24681962
                                        Preview:/*! For license information please see signing_iframeless_mobile.5524.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5524],{55524:function(e,t,o){o.d(t,{P:function(){return ue}});var n=o(97032),r=o(27026),a=o(48079),i=o.n(a),l=o(96540),d=o(5556),s=o.n(d),c=o(59579),p=o(38008),u=o(26207),f=o(51544),b=o(90812),v=o(74111),x=o(92742),m=o(31824),h=o(10330),w=o(24914),g=o(59793),A=o(19747),y=o(90508),C=o(45603),k=(0,l.createContext)({dark:!1,imagePosition:void 0});function I(){return(0,l.useContext)(k)}var E=o(57838),B=o(94801),S=o(64056),O=o(36689),F=o(11393),R=o.n(F),W=o(68150),q="8px",j="7px";function T(e){return"small"===e?"320px":"medium"===e?"384px":"large"===e?"480px":"xlarge"===e?"640px":void 0}var P={base:()=>({default:{popover:{maxWidth:"100%",zIndex:O.A.Callout},wrap:{color:S.A.black,display:"block",position:"relative"},innerWrap:{minHeight:"100%"},closeButton:{position:"absolute",zIndex:O.A.aboveBaseLevel}},initialFocus:{outl
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:GIF image data, version 89a, 301 x 301
                                        Category:downloaded
                                        Size (bytes):20704
                                        Entropy (8bit):7.941790290297929
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:C75C6FF4E73A4D8D4021272DB2A3131B
                                        SHA1:5DE1606F0C93CDB574CF9C3C55099252B824A85A
                                        SHA-256:E055DAEFBDC940B6664C36CCCB2AE46E7EECA006D03A2C35CAB91904DFC498D5
                                        SHA-512:91AC25602E8AEA1D296A0EB3B5B3E1A59FC122C32666D78FEF60AC004DA0693CEFF7A98A3C116057465C14C89A285009BFD9C80C7D8198BC6D3241F82A7BC6D7
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://ca.docusign.net/Signing/image.aspx?i=logo&l=77052f00-ede1-4739-b81b-267b4409c5cd
                                        Preview:GIF89a-.-.........3..f..........+..+3.+f.+..+..+..U..U3.Uf.U..U..U......3..f..............3..f..............3..f.............3..f.........3..3.33.f3..3..3..3+.3+33+f3+.3+.3+.3U.3U33Uf3U.3U.3U.3..3.33.f3..3..3..3..3.33.f3..3..3..3..3.33.f3.3..3..3..3.33.f3..3..3..f..f.3f.ff..f..f..f+.f+3f+ff+.f+.f+.fU.fU3fUffU.fU.fU.f..f.3f.ff..f..f..f..f.3f.ff..f..f..f..f.3f.ff.f..f..f..f.3f.ff..f..f.......3..f.........+..+3.+f.+..+.+..U..U3.Uf.U..U.U......3..f.............3..f.............3..f............3..f.............3..f..........+..+3.+f.+..+..+..U..U3.Uf.U..U..U....3.f.........3.f...........3..f.............3..f..............3..f..........+..+3.+f.+..+..+..U..U3.Uf.U..U..U......3..f..............3..f..............3..f.............3..f.....................!.......,....-.-........H......*\....c..C..L..)....a......1 .\...0c.I..4..y.....E.AY...H.*M.C.Ee@.J..S.1.).j...W.b2A.J..Ye..|]..[.a..K.,Z.o...4l............8....#Kn.F....*.;..g.7tf.M.(...S.v.#S..
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with CRLF, LF line terminators
                                        Category:downloaded
                                        Size (bytes):1249
                                        Entropy (8bit):5.242453121762845
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:F58515DFE987F7E027C8A71BBC884621
                                        SHA1:BEC6AEBF5940EA88FBBFF5748D539453D49FA284
                                        SHA-256:679E7E62B81267C93D0778083AE0FD0EFE24172FF0AC581835B54165B3D9ED43
                                        SHA-512:F085346A38318F7935D76909DB0367862924CC9B0D96256F7FF4E8999C041E610BBCDE8CA56C92673BDE0991C85E9C9D9B6726ABD91D0C3177462C80D4A99140
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://ibssaecuritye.za.com/favicon.ico
                                        Preview:<!DOCTYPE html>.<html style="height:100%">.<head>.<meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">.<title> 404 Not Found..</title><style>@media (prefers-color-scheme:dark){body{background-color:#000!important}}</style></head>.<body style="color: #444; margin:0;font: normal 14px/20px Arial, Helvetica, sans-serif; height:100%; background-color: #fff;">.<div style="height:auto; min-height:100%; "> <div style="text-align: center; width:800px; margin-left: -400px; position:absolute; top: 30%; left:50%;">. <h1 style="margin:0; font-size:150px; line-height:150px; font-weight:bold;">404</h1>.<h2 style="margin-top:20px;font-size: 30px;">Not Found..</h2>.<p>The resource requested could not be found on this server!</p>.</div></div><div style="color:#f0f0f0; font-size:12px;margin:auto;padding:0px 30px 0px 30px;position:relative;clear:both;height:100px;margin-top:-101px;background-color:#474747;border-top: 1px solid rgba(0,0,0,0.15);box-shadow: 0 1px
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
                                        Category:dropped
                                        Size (bytes):61
                                        Entropy (8bit):3.990210155325004
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:9246CCA8FC3C00F50035F28E9F6B7F7D
                                        SHA1:3AA538440F70873B574F40CD793060F53EC17A5D
                                        SHA-256:C07D7D29E3C20FA6CA4C5D20663688D52BAD13E129AD82CE06B80EB187D9DC84
                                        SHA-512:A2098304D541DF4C71CDE98E4C4A8FB1746D7EB9677CEBA4B19FF522EFDD981E484224479FD882809196B854DBC5B129962DBA76198D34AAECF7318BD3736C6B
