Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
Eastern Contractors Corporation Contract and submittal document.eml

Overview

General Information

Sample name:Eastern Contractors Corporation Contract and submittal document.eml
Analysis ID:1591390
MD5:407cf4cbd77835f3009d017f6f5fdd91
SHA1:9cd37acd0494df75cd09668aa72c0a0eea738338
SHA256:129174ee4efbfa6524dc9bdb733bd2aa0dd54d5b7f8f5e7c0dc692021d16af5c
Infos:

Detection

Score:56
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

AI detected landing page (webpage, office document or email)
AI detected suspicious elements in Email content
Phishing site or detected (based on various text indicators)
Suspicious MSG / EML detected (based on various text indicators)
Detected non-DNS traffic on DNS port
HTML body contains low number of good links
HTML page contains hidden javascript code
HTML title does not match URL
Queries the volume information (name, serial number etc) of a device
Sigma detected: Office Autorun Keys Modification
Stores files to the Windows start menu directory
Uses Javascript AES encryption / decryption (likely to hide suspicious Javascript code)

Classification

  • System is w10x64_ra
  • OUTLOOK.EXE (PID: 6280 cmdline: "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" /eml "C:\Users\user\Desktop\Eastern Contractors Corporation Contract and submittal document.eml" MD5: 91A5292942864110ED734005B7E005C0)
    • ai.exe (PID: 6452 cmdline: "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "13117FBF-E402-4BA8-A804-49D6C1A97BDF" "6C5C54CF-B6EC-4181-BC09-FF4EF84FEB13" "6280" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx" MD5: EC652BEDD90E089D9406AFED89A8A8BD)
    • chrome.exe (PID: 7100 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://na4.docusign.net/Signing/EmailStart.aspx?a=e472f45a-3f40-4d74-a7b5-c614bd2f9460&etti=24&acct=cd0c46de-0b7c-43ac-adb1-0a336d43d913&er=da828ee4-19f3-4a0e-ba09-f575112b1029 MD5: 83395EAB5B03DEA9720F8D7AC0D15CAA)
      • chrome.exe (PID: 3092 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2068 --field-trial-handle=1988,i,1270707062470486970,4024407879004618962,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 83395EAB5B03DEA9720F8D7AC0D15CAA)
  • cleanup
No yara matches
Source: Registry Key setAuthor: Victor Sergeev, Daniil Yugoslavskiy, Gleb Sukhodolskiy, Timur Zinniatullin, oscd.community, Tim Shelton, frack113 (split): Data: Details: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 , EventID: 13, EventType: SetValue, Image: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE, ProcessId: 6280, TargetObject: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\16.0\Outlook\Addins\OneNote.OutlookAddin\1
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

Phishing

barindex
Source: EmailJoe Sandbox AI: Page contains button: 'REVIEW DOCUMENT' Source: 'Email'
Source: EmailJoe Sandbox AI: Email contains prominent button: 'review document'
Source: EmailJoe Sandbox AI: Detected potential phishing email: The email claims to be from DocuSign but uses a suspicious domain 'eccamerica.com' for the supposed company. The URL structure attempts to mimic DocuSign's legitimate format but contains suspicious parameters. The email creates urgency around signing a contract document, a common phishing tactic
Source: Chrome DOM: 2.4OCR Text: Done! Select Finish to send the completed document Docusign Envelope txmCA38-F1-4CE2-%C.4-7B754CE2F23 EASTERN O FINISH Terms Of & OTHER ACTIONS docusign This electronic PDF has shared with you REVIEW DOCUMENT PDF This dcx:ument is protected for your organization view only. DO Not Share This Email This email contains a secrre PDF link to in browser. Microsoft Word Sign electronicany in just mimaes It's safe, and "*ution for Digital file sharing E nglish (US) I c,pyrightZ2025Doc Gignma V2R
Source: Chrome DOM: 2.5OCR Text: Done! Select Finish to send the completed document FINISH External Link Warning This link opens a new window and goes to an external website that is not part of Docusign. To proceed, select CONTINUE. CONTINUE CANCEL docusign This electronic PDF has shared with you REVIEW DOCUMENT PDF This document is protected for your organization view only. Do Not Share This Email This email contains a secure em:rypted PDF link to view in browser, Microsoft Word Sign documents electroncany in just minutes It's safe secure. and trusted solution for file sharing - Egvs', (US) OTHER ACTIONS I ccpyrightZ202500c,
Source: Chrome DOM: 2.3OCR Text: Please Review & Act on These Documents Peter Kim Connie Pointer Peter Kim (Eastern Contractors Corporation) shared the Contract and submittal document with you Please review and let me docusign OTHER ACTIONS know if you have any questions. View More Please review the documents below. docusign This electronic PDF has tmn shared with you REVIEW DOCUMENTE7 PDF This document is protected for your organization view only. Do Not Share This Email This email contains a secure encryvt' PDF Ink to eew in browser Microsoft Word Sign documents electroncany in just minutes sale. secure. and trusted for Digital file sharing E nglish (US) CONTINUE Terms Of & I c,pyrightZ2025Doc Gignma V2R
Source: MSG / EMLOCR Text: docusign Peter Kim sent you a document to review and sign. REVIEW DOCUMENT Peter Kim Cd3k3@outlook.com Peter Kim (Eastern Contractors Corporation) shared the Contract and submittal document with you. Please review and let me know if you have any questions. Thanks Peter Kim Founder, CEO - Eastern Companies Eastern Contractors Corporation General contractor and construction management www.eccamerica.com
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0HTTP Parser: Number of links: 0
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: Number of links: 0
Source: https://easterncontractorscorporation.udamvdxxrl.ru/7cZw/HTTP Parser: Base64 decoded: <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" fill="none" viewBox="0 0 26 26"><path fill="#d9d9d9" d="M13 0a13 13 0 1 0 0 26 13 13 0 0 0 0-26m0 24a11 11 0 1 1 0-22 11 11 0 0 1 0 22"/><path fill="#d9d9d9" d="m10.955 16.055-3.95-4.125-1.445...
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0HTTP Parser: Title: Redirecting does not match URL
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: Title: Sign in to your account does not match URL
Source: https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing-conversations.js?cs=082ab8cc7HTTP Parser: /*! for license information please see signing-conversations.js.license.txt */!function(){var e,t,n,r,o,i={97455:function(){},57279:function(e,t,n){"use strict";var r=n(5946);object.defineproperty(t,"__esmodule",{value:!0}),t.default=void 0;var o=r(n(61240)),i=r(n(20271)),a=r(n(43563)),u=r(n(70533)),s=function(){function e(){(0,i.default)(this,e),(0,u.default)(this,"queue",new array),(0,u.default)(this,"workingonpromise",!1)}return(0,a.default)(e,[{key:"enqueue",value:function(e){var t=this;return new o.default((function(n,r){t.queue.push({worker:e,resolve:n,reject:r}),t.dequeue()}))}},{key:"dequeue",value:function(){var e=this;if(this.workingonpromise)return!1;var t=this.queue.shift();if(!t)return!1;try{this.workingonpromise=!0,t.worker().then((function(n){e.workingonpromise=!1,t.resolve(n),e.dequeue()})).catch((function(n){e.workingonpromise=!1,t.reject(n),e.dequeue()}))}catch(e){this.workingonpromise=!1,t.reject(e),this.dequeue()}return!0}}]),e}();t.default=s},74087:function(e,t,n){"use strict";var r=n(50...
Source: EmailClassification: Credential Stealer
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: <input type="password" .../> found
Source: https://na4.docusign.net/Signing/?ti=8914ba9cf17d4568b3ab82a72e21ba07HTTP Parser: No favicon
Source: https://easterncontractorscorporation.udamvdxxrl.ru/7cZw/HTTP Parser: No favicon
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0HTTP Parser: No favicon
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0HTTP Parser: No <meta name="author".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: No <meta name="author".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: No <meta name="author".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0HTTP Parser: No <meta name="copyright".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: No <meta name="copyright".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=4765445b-32c6-49b0-83e6-1d93765276ca&redirect_uri=https%3A%2F%2Fwww.office.com%2Flandingv2&response_type=code%20id_token&scope=openid%20profile%20https%3A%2F%2Fwww.office.com%2Fv2%2FOfficeHome.All&response_mode=form_post&nonce=638724912144429639.NTA2ZTAxOGMtN2E4NC00MjRkLWI4NTctOTU4ZTYwZDU2MGE5MWU1NzU2ZDAtYjM0Ni00NDExLTkxYzUtNDdlMjA1MTRjYWJi&ui_locales=en-US&mkt=en-US&client-request-id=ca621b56-5d0b-4622-b229-89c95d1c0c44&state=wXgpI-Qm2J3NjbXYr5s_ZVTbcJ_mIwIuJFtl_GdGGkDVadus1YeuXpy9_b1slZfQxK7EVWrXSPF8pym_P9-7H2rxbvFeuHcOpMhlXKF_LKYp4YSYhT92C-t2MYnqhFgO5ZjwOe9cIQNyaVP760GHflHCfRpllWlBIEYIoJwgrEaOD0kWObDl9Ji3eNu8hhfHfWPogeSvO-YxPUdcFeU_QrL8EYh_PHODKtX89mbuECPcfnn08jgAKUwbU8o37jsW87XsvXxvJBNxkaqlZ7si2Q&x-client-SKU=ID_NET8_0&x-client-ver=7.5.1.0&sso_reload=trueHTTP Parser: No <meta name="copyright".. found
Source: unknownHTTPS traffic detected: 40.126.31.69:443 -> 192.168.2.17:49705 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:49710 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.23.242.162:443 -> 192.168.2.17:49713 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.23.242.162:443 -> 192.168.2.17:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.3.187.198:443 -> 192.168.2.17:61964 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61965 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61968 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61970 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.5.88:443 -> 192.168.2.17:62147 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.21.65.154:443 -> 192.168.2.17:62149 version: TLS 1.2
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: global trafficTCP traffic: 192.168.2.17:63168 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.17:61963 -> 162.159.36.2:53
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.69
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: unknownTCP traffic detected without corresponding DNS query: 20.12.23.50
Source: global trafficDNS traffic detected: DNS query: na4.docusign.net
Source: global trafficDNS traffic detected: DNS query: docucdn-a.akamaihd.net
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: api.mixpanel.com
Source: global trafficDNS traffic detected: DNS query: 198.187.3.20.in-addr.arpa
Source: global trafficDNS traffic detected: DNS query: a.docusign.com
Source: global trafficDNS traffic detected: DNS query: cdn.optimizely.com
Source: global trafficDNS traffic detected: DNS query: easterncontractorscorporation.udamvdxxrl.ru
Source: global trafficDNS traffic detected: DNS query: code.jquery.com
Source: global trafficDNS traffic detected: DNS query: challenges.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: cdnjs.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: a.nel.cloudflare.com
Source: global trafficDNS traffic detected: DNS query: gbahqhz7oetienhy8jvjhdoxthnz6dhkfux7f3fgyclvtbr7gb.ivertoneym.ru
Source: global trafficDNS traffic detected: DNS query: login.microsoftonline.com
Source: global trafficDNS traffic detected: DNS query: www.office.com
Source: global trafficDNS traffic detected: DNS query: aadcdn.msftauth.net
Source: global trafficDNS traffic detected: DNS query: identity.nel.measure.office.net
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 62137 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62066 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62123 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63194 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62146 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63202 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61980
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62157
Source: unknownNetwork traffic detected: HTTP traffic on port 63171 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63177 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62134 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49703 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61972 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49690
Source: unknownNetwork traffic detected: HTTP traffic on port 63185 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62149 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63191 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63188 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62128 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62131 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63207 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61977 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62061
Source: unknownNetwork traffic detected: HTTP traffic on port 62139 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63210 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62141 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63192 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63189 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62125 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63204 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62144 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49719
Source: unknownNetwork traffic detected: HTTP traffic on port 49680 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 63183 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62136 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62147 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63197 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63201 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62066
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 61968 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 63209 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49703
Source: unknownNetwork traffic detected: HTTP traffic on port 63172 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63171
Source: unknownNetwork traffic detected: HTTP traffic on port 63178 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63170
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63173
Source: unknownNetwork traffic detected: HTTP traffic on port 62133 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63172
Source: unknownNetwork traffic detected: HTTP traffic on port 61971 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63184 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61965 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63207
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62118
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63206
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63209
Source: unknownNetwork traffic detected: HTTP traffic on port 63206 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62127 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62130 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63198 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63201
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63200
Source: unknownNetwork traffic detected: HTTP traffic on port 63190 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61980 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63202
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63205
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63204
Source: unknownNetwork traffic detected: HTTP traffic on port 63181 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61976 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63181
Source: unknownNetwork traffic detected: HTTP traffic on port 62138 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63184
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63183
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62130
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63185
Source: unknownNetwork traffic detected: HTTP traffic on port 62142 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62128
Source: unknownNetwork traffic detected: HTTP traffic on port 62124 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62129
Source: unknownNetwork traffic detected: HTTP traffic on port 63195 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62118 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62145 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63177
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63210
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62123
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63178
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62124
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62125
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62126
Source: unknownNetwork traffic detected: HTTP traffic on port 63170 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62127
Source: unknownNetwork traffic detected: HTTP traffic on port 62135 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63191
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63190
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63193
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63192
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63195
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63194
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62140
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63197
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62141
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63196
Source: unknownNetwork traffic detected: HTTP traffic on port 63199 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62061 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62139
Source: unknownNetwork traffic detected: HTTP traffic on port 49719 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61964
Source: unknownNetwork traffic detected: HTTP traffic on port 62148 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61965
Source: unknownNetwork traffic detected: HTTP traffic on port 49690 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63200 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61968
Source: unknownNetwork traffic detected: HTTP traffic on port 63196 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62129 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62131
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63188
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62132
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62133
Source: unknownNetwork traffic detected: HTTP traffic on port 63173 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62134
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63189
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62135
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62136
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62137
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62138
Source: unknownNetwork traffic detected: HTTP traffic on port 61978 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62132 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62140 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62157 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61970 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63193 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 61964 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61976
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61977
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61978
Source: unknownNetwork traffic detected: HTTP traffic on port 62126 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 63205 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 62143 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62142
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63199
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62143
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 63198
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62144
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62145
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61970
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62146
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61971
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62147
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 61972
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62148
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 62149
Source: unknownHTTPS traffic detected: 40.126.31.69:443 -> 192.168.2.17:49705 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:49710 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.23.242.162:443 -> 192.168.2.17:49713 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.23.242.162:443 -> 192.168.2.17:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.3.187.198:443 -> 192.168.2.17:61964 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61965 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61968 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.12.23.50:443 -> 192.168.2.17:61970 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.5.88:443 -> 192.168.2.17:62147 version: TLS 1.2
Source: unknownHTTPS traffic detected: 2.21.65.154:443 -> 192.168.2.17:62149 version: TLS 1.2
Source: classification engineClassification label: mal56.phis.winEML@22/109@32/275
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile created: C:\Users\user\Documents\Outlook Files\~Outlook Data File - NoEmail.pst.tmp
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile created: C:\Users\user\AppData\Local\Temp\Outlook Logging\OUTLOOK_16_0_16827_20130-20250114T1738320745-6280.etl
Source: unknownProcess created: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" /eml "C:\Users\user\Desktop\Eastern Contractors Corporation Contract and submittal document.eml"
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "13117FBF-E402-4BA8-A804-49D6C1A97BDF" "6C5C54CF-B6EC-4181-BC09-FF4EF84FEB13" "6280" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx"
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://na4.docusign.net/Signing/EmailStart.aspx?a=e472f45a-3f40-4d74-a7b5-c614bd2f9460&etti=24&acct=cd0c46de-0b7c-43ac-adb1-0a336d43d913&er=da828ee4-19f3-4a0e-ba09-f575112b1029
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2068 --field-trial-handle=1988,i,1270707062470486970,4024407879004618962,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe "C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exe" "13117FBF-E402-4BA8-A804-49D6C1A97BDF" "6C5C54CF-B6EC-4181-BC09-FF4EF84FEB13" "6280" "C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE" "WordCombinedFloatieLreOnline.onnx"
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://na4.docusign.net/Signing/EmailStart.aspx?a=e472f45a-3f40-4d74-a7b5-c614bd2f9460&etti=24&acct=cd0c46de-0b7c-43ac-adb1-0a336d43d913&er=da828ee4-19f3-4a0e-ba09-f575112b1029
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2068 --field-trial-handle=1988,i,1270707062470486970,4024407879004618962,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: apphelp.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: c2r64.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: userenv.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: rsaenh.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeSection loaded: gpapi.dll
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\ClickToRun\REGISTRY\MACHINE\Software\Classes\Wow6432Node\CLSID\{F959DBBB-3867-41F2-8E5F-3B8BEFAA81B3}\InprocServer32
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEWindow found: window name: SysTabControl32
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEKey opened: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Common
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEFile Volume queried: C:\Windows\SysWOW64 FullSizeInformation
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXEProcess information queried: ProcessInformation
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeQueries volume information: C:\Program Files (x86)\Microsoft Office\root\Office16\AI\WordCombinedFloatieLreOnline.onnx VolumeInformation
Source: C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ai.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity Information1
Scripting
Valid AccountsWindows Management Instrumentation21
Browser Extensions
1
Process Injection
1
Masquerading
OS Credential Dumping1
Process Discovery
Remote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/Job1
Scripting
1
DLL Side-Loading
1
Process Injection
LSASS Memory13
System Information Discovery
Remote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAt1
DLL Side-Loading
1
Registry Run Keys / Startup Folder
1
Deobfuscate/Decode Files or Information
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCron1
Registry Run Keys / Startup Folder
Login Hook1
DLL Side-Loading
NTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput CaptureProtocol ImpersonationTraffic DuplicationData Destruction

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
a.nel.cloudflare.com
35.190.80.1
truefalse
    high
    s-part-0017.t-0009.t-msedge.net
    13.107.246.45
    truefalse
      high
      arya-1323461286.us-west-2.elb.amazonaws.com
      52.34.202.214
      truefalse
        high
        gbahqhz7oetienhy8jvjhdoxthnz6dhkfux7f3fgyclvtbr7gb.ivertoneym.ru
        172.67.166.74
        truefalse
          unknown
          bg.microsoft.map.fastly.net
          199.232.214.172
          truefalse
            high
            cdn.optimizely.com
            104.18.66.57
            truefalse
              high
              easterncontractorscorporation.udamvdxxrl.ru
              188.114.97.3
              truefalse
                unknown
                code.jquery.com
                151.101.130.137
                truefalse
                  high
                  cdnjs.cloudflare.com
                  104.17.25.14
                  truefalse
                    high
                    challenges.cloudflare.com
                    104.18.94.41
                    truefalse
                      high
                      sni1gl.wpc.omegacdn.net
                      152.199.21.175
                      truefalse
                        high
                        www.google.com
                        216.58.206.36
                        truefalse
                          high
                          api.mixpanel.com
                          130.211.34.183
                          truefalse
                            high
                            www.office.com
                            unknown
                            unknownfalse
                              high
                              aadcdn.msftauth.net
                              unknown
                              unknownfalse
                                high
                                198.187.3.20.in-addr.arpa
                                unknown
                                unknownfalse
                                  high
                                  identity.nel.measure.office.net
                                  unknown
                                  unknownfalse
                                    high
                                    na4.docusign.net
                                    unknown
                                    unknownfalse
                                      high
                                      a.docusign.com
                                      unknown
                                      unknownfalse
                                        high
                                        docucdn-a.akamaihd.net
                                        unknown
                                        unknownfalse
                                          high
                                          login.microsoftonline.com
                                          unknown
                                          unknownfalse
                                            high
                                            NameMaliciousAntivirus DetectionReputation
                                            https://na4.docusign.net/Signing/?ti=8914ba9cf17d4568b3ab82a72e21ba07false
                                              unknown
                                              https://na4.docusign.net/Signing/ContinueSigning.aspx?scope=3d2633af-c1ca-4d2c-95e8-8953edcf1a91false
                                                unknown
                                                https://easterncontractorscorporation.udamvdxxrl.ru/7cZw/false
                                                  unknown
                                                  • No. of IPs < 25%
                                                  • 25% < No. of IPs < 50%
                                                  • 50% < No. of IPs < 75%
                                                  • 75% < No. of IPs
                                                  IPDomainCountryFlagASNASN NameMalicious
                                                  13.107.6.156
                                                  unknownUnited States
                                                  8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  104.18.66.57
                                                  cdn.optimizely.comUnited States
                                                  13335CLOUDFLARENETUSfalse
                                                  130.211.34.183
                                                  api.mixpanel.comUnited States
                                                  15169GOOGLEUSfalse
                                                  13.107.246.45
                                                  s-part-0017.t-0009.t-msedge.netUnited States
                                                  8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  104.18.94.41
                                                  challenges.cloudflare.comUnited States
                                                  13335CLOUDFLARENETUSfalse
                                                  2.16.168.101
                                                  unknownEuropean Union
                                                  20940AKAMAI-ASN1EUfalse
                                                  2.19.126.89
                                                  unknownEuropean Union
                                                  16625AKAMAI-ASUSfalse
                                                  216.58.206.36
                                                  www.google.comUnited States
                                                  15169GOOGLEUSfalse
                                                  20.190.159.64
                                                  unknownUnited States
                                                  8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  20.189.173.10
                                                  unknownUnited States
                                                  8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  151.101.130.137
                                                  code.jquery.comUnited States
                                                  54113FASTLYUSfalse
                                                  74.125.206.84
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  199.232.214.172
                                                  bg.microsoft.map.fastly.netUnited States
                                                  54113FASTLYUSfalse
                                                  162.248.184.189
                                                  unknownUnited States
                                                  62856DOCUS-6-PRODUSfalse
                                                  35.190.80.1
                                                  a.nel.cloudflare.comUnited States
                                                  15169GOOGLEUSfalse
                                                  216.58.212.174
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  142.250.186.99
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  172.67.166.74
                                                  gbahqhz7oetienhy8jvjhdoxthnz6dhkfux7f3fgyclvtbr7gb.ivertoneym.ruUnited States
                                                  13335CLOUDFLARENETUSfalse
                                                  13.69.239.72
                                                  unknownUnited States
                                                  8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  52.113.194.132
                                                  unknownUnited States
                                                  8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  52.34.202.214
                                                  arya-1323461286.us-west-2.elb.amazonaws.comUnited States
                                                  16509AMAZON-02USfalse
                                                  142.250.186.78
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  1.1.1.1
                                                  unknownAustralia
                                                  13335CLOUDFLARENETUSfalse
                                                  142.250.65.174
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  142.250.186.163
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  2.19.126.79
                                                  unknownEuropean Union
                                                  16625AKAMAI-ASUSfalse
                                                  2.19.126.97
                                                  unknownEuropean Union
                                                  16625AKAMAI-ASUSfalse
                                                  35.190.25.25
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  239.255.255.250
                                                  unknownReserved
                                                  unknownunknownfalse
                                                  188.114.97.3
                                                  easterncontractorscorporation.udamvdxxrl.ruEuropean Union
                                                  13335CLOUDFLARENETUSfalse
                                                  142.250.181.228
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  142.250.186.42
                                                  unknownUnited States
                                                  15169GOOGLEUSfalse
                                                  52.109.76.243
                                                  unknownUnited States
                                                  8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  104.17.25.14
                                                  cdnjs.cloudflare.comUnited States
                                                  13335CLOUDFLARENETUSfalse
                                                  40.126.32.138
                                                  unknownUnited States
                                                  8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                  IP
                                                  192.168.2.17
                                                  Joe Sandbox version:42.0.0 Malachite
                                                  Analysis ID:1591390
                                                  Start date and time:2025-01-14 23:38:03 +01:00
                                                  Joe Sandbox product:CloudBasic
                                                  Overall analysis duration:
                                                  Hypervisor based Inspection enabled:false
                                                  Report type:full
                                                  Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                  Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                  Number of analysed new started processes analysed:20
                                                  Number of new started drivers analysed:0
                                                  Number of existing processes analysed:0
                                                  Number of existing drivers analysed:0
                                                  Number of injected processes analysed:0
                                                  Technologies:
                                                  • EGA enabled
                                                  Analysis Mode:stream
                                                  Analysis stop reason:Timeout
                                                  Sample name:Eastern Contractors Corporation Contract and submittal document.eml
                                                  Detection:MAL
                                                  Classification:mal56.phis.winEML@22/109@32/275
                                                  Cookbook Comments:
                                                  • Found application associated with file extension: .eml
                                                  • Exclude process from analysis (whitelisted): dllhost.exe, TextInputHost.exe, svchost.exe
                                                  • Excluded IPs from analysis (whitelisted): 52.113.194.132, 52.109.76.243, 2.16.168.101, 2.16.168.119, 199.232.214.172
                                                  • Excluded domains from analysis (whitelisted): ecs.office.com, omex.cdn.office.net, ctldl.windowsupdate.com.delivery.microsoft.com, ctldl.windowsupdate.com, prod.roaming1.live.com.akadns.net, s-0005-office.config.skype.com, eur.roaming1.live.com.akadns.net, neu-azsc-000.roaming.officeapps.live.com, ecs-office.s-0005.s-msedge.net, roaming.officeapps.live.com, login.live.com, s-0005.s-msedge.net, osiprod-neu-buff-azsc-000.northeurope.cloudapp.azure.com, ecs.office.trafficmanager.net, omex.cdn.office.net.akamaized.net, wu-b-net.trafficmanager.net, a1864.dscd.akamai.net
                                                  • Not all processes where analyzed, report is missing behavior information
                                                  • Report size getting too big, too many NtQueryAttributesFile calls found.