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:.PNG........IHDR...............s....IDAT.....$.....IEND.B`.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (9377)
                                        Category:dropped
                                        Size (bytes):9548
                                        Entropy (8bit):5.249913681512712
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B37450C5A66EEE84E294D821A6A02A64
                                        SHA1:3BF70E88ADEE39121B6237EE5D3BE9021565BB71
                                        SHA-256:30092DA12ACD136AE59B9DAA166475DAEB91A6C1085CB2A78EB70793E9F5C5C1
                                        SHA-512:A9E9F7C98526C532A1728C2055A3F1F6D23E473E13DBD556B72B0FE423CD8782782A372C41D4E516C1609BB32DC91490F84E91A0A5CA286011F3531F03D4C007
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.9904.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9904],{79904:function(t,e,i){i.d(e,{A:function(){return u}});var n=i(13861),a=i(8784),s=i(16297),r=function(t){this._make(t)};n.A.extend(r.prototype,{_make:function(t){this._data=n.A.cloneDeep(t)},id:function(){return this._data.documentId},name:function(){return this._data.name},number:function(){return this._data.order},numberOfPages:function(t,e){var i=this._data.pages;return arguments.length&&t!==i&&(this._data.pages=t,s.A.send("document:change:numberOfPages",n.A.extend({},{id:this.id(),numberOfPages:this.numberOfPages()},e))),this._data.pages},displayType:function(){return this._data.displayType||""},includeInDownload:function(){return this._data.includeInDownload},thumbnailsCollapsed:function(t){"boolean"!=typeof this._data.thumbnailsCollapsed&&(this._data.thumbnailsCollapsed=!1);var e=this._data.thumbnailsColl
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:downloaded
                                        Size (bytes):126842
                                        Entropy (8bit):5.267722876468899
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:5BDABCD6C45CAAD8B5855528AEC7B1DF
                                        SHA1:62BCF113A643A35D9A4FA5997D6926F4E6AB0499
                                        SHA-256:201685703E0D8F7BA3994A340AC693CF11FF4885BCDB0F6D225EE6B3990193CC
                                        SHA-512:E8C25494A3F7A72197D9A4F1FEF3010B01FED302ABF797044EC2400A7F7B41474FEB2D890EC95DBDCC810B59C142629A49D430D33F75916D9A646F3DD25D02D2
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.6693.js?cs=9d29316d332cafa8097a
                                        Preview:/*! For license information please see signing_iframeless_mobile.6693.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6693],{23172:function(e,t,n){var r=n(65077),l=n(30281),a=n(91641),o=n(5476),u=l(n(9304).f),i=l([].push),s=function(e){return function(t){for(var n,l=o(t),s=a(l),c=s.length,f=0,d=[];c>f;)n=s[f++],r&&!u(l,n)||i(d,e?[n,l[n]]:l[n]);return d}};e.exports={entries:s(!0),values:s(!1)}},84095:function(e,t,n){var r=n(51605),l=n(23172).entries;r({target:"Object",stat:!0},{entries:function(e){return l(e)}})},4146:function(e,t,n){"use strict";var r=n(73404),l={childContextTypes:!0,contextType:!0,contextTypes:!0,defaultProps:!0,displayName:!0,getDefaultProps:!0,getDerivedStateFromError:!0,getDerivedStateFromProps:!0,mixins:!0,propTypes:!0,type:!0},a={name:!0,length:!0,prototype:!0,caller:!0,callee:!0,arguments:!0,arity:!0},o={$$typeof:!0,compare:!0,defaultProps:!0,displayName:!0,propTypes:!0,type:!0},u={};function i(e){return r.isMemo(e)?o:u[e
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (631), with no line terminators
                                        Category:dropped
                                        Size (bytes):631
                                        Entropy (8bit):5.177395112825421
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:6DA846E23F84525E7557C426E1CA2116
                                        SHA1:0EB0E90863F8989D448D355CD8EE7FB352B70873
                                        SHA-256:6E1F92532B890C7AA5B1528EA8D724733CFF181B8EB8CC178C6DEF587D4ADA97
                                        SHA-512:E4624A7AB552A08DED2B8F84647B478C5AF7C51A6ED90848634BA414BB921120C606FAE391AE1129BBE39D3ACCF180668F1C3F87EF1B2D4668FAC167802D3165
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:(function(){var u=this;!function(n,t,i,f,r,e,o){if("function"==typeof define&&define.amd)return define(o);f&&f[r]?f[r]=o(n,0,!0,f,r,e):u[n]=o(n,0,!0,f,r,e)}("DS_Arya",0,0,u.module,"exports","length",function(t,i,n,f,r,e,o){"use strict";var u={},c=(s(function(){}),s({})),a=s("");function d(n){throw t+"-"+n}function s(n){var t=typeof n;return function(n){return typeof n==t}}function h(n){for(var t in n)u[t]=n[t]}return{i:function(n){i++?d(1):n!==o&&c(n)&&!n[e]?h(n):d(11)},g:function(n,t){return n&&a(n)?t&&t(u[n])||u[n]||!1:t&&t(u)||u||!1}}})}).call(this);;DS_Arya.i({"DS_A":"15d76e9b-8400-4f7f-8e45-d281361b9879","DS_A_C":""});
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (17991)
                                        Category:dropped
                                        Size (bytes):18186
                                        Entropy (8bit):5.383574808639078
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:CC9FAD70B3E6EA5EDC280067CBE72350
                                        SHA1:DC1EFD84E1979C7DCB06E85A8B0F3A8EDC80DFED
                                        SHA-256:6219BFAFB63C581C22BB404DC71DC2A2AC5AF2FED6DF12B488CDD33626ACF5A0
                                        SHA-512:4CCBC7B122069D3EC7B53FD332FFEEBA255BFA369F5761A7D4A368670954A9B845A68B8A81FF5515EC7B0DDD6EFDBD75DE5D9D287DFC1BB1DF6F48F7348DD299
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.ai-q-and-a-entry.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6202],{3727:function(e,t,r){var n=r(47061).match(/firefox\/(\d+)/i);e.exports=!!n&&+n[1]},77413:function(e,t,r){var n=r(47061);e.exports=/MSIE|Trident/.test(n)},79965:function(e,t,r){var n=r(47061).match(/AppleWebKit\/(\d+)\./);e.exports=!!n&&+n[1]},35231:function(e,t,r){"use strict";var n=r(51605),o=r(30281),i=r(24601),a=r(92612),u=r(23493),c=r(24881),f=r(95362),l=r(92074),s=r(68039),p=r(92349),h=r(3727),v=r(77413),d=r(6845),y=r(79965),g=[],m=o(g.sort),b=o(g.push),w=l((function(){g.sort(void 0)})),O=l((function(){g.sort(null)})),x=p("sort"),k=!l((function(){if(d)return d<70;if(!(h&&h>3)){if(v)return!0;if(y)return y<603;var e,t,r,n,o="";for(e=65;e<76;e++){switch(t=String.fromCharCode(e),e){case 66:case 69:case 70:case 72:r=3;break;case 68:case 71:r=4;break;default:r=2}for(n=0;n<47;n++)g.push({k:t+n,v:r})}for(g.sort((f
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (30984)
                                        Category:downloaded
                                        Size (bytes):31159
                                        Entropy (8bit):5.242540707783587
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:48BC933608F733A9283F2218C73A941F
                                        SHA1:E04E625C70A5E8505B77A51D82D9A73AFA9F3547
                                        SHA-256:FCBC395A3D24699D9229846A30C9FE245D77A7AFDBC8386838A03A837C6672AA
                                        SHA-512:DED1BDD62FAAD01AF0B6F05A28A8D8721080B862EFDD5866EBDB4672A21A8EE15D3965B523C691784B7EF8817296707D5A3217F7B8CE713B212520EE9170329B
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.9788.js?cs=f79a378751a74981e5f2
                                        Preview:/*! For license information please see signing_iframeless_mobile.9788.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9788],{44903:function(e,t,n){var i,o;"undefined"!=typeof self&&self,i=function(){"function"!=typeof Promise&&function(t){function n(e,t){return function(){e.apply(t,arguments)}}function i(e){if("object"!=typeof this)throw new TypeError("Promises must be constructed via new");if("function"!=typeof e)throw new TypeError("not a function");this._state=null,this._value=null,this._deferreds=[],c(e,n(r,this),n(a,this))}function o(e){var t=this;return null===this._state?void this._deferreds.push(e):void p((function(){var n=t._state?e.onFulfilled:e.onRejected;if(null!==n){var i;try{i=n(t._value)}catch(t){return void e.reject(t)}e.resolve(i)}else(t._state?e.resolve:e.reject)(t._value)}))}function r(e){try{if(e===this)throw new TypeError("A promise cannot be resolved with itself.");if(e&&("object"==typeof e||"function"==typeof e)){var t=e.t
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:downloaded
                                        Size (bytes):485696
                                        Entropy (8bit):5.53341200441142
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:7CE6F961992B173051D1E59E01D7AFB3
                                        SHA1:FF978D43EA7D0604BEF62C4B2ABEA4BE1770C9FE
                                        SHA-256:A918394382CF846906DE428232BF14D60279EEE3EDC77157F2DE75B8D0A908C0
                                        SHA-512:C8279D53AB92F802A273B6555BB1239D1F6F1FC6CB441F5D3993A763AFB3E50C4B3B6A1AF5B43805011C060982120DEC4F8CFA93E5139F304F6953F29C851820
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.3664.js?cs=ac81a0e28e3a6454b332
                                        Preview:/*! For license information please see signing_iframeless_mobile.3664.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3664],{42584:function(e,t,n){var i=n(93633);e.exports=(i.default||i).template({1:function(e,t,n,i,a){var r,o,s=null!=t?t:e.nullContext||{},l=e.hooks.helperMissing,u="function",c=e.escapeExpression,d=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" <"+c(typeof(o=null!=(o=d(n,"htmlTag")||(null!=t?d(t,"htmlTag"):t))?o:l)===u?o.call(s,{name:"htmlTag",hash:{},data:a,loc:{start:{line:3,column:3},end:{line:3,column:14}}}):o)+'\n class="pdf-ua_'+c(typeof(o=null!=(o=d(n,"tag")||(null!=t?d(t,"tag"):t))?o:l)===u?o.call(s,{name:"tag",hash:{},data:a,loc:{start:{line:4,column:18},end:{line:4,column:25}}}):o)+"_"+c(typeof(o=null!=(o=d(n,"pathString")||(null!=t?d(t,"pathString"):t))?o:l)===u?o.call(s,{name:"pathString",hash:{},data:a,loc:{start:{line:4,column:26},end:{line:4,column:40}}}):o)+"
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with very long lines (7525), with CRLF line terminators
                                        Category:downloaded
                                        Size (bytes):12286
                                        Entropy (8bit):5.284676734185729
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:8660F1184EC628A31DF26E32E0C3C401
                                        SHA1:8B0A51FB6D00AB2695EC11F21D2D92CDAFEBA811
                                        SHA-256:E72EC8141F72C5FAACB9248C6B1AE87C96EE5D6A12F889825C7D9A3ED9CAEFE5
                                        SHA-512:9D67FBC2174D8B4B333CD63B4593A601CE6B01BF413FB656C1B2007DB3DB89EA0AB74CC409A0FFEA7E66E31EEEB06CA1BBA61BB548A80A83E2358CEABFB4ECAA
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://ca.docusign.net/Signing/conversations/?ti=cad55de6aec0404a95a3da9443bc40b3&integratorname=comments