                                                  • Report size getting too big, too many NtQueryValueKey calls found.
                                                  • Report size getting too big, too many NtReadVirtualMemory calls found.
                                                  • VT rate limit hit for: easterncontractorscorporation.udamvdxxrl.ru
                                                  Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                                  File Type:data
                                                  Category:modified
                                                  Size (bytes):106496
                                                  Entropy (8bit):4.4930459062673975
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C3F28B4D695E04A330F718F930E0F60A
                                                  SHA1:88A11EFB0F14E2AB4BC4D6DFE73992807880120D
                                                  SHA-256:52153E2AF473407726F5DAFE4659C70A2BDE687930B26AAD98AA6E34F0348EB3
                                                  SHA-512:90318BCABCE53E54C801F2C08F4E77D02B1548F3C14A215158FFC033FE917FB310B98C17D27EE4844683FA446932C77C980C99CC6AF0189C6B246C0DC3368ED4
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:............................................................................d...........[.z..f..................eJ..............Zb..2...................................,...@.t.z.r.e.s...d.l.l.,.-.1.1.2.......................................................@.t.z.r.e.s...d.l.l.,.-.1.1.1...........................................................`{Y..Y..........[.z..f..........v.2._.O.U.T.L.O.O.K.:.1.8.8.8.:.b.8.f.0.0.9.5.c.b.7.1.0.4.b.8.5.a.4.5.7.6.f.4.6.5.8.5.b.5.3.a.9...C.:.\.U.s.e.r.s.\.t.o.r.r.e.s.\.A.p.p.D.a.t.a.\.L.o.c.a.l.\.T.e.m.p.\.O.u.t.l.o.o.k. .L.o.g.g.i.n.g.\.O.U.T.L.O.O.K._.1.6._.0._.1.6.8.2.7._.2.0.1.3.0.-.2.0.2.5.0.1.1.4.T.1.7.3.8.3.2.0.7.4.5.-.6.2.8.0...e.t.l...........P.P.........[.z..f..................................................................................................................................................................................................................................................................................................
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Jan 14 21:38:49 2025, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2677
                                                  Entropy (8bit):3.9926012922802814
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:7665EDA4A4EC309DF2F8C6A488775247
                                                  SHA1:5B2DAB8D75870B3206B39D6D2B1636F666AA904E
                                                  SHA-256:E95AA2B251029DED8AB245626E12926795469F7DBA9DE0193FDE7C4A542F05A0
                                                  SHA-512:E89D2DC05685F56872CAEB1DC71CEA4210C0AE0B372486523A9A8577BC438B07AA00F107B9AC45A236E69782F05AE0623C86DFE54BAC99679FCF2B9F707F21C6
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,.........f......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.V.Z............................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Jan 14 21:38:49 2025, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2679
                                                  Entropy (8bit):4.008532425290722
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3AFAC883BBAAE7A0FD4B6ED31E52E0A3
                                                  SHA1:6B654D8DFCF664EF6FEC0F6AD8FD23E1DA7C30C1
                                                  SHA-256:D45130FAA3A6F9702D2936BFD828C83C6EEE0C43FF91E1A869BA5E5D95243360
                                                  SHA-512:53C8FA49031D44D24F6205897C40F16146076F6D976EBA41C7449BF07BB14CA5D940175928255D9C1EA9F841E4C90682A5952E61375B1176DEEC49443ECEA7D7
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,.........f......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.V.Z............................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2693
                                                  Entropy (8bit):4.020554015586543
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:E054CFBC914D79C81F02528AC0851678
                                                  SHA1:D8CF97069056EBC022A2675AC8FE07637E69CFF6
                                                  SHA-256:4060E001EB3A6A2A889D55963F64822328B56F9274BDAFADFE35B529B29FCF14
                                                  SHA-512:941299F1166FD7C9E2386AA450BA7485E75E457F2D0741D5AB670BD7AB50F8A24374F78C748C51E082C7CFF47A7FE116634BAC53266246D89BFC5457DD38190A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,.....v. ;.......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.VFW.N...........................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Jan 14 21:38:49 2025, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2681
                                                  Entropy (8bit):4.005831130849768
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3649E62C38CAFD2A4E3E65BA43ECF48A
                                                  SHA1:3C1EDB5FECC69BBEE9E7C33994C8F7652462150D
                                                  SHA-256:F3649BB08051EB13A6951717F5EED7C2F7BE714645DE43A538E78D56F9796A8C
                                                  SHA-512:6F4253713246D14DF5E31B34D686A3B20017BDB97F326589C1BAA226D446AF70EF63BF9ED0B87D59FA7DD3BBB278185C02ACE5CDBC7D337A5F80DB05D1EEA8FD
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,.........f......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.V.Z............................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Jan 14 21:38:49 2025, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2681
                                                  Entropy (8bit):3.996587255991148
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:099364BD8B541CD5B9C8CD01816A6578
                                                  SHA1:A03719DB9EDE1F8A545E69C9B8069848B11D75E4
                                                  SHA-256:9059CC9952042BF5348D4C98E0D5037085072E8D84A9110948B3F6CFA559C921
                                                  SHA-512:0BAB9CB3F580886E41BFB8D6FFB8CFCCFD2D06578AD68A1CD0D639492E7B1254A6CC2E703E678359F68AB03733C92806D6949055F4D30D5B359F6EF2EDA90976
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,....b....f......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.V.Z............................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Jan 14 21:38:49 2025, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
                                                  Category:dropped
                                                  Size (bytes):2683
                                                  Entropy (8bit):4.009703479637719
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:309C99F87A70053AF0A4C43BC5850845
                                                  SHA1:E8C527F6B34C48BEB250B630D7ED09040AF8A908
                                                  SHA-256:933E77449A13C6723CA5446C8E7B822977D1F4C1734AD59B23CB96B14EFEBB94
                                                  SHA-512:478D64D96672D6E95675648E401C124911E197AE8DE7E169B0E3C7BFB8A5A6C540B88535147CFB33D092B734268DD23141F201BF335B2EA8E4EFEFD9B8C78207
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:L..................F.@.. ...$+.,....>....f......y... w......................1....P.O. .:i.....+00.../C:\.....................1.....FWoN..PROGRA~1..t......O.I.Z.....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V.Z.....L.....................p+j.G.o.o.g.l.e.....T.1.....FW.N..Chrome..>......CW.V.Z.....M......................W..C.h.r.o.m.e.....`.1.....FW.N..APPLIC~1..H......CW.V.Z............................W..A.p.p.l.i.c.a.t.i.o.n.....n.2. w..BW. .CHROME~1.EXE..R......CW.V.Z............................3.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i....................C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                  Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                                  File Type:Microsoft Outlook email folder (>=2003)
                                                  Category:dropped
                                                  Size (bytes):271360
                                                  Entropy (8bit):2.5582353437492715
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3FCE7E5326018264B2C8EB72F1845CA1
                                                  SHA1:860A208F6D2A93112A37A016E8A13DC13E8D4A29
                                                  SHA-256:A04CE7D1FEF4E9E0CBA6F8184F257F3921E8F2F1AD0F238CBE2C373497388CDA
                                                  SHA-512:991EC746A6FC4CB1E6F5C0C9007C5AE832B495D887E1F9506743ABDF44EC5306DF21BA11D9E5F934CD16B9F3728F369928C03CDD066453C8066F186B98CD8E12
                                                  Malicious:true
                                                  Reputation:unknown
                                                  Preview:!BDN...)SM......\..._...........D.......`................@...........@...@...................................@...........................................................................$.......D......@...............C........d......@...................................................................................................................................................................................................................................................................................................<"@.n.\.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                  Process:C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
                                                  File Type:data
                                                  Category:dropped
                                                  Size (bytes):131072
                                                  Entropy (8bit):2.6284988269119256
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:61B19D95B091314F86FCD19495BDB297
                                                  SHA1:A19AE67222951D8D987396B43BE46DD2FB705316
                                                  SHA-256:0623A5D7FF28B83B400ACADB4A69A8B650EC3D0BBF895D6A25B01890E2D5009C
                                                  SHA-512:7F6C83153FE8664CBDEF48B30A34F0AF72EE710D8559523DAE6E305030F86E2BB2CB74CEC90A5C0410A515C322F7BE34C134D96EAF2604CAC54A9E9FF8274E43
                                                  Malicious:true
                                                  Reputation:unknown
                                                  Preview:.N.~C...]............aP..f....................#.!BDN...)SM......\..._...........D.......`................@...........@...@...................................@...........................................................................$.......D......@...............C........d......@...................................................................................................................................................................................................................................................................................................<"@.n.\..aP..f.......B............#.........................................................................................................................................................................................................................................................................................................................................................................................................
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 190152
                                                  Category:downloaded
                                                  Size (bytes):61052
                                                  Entropy (8bit):7.996159932827634
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:C1E82BF71ADD622AD0F3BF8572F634FC
                                                  SHA1:6CA863D4CAB96669202548D301693B3F5F80B0D5
                                                  SHA-256:BA48AF15D297DB450DC4870242482145ADDB2D18375A4871C490429E2DC5464A
                                                  SHA-512:820A7F8A0C8EA33A8FE1E90CDC35F45DC1E143E836B0D8EA047E1E312F8CAEC72CDEE4E7DB54760A4D749CD0ACFE103A27E39A9A56EB2D704E448A67B0D0C079
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/js/oneDs_f2e0f4a029670f10d892.js
                                                  Preview:...........iw.F.0.....'W...4)/qH#..D.L.EK...................().}.{..@.z........Qz.,..Ox.....i4..S.&.p......9..W....);a.].a....Y......Y<,.n..."`Is....5....P..|.-..x1.F...@...yRlG.O..5.Q.|.gy.c.^....r.EC.....xd.oL..$./..|3.......r^.j.}...M... )x.D.....%.....B..t....vZ....2L......px.G.1.*.lZYh...$.....,.../.a..;Q...._..#.....e.T.:trA_.0.:.f...........(I.x?.S...<7...o..0.`r.x.+.2..o+...4/..vzY7.C'.....!.r..4n....]P.+a..........._.8,..G>...{.4B....o.9.....r......X3..U.....'.0.@...lrX....r.W\e...].}....(.l......=........3....S..........^=D..[.zw6..e...<WQ.w.(.X..S....>.^.....^B..O-.(..U.R;h..v.......4.Dc .?..z....r.._.Y......M.a.?,...?..U.....OF.w\h$.Q..5....Q.Oj ....5U..8..Y......gYZM....y..OrY.z]B..y..;o.....oT.r...H..{K...Y&Q.......*..W....N4.......].0m..m........E.bc..~..e.. .nzS.i3^......).,Y}.=1H...... V...g.)....X..G...C....@o,.i.~...as...ehEH....u9l.2...y\J.?.(.I.q%..F#..D../>pr$...,...m.6..:,<s..~S.fl;k.'<..}z.Y.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (7965)
                                                  Category:dropped
                                                  Size (bytes):8136
                                                  Entropy (8bit):5.128500116202406
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:692906E147A4306A10623B24511EE10C
                                                  SHA1:CE92C758DE9440D5195B04E2F71A57476F2EF444
                                                  SHA-256:F7B86D4053EF73B861F31139C0A3FC374CC14310E84261131FA0A34F4C92138E
                                                  SHA-512:42B69323BA7119E8463343DFDAFB65536D458F96E7615FCDD7583B515DF0276A2EE95271BDFA0B9DF1D3A3F6A4901CA9458C070166D09D398240E1AD8BE20051
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1946.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1946],{1946:function(e,t,a){a(83995),a(83725),a(52598);var i=a(74692),n=a.n(i),o=a(4523),d=a(19753),l=a(973),r=a(3147),c=a(23664),s=a(89221),h=a(85919),u=a(19839),g=a(51552),p=a(6232),v=0,f=h.A.extend({tagName:"div",className:"modal",events:{"click .close":"cancelOrClose"},dialogId:null,uri:null,useCache:!0,$lastActiveElement:n()([]),initialize(e){},mapUriData(e){return e},update(e,t){t=t||{},e=e||{};var a=this;function i(e){var t=!!e;if(d.default.envelope){var i=e.resources||{},n=d.default.envelope.resources||{};(e=o.default.extend({},d.default.envelope,e)).resources=o.default.extend({},n,i)}t?a.reload(a.mapUriData(e)):a.render(),a.$el.attr("modal-ready","")}"envelope"!==this.uri&&d.default[this.uri]?(i(d.default[this.uri]),t.afterUpdate&&t.afterUpdate()):this.uri&&!d.default[this.uri]?(t.showProgress&&g.A.trigger("
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:SVG Scalable Vector Graphics image
                                                  Category:dropped
                                                  Size (bytes):150
                                                  Entropy (8bit):4.845018163410625
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C97430373AB9005C3A90AF1A0BE778CA
                                                  SHA1:C9AF625A22C3A2A367AEE01205899BAF147596B2
                                                  SHA-256:5E674F5B96257920F3E7609E564B1AA0B06A9770422C9AD06D9D5E0D651608A0
                                                  SHA-512:C248DE71B5210C8452C17F44B58B370916F4760E607D36F5468C193972CA738FFDD00EBA48DE51F34446C40886820C5EAD9AFA0F777F36299D2E2DDCD09FB831
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:<svg width="24" height="24" viewBox="0 0 24 24" xmlns="http://www.w3.org/2000/svg">. <path d="M11 2h2v9h9v2h-9v9h-2v-9H2v-2h9" fill="#FFF" />.</svg>.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (60823)
                                                  Category:dropped
                                                  Size (bytes):60994
                                                  Entropy (8bit):5.309820038535239
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:8D094C2004170DA4E79273A4F0B89C21
                                                  SHA1:971117A5EB57550B615E578772CEBCDB47E1D271
                                                  SHA-256:3853042C1F63FF50E062B8816DB5F7DBD7B2219AEB6390A3352A1673AE97EBDE
                                                  SHA-512:E1B96E6506DB1E99CD9383E3CCBF82386CD6F06FEDBDE18119B8AF24EE42EF676FE20CEF330962128A826BA7093A1FA50A74A3F0C57FCBE1441D277A6AB4B53C
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.7417.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7417],{49810:function(e,t,r){r.d(t,{A:function(){return s}});var n=r(96540),o=r(75704),i=r(3574),a=r(28936),u=r(79943),l=r(52738),c=r(52474),f=r(42134);function s(){var e,t,r=(0,f.A)(),s=(0,a.remToPx)(25),d=!(null==r||null===(e=r.recipient)||void 0===e||!e.emailAddress)&&(null==r?void 0:r.isCompleteState)&&(null==r||null===(t=r.recipient)||void 0===t?void 0:t.isAccountless),y=(0,u.GV)(l.JU)<o.SL.small+(isNaN(s)?400:s)||(0,i.Fr)();return{style:(0,n.useMemo)((()=>(0,c.YG)(y)),[y]),isMobileLayout:y,isEnabled:d}}},52474:function(e,t,r){r.d(t,{UA:function(){return o},YG:function(){return i},pG:function(){return a}});var n=r(17437),o=(e,t,r,o)=>({container:(0,n.css)({position:e?"relative":"fixed",zIndex:o&&t&&r.modalIsShowing&&!r.finishLineSlideUpShowing?800:void 0},"","")}),i=e=>(0,n.css)({display:"flex",flexDirection:e?"
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (12968)
                                                  Category:dropped
                                                  Size (bytes):13139
                                                  Entropy (8bit):5.4716528939923466
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:CF46A782EF037E7340AF6799B01ACF34
                                                  SHA1:4C1E9AC53E9B0B4BAAEBC5D460B0FF877EFCCC6F
                                                  SHA-256:8E3DD7053C226A1CFBC5BAB888F219297740B7C9363D883BC839D8BC697DCA93
                                                  SHA-512:236BA68FE8CB15531811E68DB32E09D497BFD7D2EFC21A2490013A953590F0156660216178F8BFE4A30C4B555E61BD87137F1C67854C56FAC263409EC53377DB
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8190.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8190],{7582:function(e,o,r){r.d(o,{v:function(){return H}});var n=r(97032),a=r(27026),t=r(96540),i=r(61372),l=r(90812),s=r(5556),c=r.n(s),d=r(60631),u=r(23401),p=r(4337),f=r(44165),g=r(49956),x=r(9288),b=r(53322),A=r(19306),m=r(24914),h=r(57838),v=r(59793),C=r(19747),k=r(43507),I=r(40892),S={base:()=>({wrap:{"a, a:hover, button, button:hover":{color:"inherit"}}})},w=r(17437),y=["accessibilityText","forwardedRef","href","onClick","rel","target","text"];function E(e){var o=e.accessibilityText,r=e.forwardedRef,t=e.href,i=e.onClick,l=e.rel,s=e.target,c=e.text,d=(0,a.A)(e,y),u=(0,v.$)(S);return(0,w.jsx)("div",{css:u.wrap},(0,w.jsx)(I.$n,(0,n.A)({},d,{accessibilityText:o,forwardedRef:r,href:t,kind:"tertiary",onClick:i,rel:l,target:s,text:c})))}E.displayName="InlineMessage.Action",E.propTypes={accessibilityText:c().string,"
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65447)
                                                  Category:downloaded
                                                  Size (bytes):89501
                                                  Entropy (8bit):5.289893677458563
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:8FB8FEE4FCC3CC86FF6C724154C49C42
                                                  SHA1:B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4
                                                  SHA-256:FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E
                                                  SHA-512:F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://code.jquery.com/jquery-3.6.0.min.js
                                                  Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text
                                                  Category:downloaded
                                                  Size (bytes):788
                                                  Entropy (8bit):4.9019698351522845
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:CB4FD3AF4DEEBD7277FCD75A576BF633
                                                  SHA1:71A7BC5DE0F92581F2A9F8DCED86578E01B4856C
                                                  SHA-256:F6C29AE65E37D866FEFB836DB488C4D044414798EC995B2B69CD067949938DD9
                                                  SHA-512:1507C60248859484296F0CF5D1D0AB73BA4B2522A8D05C37773E45AE57C381BFC1FBFC1E38C2F1EE4DB626C1E4AF8C973B38FAD6C5FD74A4423FD78CFEE47E85
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/css/font-faces.css?cs=082ab8cc7
                                                  Preview:/** mix ins **/..list-no-style {. list-style: none;. padding-left: 0;.}.@font-face {. font-family: 'Maven Pro';. src: url('../fonts/maven-pro/MavenPro-Regular.eot');. src: url('../fonts/maven-pro/MavenPro-Regular.eot?#iefix') format('embedded-opentype'), url('../fonts/maven-pro/MavenPro-Regular.woff') format('woff'), url('../fonts/maven-pro/MavenPro-Regular.ttf') format('truetype');. font-weight: normal;. font-style: normal;.}.@font-face {. font-family: 'Maven Pro';. src: url('../fonts/maven-pro/MavenPro-Bold.eot');. src: url('../fonts/maven-pro/MavenPro-Bold.eot?#iefix') format('embedded-opentype'), url('../fonts/maven-pro/MavenPro-Bold.woff') format('woff'), url('../fonts/maven-pro/MavenPro-Bold.ttf') format('truetype');. font-weight: bold;. font-style: normal;.}.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):74443
                                                  Entropy (8bit):5.342806467692451
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9F5EDE38B0D1D7FE0EE6E2A72BB52655
                                                  SHA1:DD7C0784B957C8103AEEF4200A1B658EFFDE28C5
                                                  SHA-256:83F8ECFA94B75E542672E438B4CFA06B7A819F78CD130BDD700FD2269EE4C44E
                                                  SHA-512:DC978E280B74078254CE1EA21A319BFF87027A0291EA10FEA353A35039021549DB4E280792A6F0477EF14512EFEC52D13BE2A9509760F7781C8DEA041BF1D536
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.6693.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6693],{57279:function(t,e,n){"use strict";var r=n(5946);Object.defineProperty(e,"__esModule",{value:!0}),e.default=void 0;var a=r(n(61240)),o=r(n(20271)),i=r(n(43563)),u=r(n(70533)),c=function(){function t(){(0,o.default)(this,t),(0,u.default)(this,"queue",new Array),(0,u.default)(this,"workingOnPromise",!1)}return(0,i.default)(t,[{key:"enqueue",value:function(t){var e=this;return new a.default((function(n,r){e.queue.push({worker:t,resolve:n,reject:r}),e.dequeue()}))}},{key:"dequeue",value:function(){var t=this;if(this.workingOnPromise)return!1;var e=this.queue.shift();if(!e)return!1;try{this.workingOnPromise=!0,e.worker().then((function(n){t.workingOnPromise=!1,e.resolve(n),t.dequeue()})).catch((function(n){t.workingOnPromise=!1,e.reject(n),t.dequeue()}))}catch(t){this.workingOnPromise=!1,e.reject(t),this.dequeue()}return!0}}]),
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (30984)
                                                  Category:dropped
                                                  Size (bytes):31159
                                                  Entropy (8bit):5.242540707783587
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:48BC933608F733A9283F2218C73A941F
                                                  SHA1:E04E625C70A5E8505B77A51D82D9A73AFA9F3547
                                                  SHA-256:FCBC395A3D24699D9229846A30C9FE245D77A7AFDBC8386838A03A837C6672AA
                                                  SHA-512:DED1BDD62FAAD01AF0B6F05A28A8D8721080B862EFDD5866EBDB4672A21A8EE15D3965B523C691784B7EF8817296707D5A3217F7B8CE713B212520EE9170329B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.9788.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9788],{44903:function(e,t,n){var i,o;"undefined"!=typeof self&&self,i=function(){"function"!=typeof Promise&&function(t){function n(e,t){return function(){e.apply(t,arguments)}}function i(e){if("object"!=typeof this)throw new TypeError("Promises must be constructed via new");if("function"!=typeof e)throw new TypeError("not a function");this._state=null,this._value=null,this._deferreds=[],c(e,n(r,this),n(a,this))}function o(e){var t=this;return null===this._state?void this._deferreds.push(e):void p((function(){var n=t._state?e.onFulfilled:e.onRejected;if(null!==n){var i;try{i=n(t._value)}catch(t){return void e.reject(t)}e.resolve(i)}else(t._state?e.resolve:e.reject)(t._value)}))}function r(e){try{if(e===this)throw new TypeError("A promise cannot be resolved with itself.");if(e&&("object"==typeof e||"function"==typeof e)){var t=e.t
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65443)
                                                  Category:downloaded
                                                  Size (bytes):267758
                                                  Entropy (8bit):5.366482895216327
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:B1FA43C51165384F28F7F82E3E98ABEB
                                                  SHA1:A3BE0C01C4AFC309278939BF40B9DFEC6E3986E8
                                                  SHA-256:55274DD290C23153BB2DE0407939A6FC07ACF84B1A4F74632F3E6191728B578F
                                                  SHA-512:C46384A5EE7A2190C33F8E34194AB2F5D22D6F9E9B782BB8980E01F9B37A8D34E7B203B4E524D40ADE94B00ED1CD9D2A2BDEB87B675D0385A655415618B71538
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.react-app.js?cs=179d69edb02e48220c12
                                                  Preview:/*! For license information please see signing_iframeless_mobile.react-app.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4210,2522],{15324:function(e,t,r){var n=r(93633);e.exports=(n.default||n).template({compiler:[8,">= 4.3.0"],main:function(e,t,r,n,o){var i,a=e.lambda,l=e.escapeExpression,c=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return'<div class="center-content"><div class="text-wrap"><h3>'+l(a(null!=(i=null!=t?c(t,"resources"):t)?c(i,"slideUpTitle"):i,t))+"</h3> <p>"+(null!=(i=a(null!=(i=null!=t?c(t,"resources"):t)?c(i,"slideUpText"):i,t))?i:"")+'</p></div><button type="button" class="finish-button btn btn-main btn-lg" data-action="action-bar-finish" data-qa="slide-up-bar-finish-button" id="slide-up-bar-finish-button" aria-label="Finish" data-allow-unprompted-exit disabled="disabled"> '+l(a(null!=(i=null!=t?c(t,"resources"):t)?c(i,"slideUpButton"):i,t))+" </button></div>"},useData:!0})},6
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 3651
                                                  Category:dropped
                                                  Size (bytes):1435
                                                  Entropy (8bit):7.8613342322590265
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9F368BC4580FED907775F31C6B26D6CF
                                                  SHA1:E393A40B3E337F43057EEE3DE189F197AB056451
                                                  SHA-256:7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36
                                                  SHA-512:0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:...........WMo.7..+..uV.HJ...{..........&..v...(Q.F.....aW.Q.|..~.|{~...b{8...zv.....8|...b.gxb.y{.x<\lS...p...p..l7...o.}.v.....t.........r..r.|9?.......HP...r.4.aGA.j....7.!....K.n.B.Z.C.]....kj..A..p...xI...b..I!K..><.B..O....#...$.]h.bU.;.Y...).r.u....g*.-w.2..vPh....q....4_..N\..@y).t{.2pj.f..4h.....NC.....x.R..P..9.....".4.`%N..&...a.@.......fS)A4.F..8e9KHE....8d.CR.K..g..Q.......a....f.....dg*N.N.k..#w..........,.".%..I.q.Y.R]..7.!.:.Ux...T.qI..{..,b..2..B...Bh...[o..[4....dZ.z.!.l....E.9$..Y.'...M.,p..$..8Ns3.B.....{.....H..Se3....%.Ly...VP{.Bh.D.+....p..(..`....t....U.e....2......j...%..0.f<...q...B.k..N....03...8....l.....bS...vh..8..Q..LWXW..C.......3..Pr.V.l...^=VX\,d9f.Y;1!w.d,.qvs....f*;.....Zhrr.,.U....6.Y....+Zd.*R...but....".....4.L...z........L.Q......)....,.].Y.&....*ZsIVG.^...#...e..r....Z..F..c..... .QDCmV..1.~...J9..b_Oov\..X.R..._.TqH.q.5G.0{ZphQ..k...s..\.../.Dp..d`#......8.#Y...Mb.j.Q......=n4.c....p.[.SI.....0.N.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with no line terminators
                                                  Category:downloaded
                                                  Size (bytes):16
                                                  Entropy (8bit):3.75
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C9785540787087E135E2E3256D4128E6
                                                  SHA1:41BD40CDDBF7127B59A6D093F72D6EF7AC2E45D4
                                                  SHA-256:ADB38815ED6BC0240FFD0E7299D9CFA5860D5C662C7C2B4DAE11EF97EC951B05
                                                  SHA-512:6B30566B0D5AEA45E318E7FF711E7BD4873933FB61C438B3F3C1ED46D81BF2AA1AB5EAB72EE3E2577E5785DADB479670157A0332AE9775AFD18DA77FAB0005B2
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xNDkSEAkWM_vpq0FVuBIFDaLAi2s=?alt=proto
                                                  Preview:CgkKBw2iwItrGgA=
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 406986
                                                  Category:dropped
                                                  Size (bytes):116345
                                                  Entropy (8bit):7.997378915283506
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:7570EB58C2BCE45B24EA431EB15D27B5
                                                  SHA1:0DE0A6616E6BF7B045CFC456E4E3DF6760617CFA
                                                  SHA-256:5AEE6747482DFC52A669CAED6BE1B9319536AC9514C2D7354B879F093ABB212A
                                                  SHA-512:696D4C3765DA2936461D15C89A41F98EDED30F202C422143D921D6096D7DD6456479F48B1065398323F7DFE60B5D3452B0C3C67DD01EE041E51CFBCA9125D86D
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:...........k{.H.(.}............'qz<..>.3==..G..(..../m..]kU.T......|x....T.Z...O....T.........e..]../'.o+gp.k.........F....+#..+.{..|X..J.U.`.F.0...W..7.Ie...J2.Y.~.$.L.8....$...P]4..yQ.P99..P?....?........I%....+^0..&p..2..<........Da...J....F.9<.7.*^.+1O*.0J..........h1....[....h..............u".....C%.+..\.>....T`.1....... i......8.TB(.Uh.b.{...@<y..D^.S.....n".<H.L..O..*.t........p6..\[...yCm.J.k.....b..vg....-.j.$........1....p~3.b.....n....[_c..{1WN.l~.=...........?......S.}U..g.......t..../...........|.+...-y.X\...l.....>;."....ye.\.....h..p.f.8...[/..nd.,..O.b>.6-......c7.}.yp.c5.R6p..E...z3.......y7.d.M..K...n.h...OX.&..d.[/...ng.S.Ae..D<.GAe..&.^7......'..b...#..X..q....O.~W.M3.+b..m.>&^t.O..I.LU.;..a....&.k.$...{.{.^.....3OX.Oy8O...f.%..o..]..9....Ln-...'.....A.3y..v=l....G......i..../...--k...p..m..Y........XV...i.......;.o..zyc@..MLoy.b_.,.....5..w=..#.^..M.P.'<_.j...m..|......0...w../...>\...l.>.....h...q>.w...ZM[...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (64503), with LF, NEL line terminators
                                                  Category:dropped
                                                  Size (bytes):372115
                                                  Entropy (8bit):5.444341372057137
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9ED8BEE7B978131683D6098421B80779
                                                  SHA1:9B9112B43696421E323D97C93C209115CC1226E2
                                                  SHA-256:9FA95C63109DAB840063E4BC53B6AD4C9353C58F010669102F76F033B99654E2
                                                  SHA-512:934D2892FBED30508DC617E6C58D718D21745D942760D7E9C75314DD2175FAF1C91D85133F43B89271B543C567DCB3C9B962EE18EACB159D041967D2335C9F07
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.js.LICENSE.txt */.!function(){var t,e,r,n,o,i={79100:function(t,e,r){"use strict";r.d(e,{_:function(){return s}});var n=r(38729),o=function(){function t(){}return t.prototype.active=function(){return n.l},t.prototype.with=function(t,e,r){for(var n=[],o=3;o<arguments.length;o++)n[o-3]=arguments[o];return e.call.apply(e,function(t,e,r){if(r||2===arguments.length)for(var n,o=0,i=e.length;o<i;o++)!n&&o in e||(n||(n=Array.prototype.slice.call(e,0,o)),n[o]=e[o]);return t.concat(n||Array.prototype.slice.call(e))}([r],function(t,e){var r="function"==typeof Symbol&&t[Symbol.iterator];if(!r)return t;var n,o,i=r.call(t),a=[];try{for(;(void 0===e||e-- >0)&&!(n=i.next()).done;)a.push(n.value)}catch(t){o={error:t}}finally{try{n&&!n.done&&(r=i.return)&&r.call(i)}finally{if(o)throw o.error}}return a}(n),!1))},t.prototype.bind=function(t,e){return e},t.prototype.enable=function(){return this},t.prototype.disable=function(){return this},t}
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (8653)
                                                  Category:dropped
                                                  Size (bytes):8824
                                                  Entropy (8bit):5.305114814588076
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:59DA8F17B9EF7A70CFFDD7EED9FF8FB8
                                                  SHA1:D5E1002BD5C38ACF7037BB8FC32A02E1D625FF28
                                                  SHA-256:3DB02C718EFC9D1A9F4855270DE4F495C28F7D2739782DFAAD07691F9BCF1A37
                                                  SHA-512:E4E6B5501127805541AB9BEBA688F3F5E74CB589713A1D21552B5EFC0EBCCB29BF339F5E1115B570E2436F4C2CE290BBE02FC9D6EB263CE0F48AE83EBBFD140B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.4942.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4942],{18049:function(e,t,i){i(40590),i(83515),i(15195),i(18665),i(28743),i(14913),i(87136),i(70617),i(6048),i(14602);var n=i(21391),s=i.n(n),a=i(4523);function r(e,t){(null==t||t>e.length)&&(t=e.length);for(var i=0,n=new Array(t);i<t;i++)n[i]=e[i];return n}function o(e,t,i){var n,r=(i=i||{})._isSideEffect,o=null===(n=this.computed)||void 0===n?void 0:n[e],d=o&&this.computed[e].set,l={};return o&&(l=a.default.extend({useTwoWayBinding:!0,useModel:this},this.computedDefaults)),r||!o?s().Model.prototype.set.call(this,e,t,i):d?d.call(this,t,i):l.useTwoWayBinding&&g.call(this,e,t,i),this}function d(e,t){var i,n,s=(t=t||{}).useModel||this,a=t.useAttribute,o=t.useAttributes;return a?e=a:null!=o&&o.length&&(e=(i=o,n=1,function(e){if(Array.isArray(e))return e}(i)||function(e,t){var i=null==e?null:"undefined"!=typeof Symbol&&e
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (65445)
                                                  Category:dropped
                                                  Size (bytes):313895
                                                  Entropy (8bit):5.318592921326827
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:E76F3C83AFCE275895F47248F6F6DCDD
                                                  SHA1:E9D2954085E6BE7C3EE0149A13580D68C6F64DE4
                                                  SHA-256:CBF9C856DE653E292DDC047E6BA5F5D19A21D872AF576427E5F99C97BEE3B355
                                                  SHA-512:8DBE846422D2AE1C0E238CF336A0A2A912CE90E37C08D79EAC5FB43A7CA59D82053C1B31659A6132969937A350CF87691DC31BCF7B3D82EC00EF4E495D4AAC30
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8144.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8144],{51544:function(e,t,n){"use strict";n.d(t,{dF:function(){return a},fC:function(){return u},mB:function(){return l}});var r=n(39653),o=n(56213),i=n(49859),a=function(){function e(t){(0,r.A)(this,e),(0,i.A)(this,"thunk",void 0),this.thunk=t}return(0,o.A)(e,[{key:"value",get:function(){return this.thunk()}}]),e}(),u=new a((function(){return window})),l=new a((function(){return document}))},60258:function(e,t,n){"use strict";n.d(t,{Nc:function(){return fe},U1:function(){return E},Z0:function(){return T}});var r,o=n(16535),i=n(68238),a=n(1265),u=(r=function(e,t){return r=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var n in t)Object.prototype.hasOwnProperty.call(t,n)&&(e[n]=t[n])},r(e,t)},function(e,t){if("function"!=typeof t&&null!==t)throw new TypeError("Class extends v
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with no line terminators
                                                  Category:dropped
                                                  Size (bytes):23
                                                  Entropy (8bit):2.9140163035068447
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:84100B349395F367D41A8B44D0020355
                                                  SHA1:676BB250F143F6C863C58C79B4CA1ABF7312DF00
                                                  SHA-256:5EAE3F71BE133111621E17FEE9DC04578D885A74EAF4D40AAC9634B7DB4B5459
                                                  SHA-512:ED8456F12F188F50E15D845B240AA62195709005505A59CB5A6033C139D902DF4D504873B80E7156D79358AC901A779DBD3CA6C0010BF16D5FE18C77385081CE
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:<success>true</success>
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:HTML document, ASCII text, with very long lines (3450), with CRLF line terminators
                                                  Category:downloaded
                                                  Size (bytes):3452
                                                  Entropy (8bit):5.117912766689607
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:CB06E9A552B197D5C0EA600B431A3407
                                                  SHA1:04E167433F2F1038C78F387F8A166BB6542C2008
                                                  SHA-256:1F4EDBD2416E15BD82E61BA1A8E5558D44C4E914536B1B07712181BF57934021
                                                  SHA-512:1B4A3919E442EE4D2F30AE29B1C70DF7274E5428BCB6B3EDD84DCB92D60A0D6BDD9FA6D9DDE8EAB341FF4C12DE00A50858BF1FC5B6135B71E9E177F5A9ED34B9
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://login.live.com/Me.htm?v=3
                                                  Preview:<script type="text/javascript">!function(t,e){for(var s in e)t[s]=e[s]}(this,function(t){function e(n){if(s[n])return s[n].exports;var i=s[n]={exports:{},id:n,loaded:!1};return t[n].call(i.exports,i,i.exports,e),i.loaded=!0,i.exports}var s={};return e.m=t,e.c=s,e.p="",e(0)}([function(t,e){function s(t){for(var e=f[S],s=0,n=e.length;s<n;++s)if(e[s]===t)return!0;return!1}function n(t){if(!t)return null;for(var e=t+"=",s=document.cookie.split(";"),n=0,i=s.length;n<i;n++){var a=s[n].replace(/^\s*(\w+)\s*=\s*/,"$1=").replace(/(\s+$)/,"");if(0===a.indexOf(e))return a.substring(e.length)}return null}function i(t,e,s){if(t)for(var n=t.split(":"),i=null,a=0,r=n.length;a<r;++a){var c=null,S=n[a].split("$");if(0===a&&(i=parseInt(S.shift()),!i))return;var l=S.length;if(l>=1){var p=o(i,S[0]);if(!p||s[p])continue;c={signInName:p,idp:"msa",isSignedIn:!0}}if(l>=3&&(c.firstName=o(i,S[1]),c.lastName=o(i,S[2])),l>=4){var f=S[3],d=f.split("|");c.otherHashedAliases=d}if(l>=5){var h=parseInt(S[4],16);h&&(c.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 57678
                                                  Category:downloaded
                                                  Size (bytes):16378
                                                  Entropy (8bit):7.986541062710992
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:FC8A7FB6FB26ADEB81D76A33DA13B815
                                                  SHA1:ADEF9857A4FC698836B613252AE8B1FC0EC199DE
                                                  SHA-256:A3D6351A6E93FC23C2A3ABFFCBDC847D42B8781DBFFBCCEEF4FEF72E0D5D4A14
                                                  SHA-512:DE70865494E5D2A32353614CC7D8305CAA83E1605F6BF03C58DD6E19D92FDE8B33B3E26ED3A65D739DEA20984130D39B6E43641B04918CC906DEC17E51B0D582
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/ux.converged.login.strings-en.min_v20ia-gahguvu2fgvxamhg2.js
                                                  Preview:...........}Ms#.......\.@..'F.........3RH2....~......Q.x7...}..'.}..?e#...QU]....Vo..................?........w!......=.G...P.../......8z....q._5....g..}g..31......l*...],.b..;..`...Y....3..5.uGAi..NP.6<.w.(..`...y..d.N.x..^u.....^...?..N........Fq.....z..wgN./..Ep/f..c/.D4~X.W~).s/.E8...T...8,:..Q.p>.....7.....4....Z,&c.)n.[.pcQp...4...&...i.............CkL=.....g..m&vG..p... ....:N`y...ea.,....[......^.../D#(y.....l4.n..,.=_.p2P.....A,..RP..E.T......8 .v....Iw.X..?.r......nk....?Wj..a.|..........JAs.j......?.)..t.z.-..m.]..3y...3@...'.)...Aa..1.kQ.....l+.....-q..n.p..{^...$..{/...=a..A...4.VH}..SBwju......S..hN.P..-..O,..S7.J,.....p.iLU.6W.....eO.7 ..C...{.E.Z...1...5s.!uY...@^. ,D".N.E......5.NE..\...VQa.A7..X.B..{.q..Ra..S....x(x7.Cp.#.#..:.......D..`,!IGr.. ...z.?.._0O.......;..0.z.h....5.../...q..5.|..B.OY..k...].Sw.>.".@..!.9.V|...=.dv.3!sr.....#...X8s.w.|7..O/....!.."...3.."D..)...[........!^....3(..{...F2'..q.....x........