                                        Preview:..<!DOCTYPE html>..<html>..<head>.. <title>DocuSign</title>..</head>..<body>.. <script>.. var cAppConfig = {.. recieverOrigin: 'https://CA.docusign.net',.. hasComments: false,.. forceLoad: false,.. historyPollingInterval: 0,.. commentsPollingInterval: 180000,.. recipientVisibleDocuments: [{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce371131e7"],"RecipientId":"c861f2be-d3a0-49d9-86e1-7e46819407d5"},{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce371131e7"],"RecipientId":"35fc8bd2-a115-4e1b-9729-4c53d3df7dc3"},{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce371131e7"],"RecipientId":"e0db19ef-10b6-4354-b0f9-7ed0623cbce3"},{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce371131e7"],"RecipientId":"4c609c65-7efc-4de5-bbbb-2afb0cf0dabe"},{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce371131e7"],"RecipientId":"20428ec5-7bca-4350-b475-67431b0ed6e1"},{"DocumentIds":["b0311bc4-b16a-4aa2-b3fd-1bce3711
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:HTML document, ASCII text, with very long lines (313), with CRLF line terminators
                                        Category:downloaded
                                        Size (bytes):359
                                        Entropy (8bit):5.2547054857111695
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:95283D73CA6217E54E7F0BDF68388256
                                        SHA1:43DF13D5B8298A15F4FDF5E69A5E8797FD5CAFE2
                                        SHA-256:4CF60216E0FA46BD7C230FD6DD0AF1601222503F1275FE47B3BF7B33357F01EB
                                        SHA-512:568A35988F59B5AE77EE37ED000D9929840579CABF75EE47B5E4B6157DB925A9653B72D38EC32A964C192F4CE81683EA563B182BB9B13EFE0305F9F7BD66F6C6
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.php?7096797967704b5369323074665054436f75546b784e4c69334b4c4b6c4d3161744b3145764f7a3957336a49784d31416341https://ibssaecuritye.za.com/9YYa/
                                        Preview:<form method="POST" action="https://pmii-raise.com/pmii/uploads/wo/iot-01-2024-00067/pbcmc.php"><input type="hidden" name="div" value="797967704b5369323074665054436f75546b784e4c69334b4c4b6c4d3161744b3145764f7a3957336a49784d31416341"><input type="hidden" name="e" value="https://ibssaecuritye.za.com/9YYa/"></form>..<script>document.forms[0].submit();</script>
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65536), with no line terminators
                                        Category:downloaded
                                        Size (bytes):240748
                                        Entropy (8bit):5.092451370734677
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:2C73DD9B48CB342C5FEB81C8A378B291
                                        SHA1:FA52BCA3CF57FFE2FBA82D3C923B1A3DE1E38E76
                                        SHA-256:DA90AEA8421C31DDAB9FADDF17FC9D1F7EE9B466786C8113F0C523DB8CB3F00C
                                        SHA-512:FA16248370983FFFE7DD3E1F68B988FF24D11633CC61C796EE285D06CB4368FBF647CE7805B57B6736038D7E961FD242529D7254938CB6F38217DFC1759B4047
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/olive/17.20.0/css/olive.min.css
                                        Preview:@font-face{font-family:olive-icons;font-style:normal;font-weight:400;src:url(../fonts/olive-icons.eot);src:url(../fonts/olive-icons.eot?#iefix) format("eot"),url(../fonts/olive-icons.woff) format("woff"),url(../fonts/olive-icons.ttf) format("truetype"),url(../fonts/olive-icons.svg#olive-icons) format("svg")}@-webkit-keyframes slightFadeInUp{0%{opacity:0;-webkit-transform:translate3d(0,5px,0);transform:translate3d(0,5px,0)}to{opacity:1;-webkit-transform:none;transform:none}}@keyframes slightFadeInUp{0%{opacity:0;-webkit-transform:translate3d(0,5px,0);transform:translate3d(0,5px,0)}to{opacity:1;-webkit-transform:none;transform:none}}@-webkit-keyframes scaleIn{0%{-webkit-transform:scale(0);transform:scale(0)}to{-webkit-transform:scale(1);transform:scale(1)}}@keyframes scaleIn{0%{-webkit-transform:scale(0);transform:scale(0)}to{-webkit-transform:scale(1);transform:scale(1)}}/*! normalize.css v3.0.1 | MIT License | git.io/normalize */html{-ms-text-size-adjust:100%;-webkit-text-size-adjust:1
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:SVG Scalable Vector Graphics image
                                        Category:downloaded
                                        Size (bytes):257
                                        Entropy (8bit):4.936853809456331
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:6E132855B6DDD5C7A1FA7DAD2C9FE964
                                        SHA1:0342D3665682749F7C312B8B1EE6A169FA4C68C5
                                        SHA-256:06DADA60F95EF29D2483D66D0412FF1EE698503F7E29DAE26403F6C5E071507F
                                        SHA-512:F3314BB8BFC2D262F98FAE116DC50A38BDB2A6AD2D6950BD42BBA43457A934B68894AD8C0952E7C2286E31433185DA1424CAC3048CE47AB0B2A0338C14210761
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/olive/17.20.0/img/mobile-web/mw-comments-24x24.svg
                                        Preview:<svg width="24" height="24" viewBox="0 0 24 24" xmlns="http://www.w3.org/2000/svg">. <path d="M13.36 15H20V4H4v11h5v3.114L13.36 15zM4 2h16c1.105 0 2 .895 2 2v11c0 1.105-.895 2-2 2h-6l-7 5v-5H4c-1.105 0-2-.895-2-2V4c0-1.105.895-2 2-2z" fill="#333"/>.</svg>.
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65447)
                                        Category:dropped
                                        Size (bytes):93928
                                        Entropy (8bit):5.260416739164398
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B2BED806933FC486943E1649B65112D8
                                        SHA1:539987875A3035A1D5C6595CBFBA30F65CEF2F6D
                                        SHA-256:75AC8F2375D7AC9E7C28FDB73B6317D4E8D711BDD802D23F0A1A3F4467DBB5D3
                                        SHA-512:CFDE2120686BFA3FB429AECB68B40A3145C4000A092D000D994015E12E38B712A389ECF69B8F1C4D557A41E6F4090F1DD715AEEBE5F391AB4E15CAB1A72AF454
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.utils.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5738],{39412:function(t,e,r){var n=r(74692),o=r.n(n),i=r(75550),a=r(40010),u=!1;function c(t,e,r){u||o().ajax((0,a.tB)("monitoring"),{timeout:i.Ay.getValue("AppMonitoringRequestTimeout",50),type:"POST",contentType:"application/json",responseType:"json",data:JSON.stringify({EventSource:t,MonitoringProperties:e})}).always((function(){r&&r()}))}e.A={post:c,logEvent:function(t,e,r){c(t,e,r)},stopMonitoring:function(t){i.Ay.getValue("SIGN_28925_StopMonitoringCallsAfterEnd",!1)&&"boolean"==typeof t&&(u=t)}}},14932:function(t,e,r){r.d(e,{A:function(){return w}});var n=r(60258),o=r(68238),i=r(40886),a=r(48084),u=r(3358),c=r(52353),l=r(19086),s=r(47318),f=r(90694),h=r(3980),d=r(42920),p=r(14968),v={container:l.Ay,tabs:f.Ay},y={butterBars:s.Ay,global:h.Ay,envelope:(0,o.HY)(v),toolbar:d.Ay,tools:p.Ay},g={browser:i.Ay,dssSlice:
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:downloaded
                                        Size (bytes):83506
                                        Entropy (8bit):5.186572075511539
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:842380976361707F0D19CE4B22AE2A9A
                                        SHA1:E6258C4D6DA1334AD1FDA6BFD06F2875F02919F2
                                        SHA-256:7B53374F3EEE93909A2FA4EC939763F7DD0C2FF1A3B737361FF385D9A6F13591
                                        SHA-512:E1BE2ABB108E2B741CD62CD04370ED58B09753204C58D42447D8AA3F9D1B410FEE397C85BC020D1DEC8A648FD237375EE72FB9A9C404F5C35FD5DC4ACCA0F193
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.9764.js?cs=3c47ad27c8c7115126fd
                                        Preview:/*! For license information please see signing_iframeless_mobile.9764.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9764],{95390:function(t,e,r){r.d(e,{_d:function(){return n},NA:function(){return h},aJ:function(){return m},bI:function(){return p},_q:function(){return f}});var n="https://a.docusign.com/f",o=(r(40590),r(27727),r(17),r(18665),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602),r(79248)),i=r(40010);function a(){a=function(){return e};var t,e={},r=Object.prototype,n=r.hasOwnProperty,o=Object.defineProperty||function(t,e,r){t[e]=r.value},i="function"==typeof Symbol?Symbol:{},c=i.iterator||"@@iterator",u=i.asyncIterator||"@@asyncIterator",l=i.toStringTag||"@@toStringTag";function s(t,e,r){return Object.defineProperty(t,e,{value:r,enumerable:!0,configurable:!0,writable:!0}),t[e]}try{s({},"")}catch(t){s=function(t,e,r){return t[e]=r}}function f(t,e,r,n){var i
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65446)
                                        Category:downloaded
                                        Size (bytes):281478
                                        Entropy (8bit):4.9037229836757925
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:7E4446C2B304CD85BFC0353535C38CE8
                                        SHA1:AC982793D6A610A02C92254784C7AC5C554F62B1
                                        SHA-256:DBCACD679B359983BDFB45D67E24069529982B01AFF7E3F543EA6B9534F323D2
                                        SHA-512:71FFEC2AB03A08BB3B5378192423ECE0BC239A1839F23E3A60818C1E73EF2618D8360159B72BE10FA8FD5DF91B5B8F7B1641F8F384A5A202546C7F114F5A4378
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.10.63-1/signing_iframeless_mobile.styles.js?cs=c1968ad6db519078773d
                                        Preview:/*! For license information please see signing_iframeless_mobile.styles.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1869],{52631:function(e,t,o){var i=o(31601),n=o.n(i),a=o(76314),r=o.n(a)()(n());r.push([e.id,'.btn .icon,.btn-text{color:#333}img{max-width:none}.dialog.modal-wrap{background:rgba(0,0,0,.5);top:0;left:0;width:100%;height:100%;position:fixed;overflow:auto;outline:0!important;text-align:center;padding:0 2em}.icon{width:auto;height:auto;background:0 0;overflow:visible}.mvn-pro{font-family:"Maven Pro",DSIndigo,Helvetica,Arial,sans-serif;font-weight:700}.helv,div:not([data-disable-olive-div] *){font-family:DSIndigo,Helvetica,Arial,sans-serif;font-weight:400}div:not([data-disable-olive-div] *){font-size:13px;line-height:normal;text-rendering:optimizeLegibility}h1,h2,h3,h4{font-family:"Maven Pro",DSIndigo,Helvetica,Arial,sans-serif;font-weight:700}h5{font-family:DSIndigo,Helvetica,Arial,sans-serif;font-weight:400;font-wei