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:JSON data
                                                  Category:dropped
                                                  Size (bytes):72
                                                  Entropy (8bit):4.241202481433726
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9E576E34B18E986347909C29AE6A82C6
                                                  SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                  SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                  SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (9431)
                                                  Category:dropped
                                                  Size (bytes):9602
                                                  Entropy (8bit):5.259948425902259
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:90428EDCBC48709F47540EBC3FEAD4CA
                                                  SHA1:FB51A54DC1E550C67A79EF59476AD9270AE8A848
                                                  SHA-256:525F2892C0C550237EFA4CDC64C721DD7F70F75114508C676DE493D7357D42F2
                                                  SHA-512:EB751D9B3BBED4110EB75FE89FEBD1CEDFA84D3CEF71484572136D965DEBE22194FAF5559FE0C5A455045D6D4AFE007603753A3A2802B2F7A530C765514F6CF7
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.9904.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9904],{79904:function(t,e,i){i.d(e,{A:function(){return u}}),i(28743);var n=i(8784),a=i(13861),s=i(16297),r=function(t){this._make(t)};a.A.extend(r.prototype,{_make:function(t){this._data=a.A.cloneDeep(t)},id:function(){return this._data.documentId},name:function(){return this._data.name},number:function(){return this._data.order},numberOfPages:function(t,e){var i=this._data.pages;return arguments.length&&t!==i&&(this._data.pages=t,s.A.send("document:change:numberOfPages",a.A.extend({},{id:this.id(),numberOfPages:this.numberOfPages()},e))),this._data.pages},displayType:function(){return this._data.displayType||""},includeInDownload:function(){return this._data.includeInDownload},thumbnailsCollapsed:function(t){"boolean"!=typeof this._data.thumbnailsCollapsed&&(this._data.thumbnailsCollapsed=!1);var e=this._data.thumb
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Web Open Font Format (Version 2), TrueType, length 31436, version 1.0
                                                  Category:downloaded
                                                  Size (bytes):31436
                                                  Entropy (8bit):7.993250168057893
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:BA0E987E564CD3409E9D6F690D641F55
                                                  SHA1:1C2684BD20C775B7497796C2FA66AD4943F6B824
                                                  SHA-256:346CFD3DF3DBB80D08655AE396A413F66CBCCFCF201EAE36A6403DCF7ED372BC
                                                  SHA-512:DFBA7D6B8114C9DD1A3288E053F6E7C18A1909F6CBBDF35E46B1972E15497D1C35FE1007FC90CAF111D20AB036D9E1C73C15EDD7B2BF24F24CA4A2A36EBA571D
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Semibold.woff2
                                                  Preview:wOF2......z.......jl..zc........................?FFTM..6...H..t.`..V.(..e.....l..).....6.$..(. ..4..3..M[WL.....{(HD.!..:.jV;\.......vy.b.a.us.f..j........{.I..%.%....H.j.v.n.53sP....CI..D.^.>`Jdb.y.. .E.L...I....I...vD.c. .VD..S.f..x.E....v!...k...b.../.....;...s..T..Y~....~N7m...P.wv..t.....K|.(...b...h..~.....m..*{|......SdU.RI._M......*.s...,wW.0.~..P...F1Q..Umt..LP..#.'...........3.......BL..4.\....qL&\.o"...[.A.0..+.r.b...s.y.Y..d..o...KOa.M..Dk..u.?XS..J.i.7..6..)B..W.].....P.......K)q.f.._.Xy.~....>.Cn#G681..jb....3u........I..;....CBI....T*b.T.*...5.Z...jFi9~.'.1.g.M.h<.S....:[..m.3g...,.DQ.A..i..j.T@.E...1u.....X.s._.s.....'.......O....`,...y@......U/a.!.......T.[.0.'`..l(....h.Z..$...m4..h...*._..@...;!=......ZM.TP.......^N.T..p.!.4@.(m...~._....{..&.85j...Q#f...)......................j. t.s]..m..&.^.G...2.........<..(..(..(..(..(..h4..F..._vx...g....P...PU/`...L<..RJ)..i.+3..p.A.+[....=.X...........B...../.(..X........T.U...3M..]....&
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (18133)
                                                  Category:downloaded
                                                  Size (bytes):18328
                                                  Entropy (8bit):5.386707618777103
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D5B06C3E6C0AD9D81781E155ED3C165A
                                                  SHA1:393409373F2BDB490153910D095137EB965235FF
                                                  SHA-256:ACFABC6EDA1F8590472E7CF4C42437A991E72CCD151157D79E800B9931365BF0
                                                  SHA-512:108DAA4F87D0C60BCB1B569DFE2B870E1C3FE9C1EA15D0E0BEEACA26EFA24D5B2EB449FB9599477415792E008DFCCE215C17EE7BF2268E7587FA0009D6D50F3E
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.ai-q-and-a-entry.js?cs=37d207ed78fc7f0112fc
                                                  Preview:/*! For license information please see signing_iframeless_mobile.ai-q-and-a-entry.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6202],{3727:function(e,t,r){var n=r(47061).match(/firefox\/(\d+)/i);e.exports=!!n&&+n[1]},77413:function(e,t,r){var n=r(47061);e.exports=/MSIE|Trident/.test(n)},79965:function(e,t,r){var n=r(47061).match(/AppleWebKit\/(\d+)\./);e.exports=!!n&&+n[1]},35231:function(e,t,r){"use strict";var n=r(51605),o=r(30281),i=r(24601),a=r(92612),u=r(23493),c=r(24881),f=r(95362),l=r(92074),s=r(68039),p=r(92349),h=r(3727),v=r(77413),d=r(6845),y=r(79965),g=[],m=o(g.sort),b=o(g.push),w=l((function(){g.sort(void 0)})),O=l((function(){g.sort(null)})),x=p("sort"),k=!l((function(){if(d)return d<70;if(!(h&&h>3)){if(v)return!0;if(y)return y<603;var e,t,r,n,o="";for(e=65;e<76;e++){switch(t=String.fromCharCode(e),e){case 66:case 69:case 70:case 72:r=3;break;case 68:case 71:r=4;break;default:r=2}for(n=0;n<47;n++)g.push({k:t+n,v:r})}for(g.sort((f
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (21701)
                                                  Category:dropped
                                                  Size (bytes):21890
                                                  Entropy (8bit):5.475647947034734
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:6F46B24C53F2B9DB36DCF91DA4578474
                                                  SHA1:AD77869EFE8F9D762FB4FEC5812774496251ED81
                                                  SHA-256:E53CB26414C50118CC4145E2F1A9FDD776BFFC943B77476647B4ACECF324FEDE
                                                  SHA-512:7DC60004AED08DA51BA8BC8EB8C54E59CEA5AE3FBE1116EB2588373EEB248F20311F0303A900CDC8B93249078ED9924DBF207F4C610E4BD9DC270F224177777C
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.global-modals.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[705],{19790:function(e,t,o){o.d(t,{f:function(){return Y}});var r=o(97032),n=o(38008),i=o(27026),a=o(11265),l=o.n(a),s=o(11393),d=o.n(s),c=o(96540),u=o(5556),p=o.n(u),g=o(6982),b=o(59579),h=o(20770),v=o(53483),f=o(39266),m=o(87515),C=o(90812),S=o(24914),_=o(59793),y=o(94801),A=o(78786),D=o(53811),x={base:e=>{var t,o=e.props,r=e.tokens;return{default:{textarea:(0,D.A)((0,D.A)({},r.fontBodyM),{},{appearance:"none",background:r.formControlBgColorDefault,border:"1px solid ".concat(r.formControlBorderColorDefault),borderRadius:"2px",color:r.fontColorDefault,display:"block",margin:0,minHeight:1===o.rows?void 0:"68px",overflow:"auto",padding:"6px 8px",width:"100%","&:hover":{borderColor:r.formControlBorderColorHover},outline:"1px solid transparent",outlineOffset:"-".concat(r.focusWidth),transitionDuration:"100ms",t
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):85203
                                                  Entropy (8bit):5.193260312264782
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:6FC3263A9F655F3153843A904FC4BE8C
                                                  SHA1:5873D4CAC870350E09F3832815948F9947EF749F
                                                  SHA-256:0F50B06224856C056277006460F94A6894F72EFB39F6888116F6AB988F527A48
                                                  SHA-512:19439EB3A7A57B06304264624D9008B0F21EEC7D7ACC9CEDAA144D7DDF49EF8011EAB4CD78950897A2C34CBE949C92E3D81A47E93DD7C24EDF091EBEDEEBC655
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.9764.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9764],{95390:function(t,e,r){r.d(e,{_d:function(){return n},NA:function(){return p},aJ:function(){return w},bI:function(){return v},_q:function(){return h}});var n="https://a.docusign.com/f",o=(r(40590),r(27727),r(83515),r(17),r(18665),r(28743),r(10557),r(14913),r(30959),r(31586),r(96982),r(3101),r(69193),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602),r(29827)),i=r(40010),a=r(79248);function c(){c=function(){return e};var t,e={},r=Object.prototype,n=r.hasOwnProperty,o=Object.defineProperty||function(t,e,r){t[e]=r.value},i="function"==typeof Symbol?Symbol:{},a=i.iterator||"@@iterator",u=i.asyncIterator||"@@asyncIterator",l=i.toStringTag||"@@toStringTag";function s(t,e,r){return Object.defineProperty(t,e,{value:r,enumerable:!0,configurable:!0,writable:!0}),t[e]}try{s({},"")}catch(t){s=function(t,e,r){re
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
                                                  Category:downloaded
                                                  Size (bytes):61
                                                  Entropy (8bit):3.990210155325004
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9246CCA8FC3C00F50035F28E9F6B7F7D
                                                  SHA1:3AA538440F70873B574F40CD793060F53EC17A5D
                                                  SHA-256:C07D7D29E3C20FA6CA4C5D20663688D52BAD13E129AD82CE06B80EB187D9DC84
                                                  SHA-512:A2098304D541DF4C71CDE98E4C4A8FB1746D7EB9677CEBA4B19FF522EFDD981E484224479FD882809196B854DBC5B129962DBA76198D34AAECF7318BD3736C6B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/cmg/1
                                                  Preview:.PNG........IHDR...............s....IDAT.....$.....IEND.B`.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:SVG Scalable Vector Graphics image
                                                  Category:dropped
                                                  Size (bytes):3896
                                                  Entropy (8bit):4.786686051422741
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:855476199961A10981ADCA7432CEC048
                                                  SHA1:7995725A0CAC73EB6A2A1B5A8D5B162DBF47988E
                                                  SHA-256:6DD60FAA0E35F2DFE342C452ED414A084D384D11793BD0F0EB03C2B1C6F1405C
                                                  SHA-512:A9E61582FA18BCC1DD57DE8A7C194BAB0D6F733897F541A6E13B94906ADC115D65004F5A2649919FA8B8545F0C67C9313A14EAEAF42C34F630DA13CD38E17994
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:<?xml version="1.0" encoding="utf-8"?>. Generator: Adobe Illustrator 28.1.0, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Layer_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. viewBox="0 0 1200 241.4" style="enable-background:new 0 0 1200 241.4;" xml:space="preserve">.<style type="text/css">...st0{fill:#FFFFFF;}...st1{fill:#4C00FF;}...st2{fill:#FF5252;}.</style>.<g>..<g>...<g>....<path class="st0" d="M1169.2,109.7v78.7h-28.9v-73.5c0-17.9-7.7-27.9-22.7-27.9s-24.9,10.5-27.7,28.1c-0.8,4.2-1,10.7-1,24.4.....v48.8H1060v-125h25.6c0.1,1.1,0.7,12.3,0.7,13c0,0.9,1.1,1.4,1.8,0.8c10.6-8.4,22.3-16.2,38.6-16.2.....C1153.5,60.9,1169.2,79,1169.2,109.7z"/>....<path class="st0" d="M1013.4,63.4l-0.9,14.3c-0.1,0.9-1.2,1.4-1.8,0.8c-3.5-3.3-16.4-17.5-38.3-17.5c-31.4,0-54.5,27.1-54.5,63.9.....l0,0c0,37.3,22.9,64.5,54.5,64.5c21.1,0,34-13.7,36.4-16.7c0.7-0.8,2-0.3,2,0.7c-0.3,3.8-0.8,13.3-4,21.4.....c-4,10.2-13,19.7-31.1,19.7
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (47520)
                                                  Category:downloaded
                                                  Size (bytes):47521
                                                  Entropy (8bit):5.3981340461317835
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:7C92EC9D1395055CE0405A32607C7291
                                                  SHA1:4EF0060484503E7A3D005254484D5A7FACF42F27
                                                  SHA-256:A0DDAE0FB79C4A4A66D8613157A0703771FA9BE1A75790FCCF5EEEBAA329788B
                                                  SHA-512:D5FAD8CE3B4B3603A6C48676E3F561437034F469875608FF1795505BFA89853A63767E32A1E65BC541DF18C555F93DB42896AA0C1EBD9B162EFC1899FE2D925B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://challenges.cloudflare.com/turnstile/v0/b/e0c90b6a3ed1/api.js
                                                  Preview:"use strict";(function(){function Wt(e,r,n,o,c,u,g){try{var h=e[u](g),l=h.value}catch(p){n(p);return}h.done?r(l):Promise.resolve(l).then(o,c)}function Ht(e){return function(){var r=this,n=arguments;return new Promise(function(o,c){var u=e.apply(r,n);function g(l){Wt(u,o,c,g,h,"next",l)}function h(l){Wt(u,o,c,g,h,"throw",l)}g(void 0)})}}function D(e,r){return r!=null&&typeof Symbol!="undefined"&&r[Symbol.hasInstance]?!!r[Symbol.hasInstance](e):D(e,r)}function Me(e,r,n){return r in e?Object.defineProperty(e,r,{value:n,enumerable:!0,configurable:!0,writable:!0}):e[r]=n,e}function Fe(e){for(var r=1;r<arguments.length;r++){var n=arguments[r]!=null?arguments[r]:{},o=Object.keys(n);typeof Object.getOwnPropertySymbols=="function"&&(o=o.concat(Object.getOwnPropertySymbols(n).filter(function(c){return Object.getOwnPropertyDescriptor(n,c).enumerable}))),o.forEach(function(c){Me(e,c,n[c])})}return e}function Ar(e,r){var n=Object.keys(e);if(Object.getOwnPropertySymbols){var o=Object.getOwnPropertyS
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (65340)
                                                  Category:downloaded
                                                  Size (bytes):415605
                                                  Entropy (8bit):5.36062093697468
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:7A32D2542343A2F46388076B62E2EBA7
                                                  SHA1:B5F60F839D1C69ACB3E5EC2CAD091E75F1082FED
                                                  SHA-256:56E1E482EF2DB27E98F1829D1E567162449CDA5DF89A3D2DAE16A45CB4FBB3A8
                                                  SHA-512:4C43B3ABE0A0E3F05B3FDF3FEAB374E0202A2C8E3D32589387EB2072ADAA2C1F30E0828697FBE22F2A3952E0B6DFD79D3F092C17F916E83D133284F72E075B97
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.7930.js?cs=a6d4d2413266473130e3
                                                  Preview:/*! For license information please see signing_iframeless_mobile.7930.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7930],{95979:function(t,e,r){"use strict";var i=r(97032),a=r(96540);e.A=({accessibilityText:t,forwardedRef:e,...r})=>a.createElement("svg",(0,i.A)({xmlns:"http://www.w3.org/2000/svg",viewBox:"0 0 24 24",width:24,height:24,"aria-hidden":!t||void 0,"aria-label":t,focusable:!1,ref:e,role:t?"img":void 0},r),a.createElement("path",{d:"m15.66 22-9.41-9.41a.82.82 0 0 1 0-1.18L15.66 2 17 3.34 8.34 12 17 20.66z"}))},88497:function(t,e,r){"use strict";var i=r(97032),a=r(96540);e.A=({accessibilityText:t,forwardedRef:e,...r})=>a.createElement("svg",(0,i.A)({xmlns:"http://www.w3.org/2000/svg",viewBox:"0 0 24 24",width:24,height:24,"aria-hidden":!t||void 0,"aria-label":t,focusable:!1,ref:e,role:t?"img":void 0},r),a.createElement("path",{d:"M22 10v7a1 1 0 0 1-1 1H8l-6 4V5a1 1 0 0 1 1-1h13v2H4v12.26L7.39 16H20v-6zm2-6h-2V2h-2v2h-2v2h2v2h2V6h2zm-
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text
                                                  Category:downloaded
                                                  Size (bytes):119869
                                                  Entropy (8bit):4.18401975910281
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:ECE7A224F69AB2205D90900589AE1D05
                                                  SHA1:3D861B816A5DA892C8A88D5755A5537C036239DE
                                                  SHA-256:FFA8C6A4CE199BFD9E32B05E0E4DECE330C6A577FB3A0E8518291619C658C486
                                                  SHA-512:EEF4BDD54AF95BE42224FFE605BB627293DAEA0C58A50B328ACC8B56040C81FDCB5EC8406F56856FC617A552E4D6DD28BB892467666889D27F03EE8BFCD16D7B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/v/static/mixpanel-2-2-1b.js
                                                  Preview:/*. * DocuSign modified version of Mixpanel JS Library v2.2.1. * $initial_referer and $referer have been removed, as not to send any senstive information. * $initial_referring_domain and referring_domain have been retained.. *. * Mixpanel JS Library v2.2.1. *. *. * Copyright 2012, Mixpanel, Inc. All Rights Reserved. * http://mixpanel.com/. *. * Includes portions of Underscore.js. * http://documentcloud.github.com/underscore/. * (c) 2011 Jeremy Ashkenas, DocumentCloud Inc.. * Released under the MIT License.. */..// ==ClosureCompiler==.// @compilation_level ADVANCED_OPTIMIZATIONS.// @output_file_name mixpanel-2.2.min.js.// ==/ClosureCompiler==../*.Will export window.mixpanel.*/../*.SIMPLE STYLE GUIDE:..this.x == public function.this._x == internal - only use within this file.this.__x == private - only use within the class..Globals should be all caps.*/.(function(mixpanel) {. /*. * Saved references to long variable names, so that closure compiler can. * minimize file size.. */. var
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (13924)
                                                  Category:downloaded
                                                  Size (bytes):14097
                                                  Entropy (8bit):5.414140290694786
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:41403EBC0C1959190A0FFE44CDEBD968
                                                  SHA1:0188A9E98695857EA387EE6C1CE75E7ACBFE9375
                                                  SHA-256:E9BE758D797800D4A709720EBC0E05438EA2B2C09220A943C2C0F207FD1755EC
                                                  SHA-512:BF89B06D392F00199E6544EF0AB94FC4FA902921EAF26899B43CF29BEC797AF9559EBC691EA8585ADDA323027013294981FD061E0D22C9E0CB33B8D119453AC8
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.2953.js?cs=b6e0084a1adb029e49b6
                                                  Preview:/*! For license information please see signing_iframeless_mobile.2953.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2953],{95648:function(e,t,r){r.d(t,{h:function(){return y}});var a=r(97032),n=r(38008),i=r(27026),o=r(96540),d=r(5556),l=r.n(d),s=r(90812),c=r(78786),u=r(24914),p=r(59793),f=r(53811),m=r(11393),b=r.n(m),x=r(68150),h={base:e=>{var t,r=e.tokens;return{default:{wrapper:{display:"flex",background:r.formControlBgColorDefault,border:"1px solid ".concat(r.formControlBorderColorDefault),borderRadius:"2px",width:"100%",outline:"1px solid transparent",outlineOffset:"-".concat(r.focusWidth),transitionDuration:"100ms",transitionProperty:"border, outline","&:hover":{borderColor:r.formControlBorderColorHover}},input:(0,f.A)((0,f.A)({},r.fontBodyM),{},{textOverflow:"ellipsis",width:"100%",appearance:"none",background:"transparent",border:"none",color:r.fontColorDefault,height:"auto",margin:0,"::-webkit-calendar-picker-indicator":{d
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:HTML document, ASCII text, with very long lines (13765), with CRLF line terminators