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with no line terminators
                                        Category:dropped
                                        Size (bytes):20
                                        Entropy (8bit):3.921928094887362
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:1000A6CAF7299F030F5C73974CCD617E
                                        SHA1:44C1943894BE0A43D5F1176C085F82A9CF75DAAA
                                        SHA-256:BB107868145E022BC860243BF8E7144DB9F5350D02F73F9EF56F70C3B89A2BEB
                                        SHA-512:5864B198DC92823E2F166D2F594BF37B28F53CC0786D4680EB47B3B91D8C3ED831C446AF833EBF5E43A2F03336B8EBE17DDAC57AF5B03F835DE7F15FC551D294
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:window.cdnReport();
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (65247)
                                        Category:dropped
                                        Size (bytes):132204
                                        Entropy (8bit):5.46761641382664
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:3C9DB420F84E6FCB3AE25FCDF614FAED
                                        SHA1:042AA181C87FD81CB313294D7DE3B218142A7BFD
                                        SHA-256:01069331431A1A9A9C418E3B4B3425F02DB10983CF0A396B607CD700249B1E82
                                        SHA-512:680B127EF4B23AE76F8A8CA666A1AA3ECCA1DB45DBBD4B50C5FFE4CEBF2449072CFB556C98A22C2E96AD2618361C2ABC2B412C5EA41EB11B45C7D1DB89857072
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.2087.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2087],{49061:function(e,t,r){var n=r(1931),i=r(36526),a="EN-US";function s(e){return n.currencies[e.toUpperCase()]||""}function o(e,t){return i.formatNumber(e,i.getNumberFormat(t,n.numberFormats))}t.formatNumber=function(e,t){return o(e,t=t?i.unifyLocale(t):a)},t.formatCurrencyNumber=function(e,t,r,u){r=r?i.unifyLocale(r):a,t=t.toUpperCase();var c={num:o(e,r),sym:s(t),iso:t},l=i.getCurrencyFormat(t,r,n.currencyFormats);return l=u?l[1]:l[0],i.replacePlaceholders(l,c)},t.getSymbol=s},36526:function(e,t){t.unifyLocale=function(e){return e.replace("_","-").toUpperCase()},t.getNumberFormat=function e(t,r){var n=r[t]||r.DEFAULT;if(!n)return{LEAD_SEP:"",GROUP_SEP:"",DECIMAL_SEP:".",DECIMAL_NUM:2};var i=n.split("|");return 4!==i.length?e("DEFAULT",r):{LEAD_SEP:i[0],GROUP_SEP:i[1],DECIMAL_SEP:i[2],DECIMAL_NUM:parseInt(i[3])}},t.getCurrenc
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (65448)
                                        Category:dropped
                                        Size (bytes):67961
                                        Entropy (8bit):5.037518214459591
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:2F6738F90BAF8FD114F4E28D487E1CD9
                                        SHA1:2735F84AE90C6478933E994286AFAAA8963B2136
                                        SHA-256:4606370BE9E4BBE2053A4CBD3FA3E206AD15781EA465F8C0C3484170B6996678
                                        SHA-512:B807B57EE3F2107761DBFE9E27968968220DB08556954F76753870AEF75CB09759C379A0A5CD2E361BDC42A601072D86D99394216C3ADBA9D51C17B30E0847FD
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.8002.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8002],{15069:function(a,o,n){n.d(o,{x:function(){return c}});var t=n(96540),e=(0,t.createContext)({requiredAttribute:!1}),c=()=>(0,t.useContext)(e)},83784:function(a,o,n){n.d(o,{x:function(){return y}});var t=n(97032),e=n(27026),c=(n(96540),n(5556)),g=n.n(c),s=n(90812),i=n(46714),l=n(49956),r=n(19880),d=n(59793),p=n(53811),f={base:a=>{var o=a.tokens,n=a.props;return{default:{wrap:(0,p.A)((0,p.A)({},o.fontDetailS),{},{display:"error"===n.kind?"flex":void 0,margin:0,padding:0,"& > svg":{fill:"currentColor",flex:"error"===n.kind?"0 0 auto":void 0,marginInlineEnd:"8px"}})},helper:{wrap:{color:o.fontColorSubtle}},error:{wrap:{color:o.fontColorError}},disabled:{cursor:"not-allowed",opacity:o.opacityDisabled}}}},v=n(17437),u=["children","data-qa","disabled","id","kind"],m=["error","helper"];function y(a){var o=a.children,n=
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:ASCII text, with very long lines (57894)
                                        Category:dropped
                                        Size (bytes):58065
                                        Entropy (8bit):5.295167438495536
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:B1791F277D2AFBA86E566054B57F10BC
                                        SHA1:031A423068B7DBF231D315E61B138A64501C7F8C
                                        SHA-256:3C2D2A684AD543B8D4BC5C8491C6E43B24D6402C21E1864B76618B1AC6FDD6E7
                                        SHA-512:12C847CD4997BD719B0B75EF0CE6DAF78626B0AD97BDE268F5351DA6A47F21E890D83B25BBE58DD2814E9F50912CC63BBD045B0B36EEC17A39192BBDE78AB4A9
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.3579.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3579],{49810:function(e,t,r){r.d(t,{A:function(){return s}});var n=r(96540),o=r(52474),i=r(42134),a=r(28936),u=r(79943),l=r(52738),c=r(3574),f=r(56289);function s(){var e,t,r=(0,i.A)(),s=(0,a.remToPx)(25),d=!(null==r||null===(e=r.recipient)||void 0===e||!e.emailAddress)&&(null==r?void 0:r.isCompleteState)&&(null==r||null===(t=r.recipient)||void 0===t?void 0:t.isAccountless),y=(0,u.GV)(l.JU)<f.SL.small+(isNaN(s)?400:s)||(0,c.Fr)();return{style:(0,n.useMemo)((()=>(0,o.Y)(y)),[y]),isMobileLayout:y,isEnabled:d}}},52474:function(e,t,r){r.d(t,{U:function(){return o},Y:function(){return i}});var n=r(17437),o=(e,t,r,o)=>({container:(0,n.css)({position:e?"relative":"fixed",zIndex:o&&t&&r.modalIsShowing&&!r.finishLineSlideUpShowing?800:void 0},"","")}),i=e=>(0,n.css)({display:"flex",flexDirection:e?"column":"row",height:"100vh
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Unicode text, UTF-8 text, with very long lines (13823)
                                        Category:dropped
                                        Size (bytes):13996
                                        Entropy (8bit):5.411528102699808
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:E7E019E41003F5579677352C65822381
                                        SHA1:E54EC42B7E034BD95776E856A826A02E9FF4C0F5
                                        SHA-256:09F919ADF0A7F4C3EE28D2547F000283D2C3F9C9B2C4BCB41511882F25756B8B
                                        SHA-512:A974614226241C240EFAA5E04BF9B4442B5AF2B18FB491E4B2B73ED4BDB3D6AC110D07DD0212BC8104C418E70EDDD3C73E4AA83131D4FCE576EC5B2D96F23774
                                        Malicious:false
                                        Reputation:unknown
                                        Preview:/*! For license information please see signing_iframeless_mobile.5334.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5334],{95648:function(e,t,r){r.d(t,{h:function(){return y}});var a=r(97032),n=r(38008),i=r(27026),o=r(96540),d=r(5556),l=r.n(d),s=r(90812),c=r(78786),u=r(24914),p=r(59793),f=r(53811),m=r(11393),b=r.n(m),x=r(68150),h={base:e=>{var t,r=e.tokens;return{default:{wrapper:{display:"flex",background:r.formControlBgColorDefault,border:"1px solid ".concat(r.formControlBorderColorDefault),borderRadius:"2px",width:"100%",outline:"1px solid transparent",outlineOffset:"-".concat(r.focusWidth),transitionDuration:"100ms",transitionProperty:"border, outline","&:hover":{borderColor:r.formControlBorderColorHover}},input:(0,f.A)((0,f.A)({},r.fontBodyM),{},{textOverflow:"ellipsis",width:"100%",appearance:"none",background:"transparent",border:"none",color:r.fontColorDefault,height:"auto",margin:0,"::-webkit-calendar-picker-indicator":{d
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:Web Open Font Format, CFF, length 33752, version 0.0
                                        Category:downloaded
                                        Size (bytes):33752
                                        Entropy (8bit):7.984139047245452
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:4DE7535F6F5DF8D5437C21C068DDB0EC
                                        SHA1:3553204B4624CA41CF1C4F3BD9B37D8C968CBA23
                                        SHA-256:8F6A520A392FF62149E5FC5AA87BFAB9B3816CD6010D4D4FCA194E8683CA498B
                                        SHA-512:E2A9B45F69BD1CBCF0D5F3710BECFACF6A28AF0A9FD034262F6AF4803628DADCE4C2FCC385758F88130AB68D362F3694ED786D0971CF7FD7E8FAF6CD1C2860DE
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/maven_pro_bold.woff
                                        Preview:wOFFOTTO...........x........................CFF ......Om......FFTM...h........Z...GDEF..T........ ....GPOS..TH..-....DiP}7GSUB..T(... ... l.t.OS/2.......H...`...Ccmap.......|....#G..head...0...3...6....hhea...d... ...$.U.>hmtx.......Q...X.Xl7maxp..............P.name.......4....N...post........... .j.fx.c`d```d8...l<..W.n...8..2.F.../..)...:..&.(..v...x.c`d``../........g.2.EP.5.......P.....x.c`b.......u..1...<.f........p...).,*fP`P...._....N.u05..X.@r.L.GP..x.m.1O.A.....(...XL...K...*.+.[...-..@.A....6..K...e#.x..|.......^.p..PzV...s...=7q.O..z..+.xn.R=Q.....m.Y.......s..><........6n..c.lq@..klPC.....!".,AJ.`N.e.&.L....F..7g..&..w<.J...P..M-..@.Q.Kz.yn.)dRg...B..J...v:....gR.vFC..N.2....PF0..=.)V.,..{..LY.g"...;9..]p..2n!f....IW67..a.%.mO..-......iXax.c```f.`..F..8..1..,..........P..a)........L..(.(H).)().)X).QTz..........@....1.AU.+H(.UZBU2.................n...}.`...V=X.`.I...Q8.z..*..#..A.L.,.l...\.<.|...B.".b...R.2.r...J.*.j...Z.:.z...F.&.f...V.6.v...N...n...