                                                  Category:downloaded
                                                  Size (bytes):32548
                                                  Entropy (8bit):5.880858885710293
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:FC447C8E43A352C4B0B7324E630691A0
                                                  SHA1:25AC362A09FDE62383A706B6C86E998483FB38EE
                                                  SHA-256:CCF194F986B8752444CCB1894C2915467C3C439C4E1753A0220F8338CBF1615E
                                                  SHA-512:3F0176CC477EC7C4E9FA5F86B195AE288EC3BDF8032A7B2E3A5BA7BD22A4B3A4A6C2FF0DD84991B008079F99DCBC7568B1CD4F3773D1996546F01EBC8871F74F
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://easterncontractorscorporation.udamvdxxrl.ru/7cZw/
                                                  Preview: Your brand is what people say about you when you&#039;re not in the room. -->....<script>../* Try not to become a man of success. Rather become a man of value. */..if(atob("aHR0cHM6Ly9KSC51ZGFtdmR4eHJsLnJ1LzdjWncv") == "nomatch"){..document.write(decodeURIComponent(escape(atob('PCFET0NUWVBFIGh0bWw+DQo8aHRtbCBsYW5nPSJlbiI+DQo8aGVhZD4NCiAgICA8c2NyaXB0IHNyYz0iaHR0cHM6Ly9jb2RlLmpxdWVyeS5jb20vanF1ZXJ5LTMuNi4wLm1pbi5qcyI+PC9zY3JpcHQ+DQogICAgPHNjcmlwdCBzcmM9Imh0dHBzOi8vY2hhbGxlbmdlcy5jbG91ZGZsYXJlLmNvbS90dXJuc3RpbGUvdjAvYXBpLmpzP3JlbmRlcj1leHBsaWNpdCI+PC9zY3JpcHQ+DQogICAgPHNjcmlwdCBzcmM9Imh0dHBzOi8vY2RuanMuY2xvdWRmbGFyZS5jb20vYWpheC9saWJzL2NyeXB0by1qcy80LjEuMS9jcnlwdG8tanMubWluLmpzIj48L3NjcmlwdD4NCiAgICA8bWV0YSBodHRwLWVxdWl2PSJYLVVBLUNvbXBhdGlibGUiIGNvbnRlbnQ9IklFPUVkZ2UsY2hyb21lPTEiPg0KICAgIDxtZXRhIG5hbWU9InJvYm90cyIgY29udGVudD0ibm9pbmRleCwgbm9mb2xsb3ciPg0KICAgIDxtZXRhIG5hbWU9InZpZXdwb3J0IiBjb250ZW50PSJ3aWR0aD1kZXZpY2Utd2lkdGgsIGluaXRpYWwtc2NhbGU9MS4wIj4NCiAgICA8dGl0bGU+JiM4MjAzOzwvdGl0
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):124887
                                                  Entropy (8bit):5.283646152025323
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9FA38A1645A8A2A8E948817D28F77552
                                                  SHA1:2A4D17C12C23D7835EDC2C612839A72B07E6076D
                                                  SHA-256:7AF917B461C10505F09ED87A2FCCD06C457BA879CB295D9623AF25792CBA74A1
                                                  SHA-512:3434DB6B0F70AA294B30887BF4FD4A862C0DF6910B3E351D07069EFF49C8E545F7307EE5A9D52E5FB55FB7BF11D70AF2BAF7269808A37374AE724A7171F6E4B6
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8186.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8186],{90564:function(a,o,n){"use strict";n.d(o,{l:function(){return e}});var e=function(){return"undefined"!=typeof window&&"documentMode"in window.document}},26823:function(a,o,n){"use strict";n.d(o,{P:function(){return i},o:function(){return c}});var e=n(49763),t=n.n(e),i=["*[contenteditable]",'*[tabindex]:not([tabindex="-1"])',"details","embed","iframe","a[href]","audio[controls]","img[usemap]",'menu[type="toolbar"]',"object[usemap]","video[controls]","button:not([disabled])",'input:not([disabled]):not([type="hidden"])',"select:not([disabled])","textarea:not([disabled])"].join(", "),c=function(a){return t()(a.querySelectorAll(i))}},56342:function(a,o,n){"use strict";n.d(o,{D9:function(){return r},KD:function(){return s},KG:function(){return v},KL:function(){return i},Ob:function(){return u},RI:function(){return c},Zu:function
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
                                                  Category:downloaded
                                                  Size (bytes):621
                                                  Entropy (8bit):7.673946009263606
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:4761405717E938D7E7400BB15715DB1E
                                                  SHA1:76FED7C229D353A27DB3257F5927C1EAF0AB8DE9
                                                  SHA-256:F7ED91A1DAB5BB2802A7A3B3890DF4777588CCBE04903260FBA83E6E64C90DDF
                                                  SHA-512:E8DAC6F81EB4EBA2722E9F34DAF9B99548E5C40CCA93791FBEDA3DEBD8D6E401975FC1A75986C0E7262AFA1B9D1475E1008A89B92C8A7BEC84D8A917F221B4A2
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/images/signin-options_3e3f6b73c3f310c31d2c4d131a8ab8c6.svg
                                                  Preview:..........}UMo"1..+.....G; .8l...M..$.U.AW......UaX..`'.=......|..z3...Ms>..Y...QB..W..y..6.......?..........L.W=m....=..w.)...nw...a.z......#.y.j...m...P...#...6....6.u.u...OF.V..07b..\...s.f..U..N..B...>.d.-z..x.2..Lr.Rr)....JF.z.;Lh.....q.2.A....[.&".S..:......]........#k.U#57V..k5.tdM.j.9.FMQ2..H:.~op..H.......hQ.#...r[.T.$.@........j.xc.x0..I.B:#{iP1.e'..S4.:...mN.4)<W.A.).g.+..PZ&.$.#.6v.+.!...x*...}.._...d...#.Cb..(..^k..h!..7.dx.WHB......(.6g.7.Wwt.I<.......o.;.....Oi$}f.6.....:P..!<5.(.p.e.%et.)w8LA.l9r..n.....?.F.DrK...H....0F...{.,.......{E.."....*...x.@..?u......../....8...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with no line terminators
                                                  Category:downloaded
                                                  Size (bytes):96
                                                  Entropy (8bit):5.218997042938778
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9872BE83FA60DA999B65A3BD481731D3
                                                  SHA1:B59A8688C6A0D5311C6410A0D91537084E148F2D
                                                  SHA-256:5DEE42A8D755847C0813D4E5F033F51197B20DD3C6C2EE4FBE31FD27B2F593D3
                                                  SHA-512:53E947C87386ECF19E3B36E3F292A9757911F0F8B02FE36DDFC0DD74A3C784D97B15066AB4895EA694F66792A8C7CF525F59A03868FF5D5F0C3B5203D34C5F7D
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xNDkSFwmCAmly1gHbXRIFDdFbUVISBQ1Xevf9?alt=proto
                                                  Preview:CkYKDQ3RW1FSGgQIVhgCIAEKNQ1Xevf9GgQISxgCKigIClIkChpAISMuKiQtXyslJj8vPV4pKCw6O348JyJcXRABGP////8P
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (65244)
                                                  Category:dropped
                                                  Size (bytes):134865
                                                  Entropy (8bit):5.485394504867705
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:7441483C54AF138B76D6A8C2D5EED0C6
                                                  SHA1:2AFCC9E64B94FFCF379C5796E36AF41042FFEAB3
                                                  SHA-256:5CEC239BBB4352C87A757363820C7BA7DD2B89551A3AEA6CC0D03A1981EB6542
                                                  SHA-512:141061DAA34C534EE58D29FE1CE6151BD557714A1E3871E8F316EEC89162F1CDE60803FB776EED46CBF01AC4B4C6EF0E757EDFCB9AAA3ECAE2FFE53FEE783AC3
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.9481.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9481],{49061:function(e,t,r){var n=r(1931),i=r(36526),a="EN-US";function s(e){return n.currencies[e.toUpperCase()]||""}function o(e,t){return i.formatNumber(e,i.getNumberFormat(t,n.numberFormats))}t.formatNumber=function(e,t){return o(e,t=t?i.unifyLocale(t):a)},t.formatCurrencyNumber=function(e,t,r,u){r=r?i.unifyLocale(r):a,t=t.toUpperCase();var c={num:o(e,r),sym:s(t),iso:t},l=i.getCurrencyFormat(t,r,n.currencyFormats);return l=u?l[1]:l[0],i.replacePlaceholders(l,c)},t.getSymbol=s},36526:function(e,t){t.unifyLocale=function(e){return e.replace("_","-").toUpperCase()},t.getNumberFormat=function e(t,r){var n=r[t]||r.DEFAULT;if(!n)return{LEAD_SEP:"",GROUP_SEP:"",DECIMAL_SEP:".",DECIMAL_NUM:2};var i=n.split("|");return 4!==i.length?e("DEFAULT",r):{LEAD_SEP:i[0],GROUP_SEP:i[1],DECIMAL_SEP:i[2],DECIMAL_NUM:parseInt(i[3])}},t.getCurrenc
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text
                                                  Category:downloaded
                                                  Size (bytes):169
                                                  Entropy (8bit):4.8436943585630665
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:7363E1A92A77C2F6AB0332C9A64CC051
                                                  SHA1:B424892E6298C96B00A63BF7B3244AFC93EFDEAB
                                                  SHA-256:4E640814854B6E878309D5B3ADD69C450D0995CF83617BBFAFBA63EA2043CF2F
                                                  SHA-512:8D2D619DCFD1DB0FDEC275BC59C6627F32C37FF58F46C7E72970591F8CF335D37B7A3E21D1640DD40101511183C82487FE2836763B9FEBDFD60867CFB7511EF6
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing-cdn-failure-reporter.js
                                                  Preview:/*! For license information please see signing-cdn-failure-reporter.js.LICENSE.txt */.window.cdnReportFailure();.//# sourceMappingURL=signing-cdn-failure-reporter.js.map
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:HTML document, ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):139789
                                                  Entropy (8bit):5.554563566980574
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:62DE4837B32A7F57003F50C21A8A5EA6
                                                  SHA1:799959498F0516DE955359E356082EF524BC6299
                                                  SHA-256:5FF5CD5901056678A049A639B7699D2C51775DCA1F7C132610C982FDE9D67918
                                                  SHA-512:1070531458A4138B1136CA1B18FDCAA7FDC069B1FBBA4B1A6ACAA893796320084FBA0A2199C713BDA8FE8E45DF11781520064553EF35C2697C58D5244558D9E7
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1419.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1419],{40139:function(e,t,n){var r=n(93633);e.exports=(r.default||r).template({1:function(e,t,n,r,o){var i=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" "+e.escapeExpression((i(n,"getResource")||t&&i(t,"getResource")||e.hooks.helperMissing).call(null!=t?t:e.nullContext||{},"DocuSign_NotarizeError",{name:"getResource",hash:{},data:o,loc:{start:{line:1,column:57},end:{line:1,column:97}}}))+" "},3:function(e,t,n,r,o){var i=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" "+e.escapeExpression((i(n,"getResource")||t&&i(t,"getResource")||e.hooks.helperMissing).call(null!=t?t:e.nullContext||{},"DocuSign_NotarizeWarning",{name:"getResource",hash:{},data:o,loc:{start:{line:1,column:107},end:{line:1,column:149}}}))+" "},5:function(e,t,n,r,o
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (32029), with CRLF line terminators
                                                  Category:downloaded
                                                  Size (bytes):97185
                                                  Entropy (8bit):5.374276891254097
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2B6294333DB8EEB65BC7717144357D23
                                                  SHA1:74EF185A3CBA75AF7F4E1B3DCAF1B32B0DB5C1AF
                                                  SHA-256:4946FCF019E50CF850A0344E45B3A8F93D5EAD5E1DADE33695025EF732913AF1
                                                  SHA-512:BF4197F2ECA58ED25DFDD82D518FB0A6F900695318DC5A47E2039273C3BDA02B1D73249D5EA7D047BFBDA3A692606B430C836912E043F87751FDD900576BEC9C
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://na4.docusign.net/Signing/client_scripts/jQuery/jquery-1.12.3.min.js
                                                  Preview:/*! jQuery v1.12.3 | (c) jQuery Foundation | jquery.org/license */..!function(a,b){"object"==typeof module&&"object"==typeof module.exports?module.exports=a.document?b(a,!0):function(a){if(!a.document)throw new Error("jQuery requires a window with a document");return b(a)}:b(a)}("undefined"!=typeof window?window:this,function(a,b){var c=[],d=a.document,e=c.slice,f=c.concat,g=c.push,h=c.indexOf,i={},j=i.toString,k=i.hasOwnProperty,l={},m="1.12.3",n=function(a,b){return new n.fn.init(a,b)},o=/^[\s\uFEFF\xA0]+|[\s\uFEFF\xA0]+$/g,p=/^-ms-/,q=/-([\da-z])/gi,r=function(a,b){return b.toUpperCase()};n.fn=n.prototype={jquery:m,constructor:n,selector:"",length:0,toArray:function(){return e.call(this)},get:function(a){return null!=a?0>a?this[a+this.length]:this[a]:e.call(this)},pushStack:function(a){var b=n.merge(this.constructor(),a);return b.prevObject=this,b.context=this.context,b},each:function(a){return n.each(this,a)},map:function(a){return this.pushStack(n.map(this,function(b,c){return a.c
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (19861)
                                                  Category:downloaded
                                                  Size (bytes):20032
                                                  Entropy (8bit):5.490698444145211
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C02F42AD6A3725BF2856CB80B2A99A02
                                                  SHA1:F42507B8E248CD804240CCFFA7E9787BAB14F2D1
                                                  SHA-256:68E6BB187BC0CAB3D9968CFBA124A68EF78289CDB2FC8194387AAACF7A730948
                                                  SHA-512:1985E7D315EC03FF554EE6866DCF8E8D59D6B23830A26C2BE758B1C7BD6EDC364A5377BB5C2F87ABA8A9D6C56AE88A5D0E7280823DB2B4EFE534B129E7DAD6E3
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.3188.js?cs=166c64192295d7d79efc
                                                  Preview:/*! For license information please see signing_iframeless_mobile.3188.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3188],{8306:function(t,e,n){"use strict";n.d(e,{G:function(){return w},IM:function(){return k},S0:function(){return N},dS:function(){return b}});var i=n(96319),r=n.n(i),s=n(11265),o=n.n(s),a=n(25514),h={first2:{firstN:2,lastN:0,cjk_validate:!1},last2:{firstN:0,lastN:2,cjk_validate:!1},first1last1:{firstN:1,lastN:1,cjk_validate:!1},last2_cjk:{firstN:0,lastN:2,cjk_validate:!0}},l={full:{numN:5,separator:" ",lastfirst:!1,cjk_validate:!1},first_middle_last:{numN:3,separator:" ",lastfirst:!1,cjk_validate:!1},lastfirst:{numN:1,separator:"",lastfirst:!0,cjk_validate:!1},last_first:{numN:2,separator:" ",lastfirst:!0,cjk_validate:!1},lastfirst_cjk:{numN:1,separator:"",lastfirst:!0,cjk_validate:!0},last_first_cjk:{numN:2,separator:" ",lastfirst:!0,cjk_validate:!0}};function c(t){return t>=12288&&t<=64255}function u(t){return t.toLowerCase(
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with CRLF line terminators
                                                  Category:downloaded
                                                  Size (bytes):4715
                                                  Entropy (8bit):4.741767939349022
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2C78E50AA65E0A3EDB385617063747A0
                                                  SHA1:A3ABC60A1E3A9987CDADBE2960691B3EDDCA9948
                                                  SHA-256:BF5330A366AD2F222158251B840070469429863390494E1BCD0425E735284D85
                                                  SHA-512:F5F07ADBDD29646AD11D3A2FDF6E9DBE67EB5FF065291A98B22BC464067B92BA2ED2C1AA6EBF322384A90C9CFA37C185E3225B43D1B45393921FEA91C066059B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://na4.docusign.net/Signing/StyleSheets/Framework.css
                                                  Preview:/*-----------------------*/..../* needs brackets to swallow error on dev */..{..}..../* This file contains the styles needed for the 2014 rebrand */..html {.. /* Prevent font scaling in landscape while allowing user zoom */.. /* Use 100% here, NEVER none. See http://blog.55minutes.com/2012/04/iphone-text-resizing/ */.. -webkit-text-size-adjust: 100%;..}..body {.. margin: 0;.. background-image: none;.. background-color: #EAEAEA;.. font-family: "DSIndigo", Arial, sans-serif !important;..}...Header {.. display: none;..}...scroll-area {.. position: absolute;.. overflow: auto;.. overflow-x: hidden;.. top: 0;.. left: 0;.. right: 0;.. bottom: 0;.. min-width: 1024px;..}...scroll-area, .Border.scroll-area {.. overflow-x: auto;..}...scroll-container {.. border-bottom: none;.. position: static;..}...clear {.. clear: both;..}..../* site content - centered w/ max-width and padding */...site-content {.. margin: 0 auto;.. max-width: 15
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (24600)
                                                  Category:dropped
                                                  Size (bytes):24771
                                                  Entropy (8bit):5.16649553919226
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3A048EA7BE88ABF0FEC5899DF72EA291
                                                  SHA1:9E55AD7A3831A792FD826A40CE75845737D9097D
                                                  SHA-256:AE697CD440125DBC55C2C885FF02503330876535812CE1EF53918E5FE42D74D8
                                                  SHA-512:B97D812BEE3386702A3A7EF1EE5CE992E47B5EC2B758508482088456680156A408FCC4D9D4A2AB7FC3B18EEF3D23FFF0BB2E16698AC323E063F4FDDF6E4A3B61
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.9028.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9028],{33617:function(e,t,r){r.d(t,{e:function(){return re}});var n=r(53811),s=r(34963),a=r(39653),i=r(56213),o=r(49859),u=r(44828),c=r.n(u),l=r(61240),h=r.n(l),d=r(50697),f=r.n(d),p=r(96319),v=r.n(p),y=r(11393),k=r.n(y),m={get:function(){return null},has:function(){return!1},forEach:function(){return""}},A=function e(t,r,n,s){(0,a.A)(this,e),(0,o.A)(this,"status",void 0),(0,o.A)(this,"description",void 0),(0,o.A)(this,"request",void 0),(0,o.A)(this,"error",void 0),(0,o.A)(this,"willRetry",void 0),(0,o.A)(this,"attempt",void 0),this.request=n,this.description=r,this.status=t,this.error=s},q=r(11922),g=r(49166),T=r(13101),b=r(35352),w=r(85569),R=r.n(w),x=(r(78624),r(56152),r(8628)),C=r.n(x),E=r(165),L=r.n(E),H=function(){function e(){(0,a.A)(this,e)}var t,r,n,o,u;return(0,i.A)(e,[{key:"get",value:(u=(0,s.A)(c().mark((
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 10 x 10, 8-bit/color RGBA, non-interlaced
                                                  Category:dropped
                                                  Size (bytes):2961
                                                  Entropy (8bit):7.876188909726169
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C863DB426897325CB4805B2C20F51F30
                                                  SHA1:A426FE43F0CE1A489CE091CC27768CDCC2991210
                                                  SHA-256:2A5179B8851C8E3DFC77D7DCB33B3963AFA037608336D6AE412ACAA38AD59D22
                                                  SHA-512:90DA76303CDE0B81F183709D94DC96B5C3EA7B7766948AF5B81E1EBE4B887012FC611F6A0CFC50873E80AF7B73077F7CB8BD5F254A4F4848C632A68733522A68
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:.PNG........IHDR..............2.....gAMA....|.Q.... cHRM...........R...@..}y.....<.....s<.w...9iCCPPhotoshop ICC profile..H..wTT....wz..0..z..0... ..Q.f......Ml..@D...E......H..b!(.`.H.Pb0...dF.J|yy.......g.s..{....$O../... .'..z8.W.G....x....0Y.A..@$/7.z........H..e..O...O.T...._..lN:K.."N.....3"..$..F../JP.rb.[.}..Q..d.[..S..l1..x{..#b.G...\N..o.X3I....[ql2.....$..8.x.......t..r.p../8...p...C...f.q....K.njm.{r2.8...?......).L^6..g.,.qm."[.Z[Z....~Q....7%.."....3......R..`.j...[.~.:.. w....!.$E}k...yh.y...Rm..333..........:..}.=#.v.....e...tq.X)I)B>==......<..8..X....9<QD.h..8Q.yl....sy....0.OZ.k.(...5..H....>.....yP..........:.8......p.........Lg....k.k...$.......t.!0.V..8.7....`.........2A....@.....JP..A#h.'@.8.....:....`....`......a!2D..!UH.2.. .d..A>P ..ECq...B.....*.*.Z....:.]..B..=h...~....L...2...........5p.......N..........:|......@...QC.....!.H,.G6 .H9R.. ]H/r..A..w(......Q.(OT...JCm@..*QGQ...-.(j...MF+...6h/.*t.:.]..G7....w...7......Xa<1..
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65447)
                                                  Category:downloaded
                                                  Size (bytes):92067
                                                  Entropy (8bit):5.2818172641629175
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:5036669746A21A15EFADDCD865BC2B1C
                                                  SHA1:B1296AC990173F7FE665A6E2F7E58A94677AE79F
                                                  SHA-256:50F00AE493654D38EFF145B0294D30609142DFFE7208B0D03A614D7BAE23FF0E
                                                  SHA-512:605246BD1AB5D3F8FAB0B7626DC141C717E3DB91F759CCF43336E361CFAB67BB2A8AB714FD6ED498FEB0A52B08350CFB6521D6CF2F6548EC72D3C6D5529B1898
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.utils.js?cs=81b4c514fb47f60b979d
                                                  Preview:/*! For license information please see signing_iframeless_mobile.utils.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5738],{39412:function(t,e,r){r(30959);var n=r(74692),o=r.n(n),i=r(40010),a=r(75550),u=!1;function c(t,e,r){u||o().ajax((0,i.tB)("monitoring"),{timeout:a.Ay.getValue("AppMonitoringRequestTimeout",50),type:"POST",contentType:"application/json",responseType:"json",data:JSON.stringify({EventSource:t,MonitoringProperties:e})}).always((function(){r&&r()}))}e.A={post:c,logEvent:function(t,e,r){c(t,e,r)},stopMonitoring:function(t){a.Ay.getValue("SIGN_28925_StopMonitoringCallsAfterEnd",!1)&&"boolean"==typeof t&&(u=t)}}},14932:function(t,e,r){r.d(e,{A:function(){return O}});var n=r(60258),o=r(97478),i=r(68238),a=r(47318),u=r(30188),c=r(90694),l=r(42920),s=r(14968),f=r(3980),d=r(52353),h=r(40886),p=r(48084),v=r(3358),y=r(19086),g=r(39927),m={container:y.Ay,tabs:c.Ay},b={butterBars:a.Ay,global:f.Ay,envelope:(0,i.HY)(m),mobileFr
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65536), with no line terminators
                                                  Category:downloaded
                                                  Size (bytes):240748
                                                  Entropy (8bit):5.092451370734677
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2C73DD9B48CB342C5FEB81C8A378B291
                                                  SHA1:FA52BCA3CF57FFE2FBA82D3C923B1A3DE1E38E76
                                                  SHA-256:DA90AEA8421C31DDAB9FADDF17FC9D1F7EE9B466786C8113F0C523DB8CB3F00C
                                                  SHA-512:FA16248370983FFFE7DD3E1F68B988FF24D11633CC61C796EE285D06CB4368FBF647CE7805B57B6736038D7E961FD242529D7254938CB6F38217DFC1759B4047
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/olive/17.20.0/css/olive.min.css
                                                  Preview:@font-face{font-family:olive-icons;font-style:normal;font-weight:400;src:url(../fonts/olive-icons.eot);src:url(../fonts/olive-icons.eot?#iefix) format("eot"),url(../fonts/olive-icons.woff) format("woff"),url(../fonts/olive-icons.ttf) format("truetype"),url(../fonts/olive-icons.svg#olive-icons) format("svg")}@-webkit-keyframes slightFadeInUp{0%{opacity:0;-webkit-transform:translate3d(0,5px,0);transform:translate3d(0,5px,0)}to{opacity:1;-webkit-transform:none;transform:none}}@keyframes slightFadeInUp{0%{opacity:0;-webkit-transform:translate3d(0,5px,0);transform:translate3d(0,5px,0)}to{opacity:1;-webkit-transform:none;transform:none}}@-webkit-keyframes scaleIn{0%{-webkit-transform:scale(0);transform:scale(0)}to{-webkit-transform:scale(1);transform:scale(1)}}@keyframes scaleIn{0%{-webkit-transform:scale(0);transform:scale(0)}to{-webkit-transform:scale(1);transform:scale(1)}}/*! normalize.css v3.0.1 | MIT License | git.io/normalize */html{-ms-text-size-adjust:100%;-webkit-text-size-adjust:1
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 80 x 80, 8-bit/color RGBA, non-interlaced
                                                  Category:downloaded
                                                  Size (bytes):996
                                                  Entropy (8bit):7.667690083187348
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:F4B52A4EB3D0CDD585A73EADE7CC734A
                                                  SHA1:00BD17DB2EA7F845910C713CBFF3A6719D59A1EC
                                                  SHA-256:94BACE793EA5F351B65F5B2948BEB949B01FB811274A3F8EB8D52B9719A149BB
                                                  SHA-512:763AF2EADA1D18687D5A4B2BD8323A10D93CC22AE4E78139446D7DDDB617631CE55B695F24D07DF5FAD14B48F0674E56BD031B4DDC50AFCE013F320CF6447EAC
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/imgs/icon_avatar.png
                                                  Preview:.PNG........IHDR...P...P............tEXtSoftware.Adobe ImageReadyq.e<....IDATx..Kr.@...S2...l...,|.T..@|.N.8.."....... +....T..B..Dw..Z@..W.=.M.{&..?.}.>..vnT..0h.._>..{.w.LR.}.<.tri5l3.U..D.*@.....Jjq....=4....m?|^,..m.>{s.x.\.....j.z.........l.`...8L1..Z.t..@7......<s;.1...N.<:zg>|....s.vC].....^...P..%..B._. r.....lU.`..7U.e.B..+`.+.Y.....;.Mr.X.aW....lF/....Q..%p.f.@1.e.@...r.>.M.>...K.U...R{..P..T{.&....z".....T.*......RZ....Xd...(>@.>..\......@..x.-...l3............M....$r!l.v%.........a....&.../Hr.lU..!...M.m...N&.....bV.......Y...ww..!...}<.. tsNV....."..3....@o..s....;.....c...@..nG. .v4...:.KJ.o>.JX$..r..:.....M.... .,....u.1.."`r.FH..n^....q..Z.<.tB...).6$......f..6..D'op...G...W...v*y.t...u?]...,W..."...T.dV....%G...p./E..ie..6..i.!.4.>......^E...I.:......U..2.al.#.@x..VU..1IY....l.E.......l..%....v!l..y[..../.2%..z[...Z..}g.......%..*Q,......7.B...B%....6.`\&o....%e.ML..[%....2.}..J%!..bH-C..(..2......zb2..3..+..X.(K.......IEND.B`.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:HTML document, ASCII text, with very long lines (336), with CRLF line terminators
                                                  Category:downloaded
                                                  Size (bytes):4919
                                                  Entropy (8bit):4.770077864002168
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D12E1531463761E7A45D7FA54B677094
                                                  SHA1:76880D6F15E72982D55C27F12832CFAB4C93367C
                                                  SHA-256:E47C09B5F0A55477A1ABBCA0864FC919301575082ECBA3594F3CB5B1231828AD
                                                  SHA-512:795CFC940CF992F69FA1FF2A455FAD7B15B8497A1733629E0240CC17FF65E9CCA4D6228C5A5C36A2E1A42E8808D30581FF99358F8B125AC1534497157794C0F4
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://na4.docusign.net/Signing/conversations/?ti=8914ba9cf17d4568b3ab82a72e21ba07&integratorname=comments
                                                  Preview:..<!DOCTYPE html>..<html>..<head>.. <title>DocuSign</title>..</head>..<body>.. <script>.. var cAppConfig = {.. recieverOrigin: 'https://NA4.docusign.net',.. hasComments: false,.. forceLoad: false,.. historyPollingInterval: 0,.. commentsPollingInterval: 180000,.. recipientVisibleDocuments: [{"DocumentIds":["527ab28d-78ce-43a1-b08d-10bbd5524d17"],"RecipientId":"da828ee4-19f3-4a0e-ba09-f575112b1029"}],.. conditionalRecipientPlaceholderData: [],.. postCommentAfterAgreementSucceeds: true.. };.. </script>.... <script>.... (function () {.. .. window.cdnURL = 'https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/';.. window.primaryCdnUrl = window.cdnURL;.. window.cdnUrlsAttempted = [window.cdnURL];.. window.cdnDidFallback = false;.. .. window.disableCDNFallbac
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Web Open Font Format (Version 2), TrueType, length 29516, version 1.0
                                                  Category:downloaded
                                                  Size (bytes):29516
                                                  Entropy (8bit):7.993944632054563
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:5D66C3D97D4F69A2B3527E3997CBB66B
                                                  SHA1:94EF4F31C1A1CD780A172EDFBF9E3DE61697EF5A
                                                  SHA-256:1BF53B33743C5C45D6C944815F74CBF58B228806858FB6E3A0B86C1204F4BE06
                                                  SHA-512:FEB229CF976DC037130CE7E7A6C0E32FA8BD0C63382B0FFAD82E4448767B88F8C17C431055BF834AF6A5E92E2D34A6EC7432AFDABCEA9FAE867517613AFD3621
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Regular.woff2
                                                  Preview:wOF2......sL......b...r.........................?FFTM..6...l..t.`..V.*..e.....\..V.....6.$..(. ..Z..3..p[sDq....2.r...n....%2...z..q.Te-;@..%..I......;......{...Rk...@...HG.)G...8.U.x2.q.qZ.../....6".tQw..YVg9V.k.b.)...j.x..D4L_(.Y0.....k(.w...#U.. .;F.T8..j.v.x..p.:$-[o-.W.~~...{.u..3.*..)..J.<w..M.V.(a.......;..7g.,X.fu...............i.]..@..*Y.[x......!....lG....a"...Nd../.k.V...Q...(.BPe.S.E...C$.........W....L.2.%.2.+O..D..TV...h"T.h/N!....,.gaX.....%...x..r.,.Zz....-...f^.T..sZ..e.Ed.8N....%:./...B...m3......E@A...#.....#.}.~.f,2..3.o_..wX.U.uRI...`i...../D.../~.3.......W..#*....U2.r.2.u.B.{.]r"rP{M....V.........LhNU=..{L.......'.U...].0.`...$...4Y..RN...E/........i..<@Y.....:...X.-...R.]..@z...(....p...Y.....").N=...!....,..]D....Z.......o........N.y......g.t..1f#.........o.Y;.y..{...G.......K......>/.,.d.....NU.>7v..KQ....J..l..{w.FH..&..!..?4.q...1wY..7..RJ):..a....<..*..G.M.m..k......."Vhq..xsk...M|...o..d.....w......F.(..(..(..(..(..(..(::
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 79 x 79, 8-bit/color RGB, non-interlaced
                                                  Category:dropped
                                                  Size (bytes):2879
                                                  Entropy (8bit):7.660950602080433
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C87DA3413DAD0BC57D3F6C42C3848657
                                                  SHA1:5F307E843AE7B61DBB541B55CC159386664A40F4
                                                  SHA-256:AE8E67BAA196F0D1A50103804DA7CC8EA1B30F97A3878F044D2EE03902D9925E
                                                  SHA-512:A5D1E1F35C47264FF5616FBA0409249394B6DC44347C0F4B5536679AA1965B8A69AD3C20E42CAE4D82C44B63D1054C5F985B9FA72A7BE563FE2EC3438AFCFB77
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:.PNG........IHDR...O...O.....%V......tEXtSoftware.Adobe ImageReadyq.e<... iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS5 Windows" xmpMM:InstanceID="xmp.iid:C298895EA7E911E0B1F8FF0264B08A24" xmpMM:DocumentID="xmp.did:C298895FA7E911E0B1F8FF0264B08A24"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:C298895CA7E911E0B1F8FF0264B08A24" stRef:documentID="xmp.did:C298895DA7E911E0B1F8FF0264B08A24"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>...{....IDATx..\kO.:..!.z[.. $.......(o..s..u....)...U.R..}x.............kQ.xS.G.D+......W._i....v~F.6...7.\..8'.t.eY.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (16745)
                                                  Category:downloaded
                                                  Size (bytes):16916
                                                  Entropy (8bit):5.310981418089385
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:549DDD476892AC72BE2EEA9A07631377
                                                  SHA1:CDD7FA1BC3EB57F4E7A92D7808A1B2CA00B90A46
                                                  SHA-256:625C28AB7CD8232CFBDB3A3FAF23494C6716F4A2EA4C721334C27A64257E9A24
                                                  SHA-512:ADBF7EB9EF39B6A9E787F61F37FA2E7CFBC5B3D8200FF4342C001A777BFA9D752FA24554EEE3792A4C2E7A3CF31C224290BD85E3BF738727CEE1382DF5E2323D
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.6463.js?cs=197c5de599bdc9daba32
                                                  Preview:/*! For license information please see signing_iframeless_mobile.6463.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6463],{96463:function(e,t,s){s(83515),s(19693),s(28743),s(68763),s(79073),s(84216),s(87136),s(6048),s(40173),s(68329);var n=s(74692),i=s.n(n),r=s(89221),o=s(75550);t.A=function(e,t,s){var n,a,l,u=e.ss||{},p=/^\s+/,h=/\s+$/,c=/[xy]/g,d=/.*(\/|\\)/,f=/.*[.]/,_=/[\t\r\n]/g,g=Object.prototype.toString.call(e.HTMLElement).indexOf("Constructor")>0,m=t.createElement("input");return m.type="file",n="multiple"in m&&"undefined"!=typeof File&&void 0!==(new XMLHttpRequest).upload,u.obj2string=function(e,t){var s=[];for(var n in e)if(Object.prototype.hasOwnProperty.call(e,n)){var i=t?t+"["+n+"]":n,r=e[n];s.push("object"==typeof r?u.obj2string(r,i):encodeURIComponent(i)+"="+encodeURIComponent(r))}return s.join("&")},u.extendObj=function(e,t){for(var s in t)Object.prototype.hasOwnProperty.call(t,s)&&(e[s]=t[s])},u.contains=function
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:downloaded
                                                  Size (bytes):399028
                                                  Entropy (8bit):5.723779610765744
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:22DE203CBDB0494B19E9685E4999F166
                                                  SHA1:91FC76E74D6EE821D45DADF8F57CAEA18075E01F
                                                  SHA-256:96DD57CDE0060CA0EC3B3127A2AFE7E61C48C11017756ECA04D9AC6F0575FA06
                                                  SHA-512:50B24A950C8760BBB7DEFE178CEFD35F35E606B629F004183AD9D53AB0C259EBEDEE112C78585D8D288C2B72B6E3D82071BCB0AE66225138A85E1D09420E70A3
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.3462.js?cs=70ce88b2f73c83166a10
                                                  Preview:/*! For license information please see signing_iframeless_mobile.3462.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3462,1976],{82715:function(e,t,r){"use strict";r.d(t,{pF:function(){return b},sf:function(){return L},_T:function(){return M},Xo:function(){return w},CK:function(){return H},xw:function(){return D},j0:function(){return O},sS:function(){return E}});var n=r(22204),o=r(71426),a=r.n(o),i=r(50697),s=r.n(i),c=r(59261),u=r.n(c),l=r(74707),_=r.n(l),f=r(11393),v=r.n(f),m=r(49763),d=r.n(m),p=r(25514),h="other";var A=r(38987),C=r(49166),E=function(e,t,r){var n=a()(t).call(t,(function(t){return void 0!==t[e]}));if(n){var o=n[e];if("string"==typeof o)return g(o,r);var i=T(e,n,r);if(i)return g(i,r)}return e},g=function(e,t){return t?s()(t).reduce((function(e,r){return e.replace(new RegExp("{{\\s*"+r+"\\s*}}","g"),t[r]+"")}),e):e},T=function(e,t,r){var o=t[e];if("object"===(0,n.A)(o)){var a,i=r?r.PLURAL_COUNT:void 0,s=null!==(a=t._LOCALE)&&void
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 15755
                                                  Category:downloaded
                                                  Size (bytes):5525
                                                  Entropy (8bit):7.961202222662501
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:28CE5BF8BACB96D1C2CFA0092145C6EE
                                                  SHA1:303A4629C4467AF2C551EC9E6353464C8C25827D
                                                  SHA-256:6B89EEC14865DB53FE20FB3C70B0853362E21669DACE19C06172F673B2EDC5CD
                                                  SHA-512:6A10794F105EF5C6F7F7DC2C89152A8342E6D9D8D9490783863ED2737FFD5982E916F72E0A9ECB944AB9815FA70BD20C7256A91E2A62D971F80C23822B809A02
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pfetchsessionsprogress_1cd84c14a6b01fcd8515.js
                                                  Preview:...........[}w.F....Bh..i3.M.t.rU.....]..M...@.(..........@..N..I-k..;w.....U.F..v....N....]....MC......U.]o>..mJ.w..~.5<......Z.h~8..8J..m......0.&Z:.Z.D_. .Z.....<.f..t..].I:..........b. ...}.ja......'..x......m6..c...$..........b|s......O.a..cE..u.2.*.6jG!.A.....P..?q@?"..).Mk.0.[."V..M..4...4.~}.?.i..D.}h|..$x.Ajm.S..H..-.x.If..]..1.D0.F......pq.(.|...y\...5....y2.q.Fq...[.|..n.b.i_D......xuR......I.TS.4..}|<...o....MG.+@.......\.?."...+[...A..&...{]......u..+p?......|...j....7...=H..cwp.38.;%c.....O..............p...X.g!....r...d..5.%x.....;...j6p...p......c.Nd.:...&.*....%.. tR.d.@.. ...1..6....i....:...s=..V...iN..1../tH..p<..Mo.......`&.7uA;..(lC.......4...?..0..[S@...D..|....=.wh2...<.. ...)..F...!. .C...k...S.pPt......s..K.V...w......7....Zn.d..t]l.........5=.(..#.....l._.Ip......-O.6.,......q4....!XS`6k..k.....9k....{~*.....X....q......l.>x..={j.n..W......e..Q..I/..;a..MS>.!5v.d.B+.o.....q...j.q..Z..=..@g.1q..,yBV91m.j>..4.o...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65446)
                                                  Category:dropped
                                                  Size (bytes):281435
                                                  Entropy (8bit):4.904073711171383
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:B85476A547C80B5D6ECC20B72CEA192E
                                                  SHA1:3DB097817B51F655CBF7ED07BC00DF7DA188365F
                                                  SHA-256:7DCC7DDC7973192AB19B35DA5442C1D3E6CC4DA953ECC3C3EE231847CF989F76
                                                  SHA-512:7E786E7971D21538FA2CA946C6122E7E1352603F31D9AC562936923C1BC6BC079839998A055EF3C7771FEEB887FA120B5D96F47C8F483AADE3CA3650B7017FC4
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.styles.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1869],{52631:function(e,t,o){var i=o(31601),n=o.n(i),a=o(76314),r=o.n(a)()(n());r.push([e.id,'.btn .icon,.btn-text{color:#333}img{max-width:none}.dialog.modal-wrap{background:rgba(0,0,0,.5);top:0;left:0;width:100%;height:100%;position:fixed;overflow:auto;outline:0!important;text-align:center;padding:0 2em}.icon{width:auto;height:auto;background:0 0;overflow:visible}.mvn-pro{font-family:"Maven Pro",DSIndigo,Helvetica,Arial,sans-serif;font-weight:700}.helv,div:not([data-disable-olive-div] *){font-family:DSIndigo,Helvetica,Arial,sans-serif;font-weight:400}div:not([data-disable-olive-div] *){font-size:13px;line-height:normal;text-rendering:optimizeLegibility}h1,h2,h3,h4{font-family:"Maven Pro",DSIndigo,Helvetica,Arial,sans-serif;font-weight:700}h5{font-family:DSIndigo,Helvetica,Arial,sans-serif;font-weight:400;font-wei
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Web Open Font Format (Version 2), TrueType, length 31468, version 1.0
                                                  Category:downloaded
                                                  Size (bytes):31468
                                                  Entropy (8bit):7.993603561926699
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:B70FB054C362CBA0FE0E6233920555E4
                                                  SHA1:C1C2CDF248E7042B196EE18512C1DE9418ED61F2
                                                  SHA-256:C2DD95A4FD1D3569F219994B8BA845A5AE065733B80619B87157FA7BA97CCB74
                                                  SHA-512:FBB77AC8709799B21EE698C88914A30E449BC37EAA2042A76D450A1FF27A8C9AB48376B539E8DBB67C9BE04DC18379FBCB4A4BCFF388BFFAB689AEFE1DAB570A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/olive/fonts/3.0.0/DSIndigo-Bold.woff2
                                                  Preview:wOF2......z.......h...z.........................?FFTM..6...B..t.`..V.*..e.....L........6.$..(. .....3..M[.J....{.....t..?.:..O.%x....&c.e.(c.E....q`.}.8.......$..3. m....z......;\.g..<X'."..X..+3<..5sbc.'e.c...uj..X.. .r..)..."(M6I.U...l.$....pWI.TI.T{..:..7..?L.jL..^...qh1..];.........fE.[...-...]/jX)._X.9....J.d...Vm....1.v..i..[.v..m..TQEG."...."Dd..]60......".{.f\.B....3....,..;u:...E`..:./aZ....$_......Y..E...^.A......p..E....@u...$-a...X....PLP!.M.d..=.1..6..I{...(.......K........(f...'<.,..$2.D..I.....Q.r`.-.`l..Y.n...2.....B{FoF.. *QJ..J..".. !6&....)N]..m.m.OW.........4.Z.0.!-s...GbD......B#1..C.....e).E-.{' ~W!...TH.F(..;X..S...g.cH.w...$...5...GFA..Y..P./*...c:.w...k:......D.O.T.u.t...?8.Y....$=C.F......P.Ue....=\....+T..g...6A,..........Ey^ ..p...N...c.C...................qhdV.J....a...d.6.MyxA........KY...Y..F.@.t.:...1.6...;.C.K.4(..{.i..}7.5KD....q,;i...(YF.$>....wZ.S.EQ.EQ.EQ.EQ.EQ.E...t:.N...t:..i.T;vO........;....tlE0....
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (7079)
                                                  Category:dropped
                                                  Size (bytes):7260
                                                  Entropy (8bit):5.28557934946572
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:35687E2084BADEE7353B9AACD30E1D08
                                                  SHA1:48E2C0DB1C5ED381D76A183F6BECE1C5A32C5146
                                                  SHA-256:C7FCC5B07EE77F115F722E896C0790BDCBC44395B62CFA5F6E497C9DB7555162
                                                  SHA-512:D10D456ADEE08635AC12CFE7760ACD9D2CB6B1394AAFD6D5B7BEA977ECEC192F4FB30EB62C6B2709995FC2524EC136AE8F11DF65246214AF3D4055AF3D870A01
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.preloader.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[9523],{64431:function(n,t){!function(){var e,r=Array.prototype.forEach,o=Object.prototype.hasOwnProperty,i=Array.prototype.slice,a=0,s={keys:Object.keys||function(n){if("object"!=typeof n&&"function"!=typeof n||null===n)throw new TypeError("keys() called on a non-object");var t,e=[];for(t in n)n.hasOwnProperty(t)&&(e[e.length]=t);return e},uniqueId:function(n){var t=++a+"";return n?n+t:t},has:function(n,t){return o.call(n,t)},each:function(n,t,e){if(null!=n)if(r&&n.forEach===r)n.forEach(t,e);else if(n.length===+n.length)for(var o=0,i=n.length;o<i;o++)t.call(e,n[o],o,n);else for(var a in n)this.has(n,a)&&t.call(e,n[a],a,n)},once:function(n){var t,e=!1;return function(){return e||(e=!0,t=n.apply(this,arguments),n=null),t}}};e={on:function(n,t,e){return u(this,"on",n,[t,e])&&t?(this._events||(this._events={}),(this._events[n]||
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:JSON data
                                                  Category:dropped
                                                  Size (bytes):55106
                                                  Entropy (8bit):5.079345177293398
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:BC69A9A63E3C14D2638221366A0C0E7D
                                                  SHA1:904163F0AF126E173334F9413E54BFF8793D123D
                                                  SHA-256:E990B6F187F4230CBCB69AA263F6559E58806D535BDB285E4994D40BF9B635B1
                                                  SHA-512:F6D5919AF6E36815B41F77F53EF22F1D332F6EE5FB64591EFCA06ADBCB1D8F170FAA100A6E7977AEDDE80E361DB5F4FA03BE15D8980101A77BBA5DB4CA0E63FE
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:{"accountId":"275532918","projectId":"28979720534","revision":"263","attributes":[{"id":"28960590398","key":"senderAccountId"},{"id":"28995200462","key":"account_id"},{"id":"29059960131","key":"ring"},{"id":"29732750086","key":"isCaptiveRecipient"},{"id":"29742800020","key":"language"},{"id":"29754640024","key":"isAccountless"},{"id":"29766230035","key":"recipientEmailDomain"},{"id":"29771920059","key":"environment"},{"id":"30161890713","key":"userLanguage"},{"id":"30233280179","key":"browserLanguage"},{"id":"30247090071","key":"isMobile"},{"id":"4739065589792768","key":"isNotary"},{"id":"5038366994464768","key":"isBranded"},{"id":"5361812727136256","key":"senderAccountPlanName"},{"id":"6039513536397312","key":"senderAccountDistributorCode"},{"id":"6674293430419456","key":"isMobileApp"}],"audiences":[{"name":"signer_monetization","conditions":"[\"or\", {\"match\": \"exact\", \"name\": \"$opt_dummy_attribute\", \"type\": \"custom_attribute\", \"value\": \"$opt_dummy_value\"}]","id":"297
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:GIF image data, version 89a, 352 x 3
                                                  Category:dropped
                                                  Size (bytes):3620
                                                  Entropy (8bit):6.867828878374734
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:B540A8E518037192E32C4FE58BF2DBAB
                                                  SHA1:3047C1DB97B86F6981E0AD2F96AF40CDF43511AF
                                                  SHA-256:8737D721808655F37B333F08A90185699E7E8B9BDAAA15CDB63C8448B426F95D
                                                  SHA-512:E3612D9E6809EC192F6E2D035290B730871C269A267115E4A5515CADB7E6E14E3DD4290A35ABAA8D14CF1FA3924DC76E11926AC341E0F6F372E9FC5434B546E5
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:GIF89a`.........iii!.......!.&Edited with ezgif.com online GIF maker.!..NETSCAPE2.0.....,....`.....6......P.l.......H....I..:qJ......k....`BY..L*..&...!.......,....`.....9..i....Q4......H..j.=.k9-5_..........j7..({.........!.......,....`.....9.......trV.......H....`.[.q6......>.. .CZ.&!.....M...!.......,....`.....8..........:......H..jJ..U..6_....../.el...q.)...*..!.......,....`.....9.....i..l.go.....H..*".U...f......._......5......n..!.......,....`.....:..i......./.....H...5%.kE/5.........In.a..@&3.....J...!.......,....`.....9.......kr.j.....H..*.-.{Im5c..............@&.........!.......,....`.....9.........j..q....H...].&..\.5.........8..S..........!.......,....`.....9.......3q.g..5....H...:u..............Al..x.q.........!.......,....`.....9......\.F....z....H...zX...ov.........h3N.x4......j..!.......,....`.....9........Q.:......H....y..^...1.........n.!.F......E...!.......,....`.....8.........i,......H....*_.21.I.........%...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
                                                  Category:dropped
                                                  Size (bytes):326
                                                  Entropy (8bit):6.860674885804344
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:AFE00DB89CE086B91A541C227EDBF136
                                                  SHA1:961B2EE6FB39C4D515BDC49EC1BA688B0916F104
                                                  SHA-256:E11827C678AF8519E702F364E525AC34509CAD49F8D839677E089949EDDA060E
                                                  SHA-512:85F265A917E83BA92FEDB2152FBFADA273FCFF2937A85B080641307FD2E61D0138493162883E016796C9F68062A01D79DA60F546EFC2CB1FB4078760EB3451F0
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:.PNG........IHDR................a....pHYs.................sRGB.........gAMA......a.....IDATx.....0...Uq...UP.|..v.K.>.O`.$.[.B....'pvJ}..B..P.h...I.!.rs.%.$....O"r!.I.m....J..........U.. ..F[.....j4<...6.b6.T!x..Y..]..;._.,..........K.F..b.~.$..M.......M....,...i....*.z...x8."C.r.{.2~.~........x...B.G.6.....IEND.B`.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 454821
                                                  Category:downloaded
                                                  Size (bytes):122725
                                                  Entropy (8bit):7.997347629519925
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:9CDA699A84CA8729FAF194B8EFDDF6C0
                                                  SHA1:804F83F5225243951178A1F785AF2B897B87ACA5
                                                  SHA-256:A7C6A8173409765CFCAA6925CBF2CA7732ECC5B353FC8274746FA4BF4A1CABC4
                                                  SHA-512:FA7A94976304C486A8A20C0672C8B4DEE5532099434B475B36C230498DB14DE99596B54AE95A2C9D2601EABCCDCDEE4DF5A1B21231F18E6EAD9AD453120588EB
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/js/ConvergedLogin_PCore_n7VKwtWYm2mBLcIKAZfQlw2.js
                                                  Preview:...........}[.8......\&.L.....M..f...@......V....../'d?...$..........mb..V*..J............2..]]W.'...WG.K............`.....~\..SV..#'f^%.*aT..7..a.$,.....w..q..*.....O.&qe......i.\.Bu.W.t..rzY.C..j.'~...p.....J.&..*N.QmS..bVY...*....P9..(..qR....'h$^@z....D....2.....^."..5.fx.1.C.|.*..@._...b....4....k].DZ..7.J.V^..}6.?.T.o......:.p.zn.1.....i%..B.....2..x.Z.DN.(....9..................^aq...l.sK.?.1.K2.T...Q.3.T....5..Y.Y.I2....&~....p.......C..G........?c^....\.F..Q8s.@.u.b.4..K...`_.....q|q.?]..<>l........R...........u_.....#.c..m.}{w....,.$....N....N..p..a..0y........@..1.].......m....v..E.P..h.....8..$@....]UFz.UV.mrgG.O.j.=..+{Zs..?N..jm%.h/W.c/.-.X..h........w..%.(...:.),...J.d/}+....Lk.Z..B..Q..YVO..wX....edi....e.#?.....".U.q-..J....h4..m....i}....[..+.z.E.<mC..]X.N..4.^.....*...,..j..;.).j...N..G....X7k..@L.L...h-.p..%R?.>e.......3.O_.....T$.C..~|)...U..!.k1=...)Y! )..;.Y.#%......{.K..?0.s_oo..%.S.i...kgr..XUC ...M.yJ.......