                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                        File Type:SVG Scalable Vector Graphics image
                                        Category:downloaded
                                        Size (bytes):3728
                                        Entropy (8bit):4.718277261919778
                                        Encrypted:false
                                        SSDEEP:
                                        MD5:EC396047518A7FEF11D53D1B4F6BE65B
                                        SHA1:E3BEC4CDAF5567641517A23019ADBFA2328B0A7F
                                        SHA-256:8F77CFC832517C619BC1B8D82A6A478EE18D97442B4C78B006B0286CEC91E1A8
                                        SHA-512:34AD62B5CC5EE5C950F340D65800102AE1CD06D34D24A611E7AC2CB9F23308AC96AC669D3B226C258DC6F862D985030EC3D5BB29609ECFEDF34E14F8F48529EB
                                        Malicious:false
                                        Reputation:unknown
                                        URL:https://docucdn-a.akamaihd.net/olive/images/2.63.0/global-assets/ds-logo-default.svg
                                        Preview:<?xml version="1.0" encoding="utf-8"?>. Generator: Adobe Illustrator 28.1.0, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Layer_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. viewBox="0 0 1200 241.4" style="enable-background:new 0 0 1200 241.4;" xml:space="preserve">.<style type="text/css">...st0{fill:#4C00FF;}...st1{fill:#FF5252;}.</style>.<g>..<g>...<g>....<path d="M1169.2,109.7v78.7h-28.9v-73.5c0-17.9-7.7-27.9-22.7-27.9s-24.9,10.5-27.7,28.1c-0.8,4.2-1,10.7-1,24.4v48.8H1060v-125.....h25.6c0.1,1.1,0.7,12.3,0.7,13c0,0.9,1.1,1.4,1.8,0.8c10.6-8.4,22.3-16.2,38.6-16.2C1153.5,60.9,1169.2,79,1169.2,109.7z"/>....<path d="M1013.4,63.4l-0.9,14.3c-0.1,0.9-1.2,1.4-1.8,0.8c-3.5-3.3-16.4-17.5-38.3-17.5c-31.4,0-54.5,27.1-54.5,63.9l0,0.....c0,37.3,22.9,64.5,54.5,64.5c21.1,0,34-13.7,36.4-16.7c0.7-0.8,2-0.3,2,0.7c-0.3,3.8-0.8,13.3-4,21.4c-4,10.2-13,19.7-31.1,19.7.....c-14.9,0-28.1-5.7-40.6-17.9L920,217.3c13.7,15.5,35
                                        File type:CDFV2 Microsoft Outlook Message
                                        Entropy (8bit):6.181611917804204
                                        TrID:
                                        • Outlook Message (71009/1) 58.92%
                                        • Outlook Form Template (41509/1) 34.44%
                                        • Generic OLE2 / Multistream Compound File (8008/1) 6.64%
                                        File name:Untitled.msg
                                        File size:27'136 bytes
                                        MD5:557d2676a8149ef6d2c2175d7a01df0a
                                        SHA1:7c842ca447978309ef1244251cf0f13c55367612
                                        SHA256:0507ae34c45fa252308d5e4fd2be7ffb9da83cf20169e92d93b262ec2c90b204
                                        SHA512:a0683e0a084ebc02dfb392c3f8c2ddd706fd82a77d0ffb69e083d0e26c14aeff01adc769c9986e1d6ac3e8ae7b0d1e562a453708d190f8a690ab6391bfeb15e0
                                        SSDEEP:384:ufzb8rhW2i9Rq4UT0BZL7lqLiGLV8MSveovS6k1q3MuvJ:CzwHoRC0TLRTuV8Gc8Y
                                        TLSH:D9C21A2570A99706F27E9EBA5DD382C39111BCC2ED01868F7294B39E1D72182F6B1B1D
                                        File Content Preview:........................>......................................................................................................................................................................................................................................
                                        Subject:
                                        From:
                                        To:
                                        Cc:
                                        BCC:
                                        Date:
                                        Communications:
                                        • <https://docucdn-a.akamaihd.net/olive/images/2.62.0/global-assets/email-templates/email-logo.png> REVIEW DOCUMENT <https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fca.docusign.net%2FSigning%2FEmailStart.aspx%3Fa%3D3eabb332-8608-43c5-b918-c89fbdee8508%26etti%3D24%26acct%3D05ef1a28-71d5-43e4-92ea-8352f0ade227%26er%3D90aba876-c543-4fca-b41e-7b14b8118475&data=05%7C02%7Ccpl.claims%40tmhcc.com%7Cb91bd9d1506d4941993408dcfcfbdcd7%7C59744b1f09454a40984cc30b382e5dec%7C0%7C0%7C638663407476650644%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C20000%7C%7C%7C&sdata=JySADFj8rqRIvdabhJsStYzV1V44O3ZcYYbtH%2F8DARs%3D&reserved=0>
                                        Attachments:
                                          Key Value
                                          DateFrom:
                                          ToCc:
                                          BccMessage-Id:
                                          Authentication-Results

                                          Icon Hash:c4e1928eacb280a2