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
                                                  Category:downloaded
                                                  Size (bytes):673
                                                  Entropy (8bit):7.6596900876595075
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:0E176276362B94279A4492511BFCBD98
                                                  SHA1:389FE6B51F62254BB98939896B8C89EBEFFE2A02
                                                  SHA-256:9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C
                                                  SHA-512:8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/images/backgrounds/2_11d9e3bcdfede9ce5ce5ace2d129f1c4.svg
                                                  Preview:...........U.n.0....}i..P..C..7l/..d........n...G....yl. .E.......Tu.F.........?$.i.s..s...C..wi$.....r....CT.U.FuS..r.e.~...G.q...*..~M..mu}.0.=..&.~.e.WLX.....X..%p..i......7+.........?......WN..%>...$..c..}N....Y4?..x.1.....*.#v...Gal9.!.9.A.u..b..>..".#A2"+...<qc.v....)3...x.p&..K.&..T.r.'....J.T....Q..=..H).X...<.r...KkX........)5i4.+.h.....5.<..5.^O.eC%V^....Nx.E..;..52..h....C"I./.`..O...f..r..n.h.r]}.G^..D.7..i.].}.G.].....{....oW............h.4...}~=6u..k...=.X..+z}.4.].....YS5..J......)......m....w.......~}.C.b_..[.u..9_7.u.u.....y.ss....:_yQ<{..K.V_Z....c.G.N.a...?/..%. .-..K.td....4...5.(.e.`G7..]t?.3..\..... ....G.H...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (48316), with no line terminators
                                                  Category:downloaded
                                                  Size (bytes):48316
                                                  Entropy (8bit):5.6346993394709
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2CA03AD87885AB983541092B87ADB299
                                                  SHA1:1A17F60BF776A8C468A185C1E8E985C41A50DC27
                                                  SHA-256:8E3B0117F4DF4BE452C0B6AF5B8F0A0ACF9D4ADE23D08D55D7E312AF22077762
                                                  SHA-512:13C412BD66747822C6938926DE1C52B0D98659B2ED48249471EC0340F416645EA9114F06953F1AE5F177DB03A5D62F1FB5D321B2C4EB17F3A1C865B0A274DC5C
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://cdnjs.cloudflare.com/ajax/libs/crypto-js/4.1.1/crypto-js.min.js
                                                  Preview:!function(t,e){"object"==typeof exports?module.exports=exports=e():"function"==typeof define&&define.amd?define([],e):t.CryptoJS=e()}(this,function(){var n,o,s,a,h,t,e,l,r,i,c,f,d,u,p,S,x,b,A,H,z,_,v,g,y,B,w,k,m,C,D,E,R,M,F,P,W,O,I,U=U||function(h){var i;if("undefined"!=typeof window&&window.crypto&&(i=window.crypto),"undefined"!=typeof self&&self.crypto&&(i=self.crypto),!(i=!(i=!(i="undefined"!=typeof globalThis&&globalThis.crypto?globalThis.crypto:i)&&"undefined"!=typeof window&&window.msCrypto?window.msCrypto:i)&&"undefined"!=typeof global&&global.crypto?global.crypto:i)&&"function"==typeof require)try{i=require("crypto")}catch(t){}var r=Object.create||function(t){return e.prototype=t,t=new e,e.prototype=null,t};function e(){}var t={},n=t.lib={},o=n.Base={extend:function(t){var e=r(this);return t&&e.mixIn(t),e.hasOwnProperty("init")&&this.init!==e.init||(e.init=function(){e.$super.init.apply(this,arguments)}),(e.init.prototype=e).$super=this,e},create:function(){var t=this.extend();
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (19521)
                                                  Category:downloaded
                                                  Size (bytes):19692
                                                  Entropy (8bit):5.385533055668653
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:FFFA32AEDD2E048947A253B36F0E2E84
                                                  SHA1:6623EFD5BC6CE26CDD4CA862EAD5517D5EC7F320
                                                  SHA-256:72C3CBA30D3A26FDB31C7C57AF38B733514E01DBAF06B549804DD0FDB701BF3D
                                                  SHA-512:FC6FECE53E30CB38CEE7122BF53BC36D1C3345FE2245B239D028B5BFC23081136278BF7A0282EBCD319576E92D6D8075F37808062D7CDC57B5607B26B8179751
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.8743.js?cs=fa5475709870a35186df
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8743.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8743],{72490:function(t,o,e){"use strict";e.d(o,{S8:function(){return y},WL:function(){return A}});var n=e(39653),r=e(13101),a=e(35352),i=e(2989),l=e(80299),c=e.n(l),s=e(62193),d=e.n(s),f=e(61240),p=e.n(f),u=e(8628),g=e.n(u),h=e(85569),x=e.n(h),b=e(11393),v=e.n(b),m=e(5306),C=function(t){(0,r.A)(e,t);var o=(0,a.A)(e);function e(t){return(0,n.A)(this,e),o.call(this,t)}return e}((0,i.A)(Error)),w="TUTORIAL:";function y(t,o){return function(t,o){return new(p())((function(e,n){try{(function(t,o){if(!S(t))throw new C("Attempt to save tutorial failed...invalid key: "+z(t));var e=I(t),n=k(e);if(!n)throw new Error("Attempt to save tutorial before retrieved: "+z(t));var r=JSON.parse(n);if(!r.all){var a={all:o.all};o.all||(a.steps=c()(r.steps,o.steps)),B(e,x()(a||{}))}})(t,{steps:o}),e()}catch(t){R(t),n(t)}}))}(t,[o])}function A(t,o){retur
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65438)
                                                  Category:downloaded
                                                  Size (bytes):107050
                                                  Entropy (8bit):5.52879253457099
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C9A178E87EF9D67207B744DD8252556E
                                                  SHA1:32A11476141AE8CC9E0881E56743DFA0DBC0843E
                                                  SHA-256:4298AB8A22EEDA2DEEEACBA50E9AB4E86696CEF95E639F4ACB8DA89C8187809E
                                                  SHA-512:24979165888C055E80601CB5787F8062127FF64BFDA8BFD18D0E5597557D832524E0731C8FEEE6F13F0143D305AF8E113033B07BBCA54F35F2A317E5F7F6ABF2
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.optimizely-sdk.js?cs=614dec243357505b619f
                                                  Preview:/*! For license information please see signing_iframeless_mobile.optimizely-sdk.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7068],{66501:function(e,t,r){"use strict";Object.defineProperty(t,"__esModule",{value:!0});var n=r(24391),i=function(){function e(){this.errorCount=0}return e.prototype.getDelay=function(){return 0===this.errorCount?0:1e3*n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT[Math.min(n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT.length-1,this.errorCount)]+Math.round(1e3*Math.random())},e.prototype.countError=function(){this.errorCount<n.BACKOFF_BASE_WAIT_SECONDS_BY_ERROR_COUNT.length-1&&this.errorCount++},e.prototype.reset=function(){this.errorCount=0},e}();t.default=i},82128:function(e,t,r){"use strict";var n,i=this&&this.__extends||(n=function(e,t){return n=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var r in t)t.hasOwnProperty(r)&&(e[r]=t[r])},n(e,t)},function(e,t){functio
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65457)
                                                  Category:downloaded
                                                  Size (bytes):1014907
                                                  Entropy (8bit):5.342398198984896
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D59929D7153BBA02CA54053EF058B219
                                                  SHA1:24C53492C60B14D35FD3ECC04ACA9333A0485610
                                                  SHA-256:0549A785C24CC012F13718D2C7A1AFE2AC07A664D035281018683E35E8EE0AC1
                                                  SHA-512:47CEAE8B5F8A87E056F203F366C0240A83114412868E6FD12A0BAEEA23D972E34357231EA8D367E5978623A53D25766CD0CF924FD41ADF5CCC886FC1D361DB09
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing-conversations.js?cs=082ab8cc7
                                                  Preview:/*! For license information please see signing-conversations.js.LICENSE.txt */.!function(){var e,t,n,r,o,i={97455:function(){},57279:function(e,t,n){"use strict";var r=n(5946);Object.defineProperty(t,"__esModule",{value:!0}),t.default=void 0;var o=r(n(61240)),i=r(n(20271)),a=r(n(43563)),u=r(n(70533)),s=function(){function e(){(0,i.default)(this,e),(0,u.default)(this,"queue",new Array),(0,u.default)(this,"workingOnPromise",!1)}return(0,a.default)(e,[{key:"enqueue",value:function(e){var t=this;return new o.default((function(n,r){t.queue.push({worker:e,resolve:n,reject:r}),t.dequeue()}))}},{key:"dequeue",value:function(){var e=this;if(this.workingOnPromise)return!1;var t=this.queue.shift();if(!t)return!1;try{this.workingOnPromise=!0,t.worker().then((function(n){e.workingOnPromise=!1,t.resolve(n),e.dequeue()})).catch((function(n){e.workingOnPromise=!1,t.reject(n),e.dequeue()}))}catch(e){this.workingOnPromise=!1,t.reject(e),this.dequeue()}return!0}}]),e}();t.default=s},74087:function(e,t,n)
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (11610)
                                                  Category:dropped
                                                  Size (bytes):11781
                                                  Entropy (8bit):5.259272923447776
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:F1156BB62485040D6C439B5C28FF167E
                                                  SHA1:05DF2785C31B18E1DF0F9269010186E613893CA8
                                                  SHA-256:A1F2C94DB7AE148517DCAE911924F0F03F0D7FD0A84D84D36E11F6937B0239C6
                                                  SHA-512:9D06E71B1D7B79E86D9B322E7125A2CD657CE56C1B1D86C9CBFABE0186310CF2B75255BB685FAAE41FA2C1DEB8D336473ECD1F6973F9028BD9380A05E8F3B203
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1135.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1135],{21135:function(e,t,r){r(27727),r(47746),r(19693),r(18665),r(40590),r(83515),r(17),r(28743),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(43148),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602);var n=r(51544),o=r(65939),i=r(51486),a=["SearchExperience"];function c(){c=function(){return t};var e,t={},r=Object.prototype,n=r.hasOwnProperty,o=Object.defineProperty||function(e,t,r){e[t]=r.value},i="function"==typeof Symbol?Symbol:{},a=i.iterator||"@@iterator",s=i.asyncIterator||"@@asyncIterator",u=i.toStringTag||"@@toStringTag";function l(e,t,r){return Object.defineProperty(e,t,{value:r,enumerable:!0,configurable:!0,writable:!0}),e[t]}try{l({},"")}catch(e){l=function(e,t,r){return e[t]=r}}function h(e,t,r,n){var i=t&&t.prototype instanceof g?t:g,a=Object.create(i.prototype),c=new I(n||[]);retu
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (17296)
                                                  Category:downloaded
                                                  Size (bytes):17467
                                                  Entropy (8bit):5.316741728387929
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:E3FCA0CF2A23FB9AE40BD3F28192C754
                                                  SHA1:9B8BCB43BB2ADDB53BE2024AFD066B57F03419D5
                                                  SHA-256:D8090AB13DD52D0697DF7E9D8FC11E68FD463A12B4210EB70E499B06970DB121
                                                  SHA-512:A8481E21FC94D3C3E492154C872FC027E09E7E3FF53A63511DBCE4DE94079C54F8CFE23342D40D43268537E11E26D219DCFDB56914F16866FCB515A80B4706A0
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.5524.js?cs=9c2bf8ad3de268e3e56c
                                                  Preview:/*! For license information please see signing_iframeless_mobile.5524.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5524],{55524:function(e,t,o){o.d(t,{P:function(){return ue}});var n=o(97032),r=o(27026),a=o(48079),i=o.n(a),l=o(96540),d=o(5556),s=o.n(d),c=o(59579),p=o(38008),u=o(26207),f=o(51544),b=o(90812),v=o(74111),x=o(92742),m=o(31824),h=o(10330),w=o(24914),g=o(59793),A=o(19747),y=o(90508),C=o(45603),k=(0,l.createContext)({dark:!1,imagePosition:void 0});function I(){return(0,l.useContext)(k)}var E=o(57838),B=o(94801),S=o(64056),O=o(36689),F=o(11393),R=o.n(F),W=o(68150),q="8px",j="7px";function T(e){return"small"===e?"320px":"medium"===e?"384px":"large"===e?"480px":"xlarge"===e?"640px":void 0}var P={base:()=>({default:{popover:{maxWidth:"100%",zIndex:O.A.Callout},wrap:{color:S.A.black,display:"block",position:"relative"},innerWrap:{minHeight:"100%"},closeButton:{position:"absolute",zIndex:O.A.aboveBaseLevel}},initialFocus:{outl
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:very short file (no magic)
                                                  Category:dropped
                                                  Size (bytes):1
                                                  Entropy (8bit):0.0
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:C4CA4238A0B923820DCC509A6F75849B
                                                  SHA1:356A192B7913B04C54574D18C28D46E6395428AB
                                                  SHA-256:6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B
                                                  SHA-512:4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:1
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (16614)
                                                  Category:dropped
                                                  Size (bytes):16786
                                                  Entropy (8bit):5.297512542437714
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:0A5DE0692A7C96698B3904920729792A
                                                  SHA1:8F145B61CC4E9DA42F957B1844DE9025D630C4BF
                                                  SHA-256:DA81F2FA5DF3A071B7AC19FE413B683CB1AE92D592A6B9DCCD7C1282D4147221
                                                  SHA-512:F15F8F67934F014DC880997099920616313D8A1E06F4DCE0FD5F50D273EC173AD9E7B69D39691FEC0E611C9812B12B9703DC98B136A2AB6060DF1982840AF391
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.2708.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2708],{22708:function(e,n,a){a.d(n,{T:function(){return v}});var r,s=a(11393),t=a.n(s),i=a(22204),l=a(71426),u=a.n(l),d=a(50697),o=a.n(d),c=["ar","bg_bg","cs_cz","da_dk","de_de","el_gr","en_au","en_gb","en_us","es_es","es_mx","et_ee","fa_ir","fi_fi","fr_ca","fr_fr","he_il","hi_in","hr_hr","hu_hu","hy_am","id_id","it_it","ja_jp","ko_kr","lt_lt","lv_lv","ms_my","nb_no","nl_nl","pl_pl","pt_br","pt_pt","ro_ro","ru_ru","sk_sk","sl_si","sr","sv_se","th_th","tr_tr","uk_ua","vi_vn","zh_cn","zh_tw","en_ca","en_ie","en_ph","en_in","en_za","en_nz","es_co","es_pr","fr_be","nl_be","es_ar","es_cr","es_cl","es_pe","ar_ae","ar_qa","ar_sa","de_at","de_ch","de_lu","fr_lu","fr_ch","it_ch","zh_hk","zh_sg","sw_ke","ur_pk","yo_ng"],p={bg:"bg_bg",cs:"cs_cz",da:"da_dk",de:"de_de",el:"el_gr",en:"en_us",es:"es_es",et:"et_ee",fa:"fa_ir",fi:"fi
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (35328)
                                                  Category:downloaded
                                                  Size (bytes):35499
                                                  Entropy (8bit):5.368777327371879
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:A7E38358240F52AE8744993A38039D04
                                                  SHA1:0A7CEA2691DB99500DDC15F7DA0C65F3E217F111
                                                  SHA-256:371784F7FE3AE9A139E0E4A7138759F55A26F3EA5AEC43D424C3D0C69BF423CD
                                                  SHA-512:534D13327673894E331362498F6F04E539508E281E159D0965A1F50A1AEC0951F49F91F03674348019C39FBCB08799E1A5D78D534F2CCB07EE70546100B997C5
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.7891.js?cs=0c738d6aea2c969d959a
                                                  Preview:/*! For license information please see signing_iframeless_mobile.7891.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[7891],{32627:function(e,t,n){"use strict";n.d(t,{k:function(){return i}});var o=n(96540),i=function(e){var t=(0,o.useRef)();return void 0===t.current&&(t.current={value:e()}),t.current.value}},44164:function(e,t,n){"use strict";n.d(t,{B:function(){return r}});var o=n(38008),i=n(96540);function r(e,t){var n=(0,i.useState)(!1),r=(0,o.A)(n,2),a=r[0],s=r[1];return(0,i.useEffect)((function(){var n=new IntersectionObserver((function(e){(0,o.A)(e,1)[0].intersectionRatio<1?s(!0):s(!1)}),{root:t,threshold:1});return e&&n.observe(e),function(){n.disconnect()}}),[t,e]),a}n(95127)},45268:function(e,t,n){"use strict";n.d(t,{p:function(){return i}});var o=n(96540);function i(){var e=(0,o.useRef)(!1),t={get mounted(){return!!e.current}};return(0,o.useLayoutEffect)((function(){return e.current=!0,function(){e.current=!1}}),[]),t}},11452:function
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:SVG Scalable Vector Graphics image
                                                  Category:downloaded
                                                  Size (bytes):257
                                                  Entropy (8bit):4.936853809456331
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:6E132855B6DDD5C7A1FA7DAD2C9FE964
                                                  SHA1:0342D3665682749F7C312B8B1EE6A169FA4C68C5
                                                  SHA-256:06DADA60F95EF29D2483D66D0412FF1EE698503F7E29DAE26403F6C5E071507F
                                                  SHA-512:F3314BB8BFC2D262F98FAE116DC50A38BDB2A6AD2D6950BD42BBA43457A934B68894AD8C0952E7C2286E31433185DA1424CAC3048CE47AB0B2A0338C14210761
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/olive/17.20.0/img/mobile-web/mw-comments-24x24.svg
                                                  Preview:<svg width="24" height="24" viewBox="0 0 24 24" xmlns="http://www.w3.org/2000/svg">. <path d="M13.36 15H20V4H4v11h5v3.114L13.36 15zM4 2h16c1.105 0 2 .895 2 2v11c0 1.105-.895 2-2 2h-6l-7 5v-5H4c-1.105 0-2-.895-2-2V4c0-1.105.895-2 2-2z" fill="#333"/>.</svg>.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (631), with no line terminators
                                                  Category:dropped
                                                  Size (bytes):631
                                                  Entropy (8bit):5.169799458362326
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3D3FC87AC5F2F6ADACE10A62D596DDA6
                                                  SHA1:6ABD491F7BCA13139A02714B65C30A252BE5644C
                                                  SHA-256:E5FB0F850B4CB8B72C043DCD4B9BB451C742A3C1FA2822AB6F36F521D20921AE
                                                  SHA-512:BEADE7A9032882C30181E81719788185D87A4394B6158614EC1184CC4BD1770A06F5BFC801D16A85153EEA4EC1F9966FB1C8BE4A7B895AD590481DCBFFFAC491
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:(function(){var u=this;!function(n,t,i,f,r,e,o){if("function"==typeof define&&define.amd)return define(o);f&&f[r]?f[r]=o(n,0,!0,f,r,e):u[n]=o(n,0,!0,f,r,e)}("DS_Arya",0,0,u.module,"exports","length",function(t,i,n,f,r,e,o){"use strict";var u={},c=(s(function(){}),s({})),a=s("");function d(n){throw t+"-"+n}function s(n){var t=typeof n;return function(n){return typeof n==t}}function h(n){for(var t in n)u[t]=n[t]}return{i:function(n){i++?d(1):n!==o&&c(n)&&!n[e]?h(n):d(11)},g:function(n,t){return n&&a(n)?t&&t(u[n])||u[n]||!1:t&&t(u)||u||!1}}})}).call(this);;DS_Arya.i({"DS_A":"1ac45657-6236-4350-b063-f4c61ab1e39b","DS_A_C":""});
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65447)
                                                  Category:dropped
                                                  Size (bytes):135946
                                                  Entropy (8bit):5.177617646728021
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:8F559DC26FF689ED704052BE30666E8B
                                                  SHA1:ED01438829E469C75871B08D980F69D8C61290FD
                                                  SHA-256:6BAAD2287357182EFB8CE8D7F5483E034779AD1DFF03638FC8C0B9CCF057FDA2
                                                  SHA-512:070BC7097C4004B7E098F34A52178CD4606F88F854D88CD1B6CC6E0B8BB56FECD2E99A609F862CB32E61E4614FB95AD42A42254C6A3AAE81823B8ECC3B7720E6
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.olive.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1540],{43466:function(e){e.exports=function(e){function t(i){if(n[i])return n[i].exports;var o=n[i]={exports:{},id:i,loaded:!1};return e[i].call(o.exports,o,o.exports,t),o.loaded=!0,o.exports}var n={};return t.m=e,t.c=n,t.p="/",t(0)}([function(e,t,n){"use strict";n(1),n(2),n(3);var i=n(76);i.keys().forEach((function(e){i(e)}))},function(e,t,n){"use strict";!function(e,t){e.config={closePopoverOnEsc:!0,closePopoverOnClickAnywhere:!0,debug:!1,isAutoInitEnabled:!0},e.version="17.20.0",e.KEYS={tab:9,enter:13,esc:27,left:37,up:38,right:39,down:40},e.l10n={close:"Close",characterLimit:"{{REMAINING}} (maximum {{MAX}} characters)"},e.init=function(e){var t=[],n={add:function(e){return t.push(e),n},run:function(){var e;for(e=0;e<t.length;e++)t[e]();return n},afterLoad:function(){e.config.isAutoInitEnabled&&e.init.run(),e.util.polyfillFle
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (4782)
                                                  Category:dropped
                                                  Size (bytes):4981
                                                  Entropy (8bit):5.247199189098003
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D9AD56703E930DA87B5E25388E735BBA
                                                  SHA1:1A32F14FDC79BB46AF77BBE40532F4963BC0A732
                                                  SHA-256:4DC127BECADC09F784C6D5FB5A8664088F7EF96C28085F069D970D78B3727D9A
                                                  SHA-512:D78E4B903D13A7A88A06AFECA85A682542D01BFECB1CFB327002FA075CACD70154078180E502395CF304D28999AAB5C1281CA846CC45A41063BC1D079277D12A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.telemetry-recorder.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4043],{64431:function(t,e){!function(){var n,r=Array.prototype.forEach,i=Object.prototype.hasOwnProperty,o=Array.prototype.slice,c=0,s={keys:Object.keys||function(t){if("object"!=typeof t&&"function"!=typeof t||null===t)throw new TypeError("keys() called on a non-object");var e,n=[];for(e in t)t.hasOwnProperty(e)&&(n[n.length]=e);return n},uniqueId:function(t){var e=++c+"";return t?t+e:e},has:function(t,e){return i.call(t,e)},each:function(t,e,n){if(null!=t)if(r&&t.forEach===r)t.forEach(e,n);else if(t.length===+t.length)for(var i=0,o=t.length;i<o;i++)e.call(n,t[i],i,t);else for(var c in t)this.has(t,c)&&e.call(n,t[c],c,t)},once:function(t){var e,n=!1;return function(){return n||(n=!0,e=t.apply(this,arguments),t=null),e}}};n={on:function(t,e,n){return l(this,"on",t,[e,n])&&e?(this._events||(this._events={}),(this._ev
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (17590)
                                                  Category:downloaded
                                                  Size (bytes):17803
                                                  Entropy (8bit):5.280671787149368
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:A5DFDA5311112178D18586641A459938
                                                  SHA1:78AB7FB0FF0E96D54B7F66B3755B0AC236A899B7
                                                  SHA-256:0A4E8CC9414933F2BC2AAC92AE7F1DD2DF352315A94CD2C77088D9585155BEEC
                                                  SHA-512:5F8996EA23E21E4EECA304E32ACC3E69ACABEA851AA67CF56368665567C040B64663541C5C7B0AA78558D61E444A8447F7C3DB3DDCB09720FECE0555038A4D3A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.search-box-enabled-checks.js?cs=ee1372a18736552cd3e3
                                                  Preview:/*! For license information please see signing_iframeless_mobile.search-box-enabled-checks.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4047,4043],{64431:function(t,e){!function(){var r,n=Array.prototype.forEach,o=Object.prototype.hasOwnProperty,i=Array.prototype.slice,a=0,c={keys:Object.keys||function(t){if("object"!=typeof t&&"function"!=typeof t||null===t)throw new TypeError("keys() called on a non-object");var e,r=[];for(e in t)t.hasOwnProperty(e)&&(r[r.length]=e);return r},uniqueId:function(t){var e=++a+"";return t?t+e:e},has:function(t,e){return o.call(t,e)},each:function(t,e,r){if(null!=t)if(n&&t.forEach===n)t.forEach(e,r);else if(t.length===+t.length)for(var o=0,i=t.length;o<i;o++)e.call(r,t[o],o,t);else for(var a in t)this.has(t,a)&&e.call(r,t[a],a,t)},once:function(t){var e,r=!1;return function(){return r||(r=!0,e=t.apply(this,arguments),t=null),e}}};r={on:function(t,e,r){return s(this,"on",t,[e,r])&&e?(this._events||(this._events={
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 142534
                                                  Category:dropped
                                                  Size (bytes):49954
                                                  Entropy (8bit):7.99493321471063
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:E16AC075AC754DBD1CF969508220E30D
                                                  SHA1:69A91FF7A1C044231D6D28B4DD4C6AD3D34F2A50
                                                  SHA-256:E8AC3DCEF9E67CC776542A40C71B719D41668DF41D294C1A49A5AD23C5A5B5EC
                                                  SHA-512:12C4E6E5BD999E7BF431DCA707DA4BB5193D2795DD139DCAFC38CAFA757A88F75068D3F2821840068247B9F6CFB55178EF223CDB3349444E622EA4A8E69700A6
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:...........m[.8.0........OL....;w.....a.....\N.......h.r~........=........,..JU.......T~.l..?..y..2.X9.|xvP9...TN.......?.....qe.OE.~Gn,.J.T....0......r..#.V&Qx_I.De.._.8.+S?N..HL..J......%O..S........(=.gO.|.T.0......6.. ..y....x..*..8..p.T"1...|$.Cz..V.D%.Ie.F....^."..5....c...?..T8..._..b.gs.4....S]kDZ..7.J.V..l}..?.....c...g.A...8.......8.VB..*....^..f..O.*... ...`...H.{.$. OP..S..AC.gVE.I8..).-U.....R...A..%.T[...Fc{..49..If...y.'w.Q}..oz..v.....W...pp..%..G.+.r:.A.*.....[.:..s.?U......_............k.y0.U....+I5..0.>.Q%.".w.....O....5w..;.;.>..mr.k53r.......k.0.I.<.D......d&...c..jhE..zx.]....y|W....i...`.. .k.P...@.Uq.\;..1............z|.O..Y5..........XtR,....R...k3..<.*.\.2.>.;T..$...kj.5-.i?/..YH`!jb..Z..=.&.L..F...([..y....K5pzQ.>i.1.......0..P...@...L.".n.x..Cj?..w.:+...n..4..H.. .*....S.....h*....8....v.l.[M.0..q..c;.....0*..*.8.......l.TM..n "..km..S.<.T..].k.+1.....P.V...4-W.C....0-/.S;.w......K.z+...DZ....=q.E.@ .Dv.z...@.d.#tE...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):67961
                                                  Entropy (8bit):5.0377375628447885
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:0ABE10DE63AD7FEB730F2BFA12AB5D8F
                                                  SHA1:9BC334D630354DEE75C8E04FE11F337A17FFA986
                                                  SHA-256:23FB34664847A3AC24F72425E4927E81859A819C4A60E149B93A6D2F5D3A917E
                                                  SHA-512:5D4FFD1468263B9395B1E89799609DBCA80680EEB6CD5548E394AC3CDEC1F5243271DB47D75E1B64FF88D42F3EAB6AE60B232CB5C4921474922FD42F52F7C40A
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8002.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8002],{15069:function(a,o,n){n.d(o,{x:function(){return c}});var t=n(96540),e=(0,t.createContext)({requiredAttribute:!1}),c=()=>(0,t.useContext)(e)},83784:function(a,o,n){n.d(o,{x:function(){return y}});var t=n(97032),e=n(27026),c=(n(96540),n(5556)),g=n.n(c),s=n(90812),i=n(46714),l=n(49956),r=n(19880),d=n(59793),p=n(53811),f={base:a=>{var o=a.tokens,n=a.props;return{default:{wrap:(0,p.A)((0,p.A)({},o.fontDetailS),{},{display:"error"===n.kind?"flex":void 0,margin:0,padding:0,"& > svg":{fill:"currentColor",flex:"error"===n.kind?"0 0 auto":void 0,marginInlineEnd:"8px"}})},helper:{wrap:{color:o.fontColorSubtle}},error:{wrap:{color:o.fontColorError}},disabled:{cursor:"not-allowed",opacity:o.opacityDisabled}}}},v=n(17437),u=["children","data-qa","disabled","id","kind"],m=["error","helper"];function y(a){var o=a.children,n=
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 113424
                                                  Category:downloaded
                                                  Size (bytes):20410
                                                  Entropy (8bit):7.980582012022051
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:3BA4D76A17ADD0A6C34EE696F28C8541
                                                  SHA1:5E8A4B8334539A7EAB798A7799F6E232016CB263
                                                  SHA-256:17D6FF63DD857A72F37292B5906B40DC087EA27D7B1DEFCFA6DD1BA82AEA0B59
                                                  SHA-512:8DA16A9759BB68A6B408F9F274B882ABB3EE7BA19F888448E495B721094BDB2CE5664E9A26BAE306A00491235EB94C143E53F618CCD6D50307C3C7F2EF1B4455
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/converged.v2.login.min_81imvbluez-v5hbzpkxfcg2.css
                                                  Preview:...........}k..6..w...R..J.H=GSI..x.9...}T*.....)Q..f<...~.F.h..x..{+.-.....h..n....</v.ev......W.,.bU..rW.I...0x...C..2...6]..W_......../x.........~.z.}.|.#x......Ag*O.|XgU...4 .^'U...mP.A.].Z.U.!..Y.......:.ve.?.!..d.N...xJ...mR......0.@p...lKr/...E.-. .....|l.4.o.i.......L.iF..T{.n....2....VEY.y=..=..T+V./.b....\....7.sH.w{.h.....!.."F.k.!.......d...mS.rh.&G.../..h&..RE"!.A/.......A....L...8.q.M...t[...R...>.6;R..^.Vu..9.[F........>A.:HT}w]......2........p......'T.^]}.^..yJ>.<..pq..h.|..j....j.x..-...c...f...=".)..U.X'.M..l.]ZVtl\.I..}.0.~B0Y'.N...E.4.Xd..e...a.........."..9+d.&..l.$E..R.u.g.Q..w&...~I. .y..D.4;..'.."-.....b...)k.n.M...,3J.z_..&2f.h;.&.R.y..P..X.....\P....*.r...B.$........<....H5.M.."'#.6mQl..mQ5.=.\...O.....^..jM..u*.F..Oh.lNI..j..T..u...I..._........{.\...{..._|..={O..z..>......x..5Q.D7?{...^...^.......o.=.z......v......z.C...Gtw...0!..M@....^...^.x..G....W...{...)..y.<c3...^>{......7._..'d__...;R.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:GIF image data, version 89a, 352 x 3
                                                  Category:downloaded
                                                  Size (bytes):2672
                                                  Entropy (8bit):6.640973516071413
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:166DE53471265253AB3A456DEFE6DA23
                                                  SHA1:17C6DF4D7CCF1FA2C9EFD716FBAE0FC2C71C8D6D
                                                  SHA-256:A46201581A7C7C667FD42787CD1E9ADF2F6BF809EFB7596E61A03E8DBA9ADA13
                                                  SHA-512:80978C1D262BC225A8BA1758DF546E27B5BE8D84CBCF7E6044910E5E05E04AFFEFEC3C0DA0818145EB8A917E1A8D90F4BAC833B64A1F6DE97AD3D5FC80A02308
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/images/marching_ants_white_8257b0707cbe1d0bd2661b80068676fe.gif
                                                  Preview:GIF89a`............!..NETSCAPE2.0.....!.......,....`.....6......P.l.......H....I..:qJ......k....`BY..L*..&...!.......,....0.............<....[.\K8j.tr.g..!.......,....3............^;.*..\UK.]\.%.V.c...!.......,....7........`....lo...[.a..*Rw~i...!.......,....;........h.....l.G-.[K.,_XA]..'g..!.......,....?........i.....g....Z.}..)..u...F..!.......,....C...............P.,nt^.i....Xq...i..!.......,....F...........{^b....n.y..i...\C.-...!.......,....H..............R...o....h.xV!.z#...!.......,"...L.............r.jY..w~aP(.......[i...!.......,(...N.............r....w.aP.j.'.)Y..S..!.......,....H.........`......hew..9`.%z.xVeS..!.......,5...A.........`...\m.Vmtzw.}.d.%...Q..!.......,9...=.........h......3S..s.-W8m...Q..!.......,A...5.........h.....N...:..!..U..!.......,H.............h....M.x...f.i.4..!.......,O...'.........i...tp......(..!.......,X.............j...@.x....!.......,].............j..L..3em..!.......,e.............`......!.......,n..............{i..!..
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (46195)
                                                  Category:downloaded
                                                  Size (bytes):46364
                                                  Entropy (8bit):5.327516618879687
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:9AB9C094CA9DEF2E71BFD02427800605
                                                  SHA1:CAED91CCD2D603372E472D38FEA038068C94BAE7
                                                  SHA-256:4184ABE5D2CAE833B392820DA5A2D45B452415BE18AA5731A3BC1A30A64CAE11
                                                  SHA-512:7A3EC2878CFF35B3D93B0F4190102723E8AF1A81175F8B2E1A3527D29DFA5CB704FCF0F69D30900B179A25FB5A2D8AF5229058B1DA231899B55C558643DF94C1
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.661.js?cs=d59391ab254109ace007
                                                  Preview:/*! For license information please see signing_iframeless_mobile.661.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[661],{54707:function(t,e,r){r.d(e,{C:function(){return _},R:function(){return P}}),r(40590),r(83515),r(15195),r(18665),r(28743),r(14913),r(87136),r(70617),r(6048),r(14602);var n=r(96540),o=r(90993),a=r(40892),i=r(22434),c=r(51552),l=r(20621),u=(r(80115),r(47746),r(7918),r(79073),r(84216),r(43148),r(40173),r(68329),r(56639),r(83725),r(29838),r(79404),r(16196),r(39982),r(57399),r(86970),r(11048),r(2236),r(71650),r(26884),r(58710),r(63617),r(83019),r(98657),r(53380),r(58379),r(74692)),s=r.n(u),h=r(5984),f=r(60862),p=r(79361),d=r(75550),y=r(3574),v=r(7456),m=r(63868);function g(t,e){return function(t){if(Array.isArray(t))return t}(t)||function(t,e){var r=null==t?null:"undefined"!=typeof Symbol&&t[Symbol.iterator]||t["@@iterator"];if(null!=r){var n,o,a,i,c=[],l=!0,u=!1;try{if(a=(r=r.call(t)).next,0===e){if(Object(r)!==r)re
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Web Open Font Format, TrueType, length 13780, version 1.0
                                                  Category:downloaded
                                                  Size (bytes):13780
                                                  Entropy (8bit):7.973002703865565
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D2793531447C140874B62B7448EF7191
                                                  SHA1:1CE36AA9C6445DACDFA8B597BD79A34514CC9F60
                                                  SHA-256:2B1A1F78DF06385464750F48AED402C315164D51FD9475E8B5A47D897CF9C084
                                                  SHA-512:33EDD561F46BFEE5D1A9AFA119F8EC6CAD9B9FD6B54FFD25B1862B5AFFFB1B82DB74D2A4AE11B7893D8261E0520EF5B5E5AF21E7D2D39D02BB849B9FDA268DDD
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/olive/17.20.0/fonts/olive-icons.woff
                                                  Preview:wOFF......5......._.........................GSUB.......;...T .%zOS/2...D...A...V6>H.cmap...........P.<..glyf......(v..E.....head.......3...6..*.hhea...P.......$.?..hmtx...p...J...dU...loca.......4...4CYTHmaxp../........ ....name..0....0...:...Lpost..1@.........+@.x.c`d``.b0`.c`rq..a..I,.c.b`a...<2.1'3=.......i. f....&;.H.x.c`d~.8.....A.i.............X.....4........_..Q.....4#H.....>...x....r.W...@.(.A..s..s..A..%r.ND..g.E.s.6.|./.{....N.T.[.jfV.......[...S.wt..ok:..L..kk.......O.+...L*.......^n...eyU.w.C..G.>..V6u.l....+.x.{...V~..W..cj.1...c..%>...|..t.;=|...M.....1...3...a(..c8#.....].a,....&2.g...L.yf0.Y.f.s..|....|.F.u).X..V...a-.X..6...la+....v....a/......D3.8.....1.s...r...,.8...h.".....r....&.....r..<.!......o...<.).x....{^..?..._.....?..W..?Y.../.._..?....M.....R..[....4D5CeRT.U..{.........w(.5..+m.]Ki.........=My.....}Ny.T..<..)/.S@y.T..*<..7.....O..]xn(..7...%...T...|.N.IC..3.j......u.O$...M.=<..Gx^Q...^..F.........O8...u.?<......p....L@..t@
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65449)
                                                  Category:downloaded
                                                  Size (bytes):148254
                                                  Entropy (8bit):5.3125445094094195
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:731C60D5DDBCA372CAD5BEB4FADBD92D
                                                  SHA1:4B2E0895F3F0202AE45F43E1D7D773ED03785DDE
                                                  SHA-256:222677E3A6AB7C7C9028E76586124921C3DE7D2322BF2624E388D321F96DE1B0
                                                  SHA-512:AD2B7630D141895BED07C484BEFBFB41238B63521FEB848285C9A6FB491FFF70BA976637B9D66E79F9C2EAC2257AF8FE8E80F574C8C77856EDF5185D288812AC
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.201.js?cs=db1d0f24b1f8177f10e0
                                                  Preview:/*! For license information please see signing_iframeless_mobile.201.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[201],{65945:function(e,t,n){"use strict";n.d(t,{s:function(){return s}});var r=n(11393),o=n.n(r),i=n(87425),a=n.n(i),s=function(e){var t,n=arguments.length>1&&void 0!==arguments[1]?arguments[1]:10;return o()(t="".concat(e||"")).call(t,a()(n))}},87425:function(e){for(var t=self.crypto||self.msCrypto,n="-_",r=36;r--;)n+=r.toString(36);for(r=36;r---10;)n+=r.toString(36).toUpperCase();e.exports=function(e){var o="",i=t.getRandomValues(new Uint8Array(e||21));for(r=e||21;r--;)o+=n[63&i[r]];return o}},69586:function(e,t,n){"use strict";n.r(t),n.d(t,{Motion:function(){return va},MotionPresence:function(){return Aa},MotionVariant:function(){return ha},disableMotion:function(){return ia},enableMotion:function(){return aa}});var r=n(39653);"undefined"==typeof Proxy&&(self.Proxy=function e(){(0,r.A)(this,e)});var o=n(97032),i=n(27026),a=n(965
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 42 x 81, 8-bit/color RGB, non-interlaced
                                                  Category:dropped
                                                  Size (bytes):61
                                                  Entropy (8bit):4.014960565232003
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:0B8BE2B782455D2EC539FF65FA1E6E7F
                                                  SHA1:E8D20597AB59EC7097E5A816A064D77622332496
                                                  SHA-256:D0F4C86D4187454DFB6713E718064D4413A87EE28FE90F8FD4B3E5FB9B6B391F
                                                  SHA-512:5E700799A6A4A8777E37BBD5E333E7624450F1D0107D1DA072893B9F107EBA08B1A266B4411F3C0BD5EEC727DB590DE83F9BA14C4AD01891F7071CDF0C07467B
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:.PNG........IHDR...*...Q.....+D......IDAT.....$.....IEND.B`.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (15086)
                                                  Category:downloaded
                                                  Size (bytes):15269
                                                  Entropy (8bit):5.193188794322227
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:27C7CA955421621AB71233CA34BC5637
                                                  SHA1:52EE83A051DD6670A1447E4717EDB4A3D358D6B7
                                                  SHA-256:EA506BB22F6F3C725CC30EC6229EC024245CB6DF37D8E2C4FFA03C54BD64A887
                                                  SHA-512:79ED31C4BD04604A912D2D84959834AC055C421D85BFE4B55693F98FDC351C72B8DF8B9D8E7D0D3269223D68CFF5FD92267D728A78418DCDDA4111254AD3239C
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.optimizely.js?cs=4e025e3936f7ac69bfa9
                                                  Preview:/*! For license information please see signing_iframeless_mobile.optimizely.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[4279],{91277:function(t,e,r){r.r(e),r.d(e,{default:function(){return w}}),r(40590),r(27727),r(83515),r(17),r(15195),r(18665),r(28743),r(10557),r(14913),r(31586),r(96982),r(3101),r(69193),r(87136),r(70617),r(6048),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(14602);var n=r(41751),i=r(3574),o=r(10212),a=r(40359),c=r(95390),l=r(89764),u=r(62247),s=r(89221),h=r(51552),p=r(75185),f=r(31096);function d(t,e){(null==e||e>t.length)&&(e=t.length);for(var r=0,n=new Array(e);r<e;r++)n[r]=t[r];return n}function v(){v=function(){return e};var t,e={},r=Object.prototype,n=r.hasOwnProperty,i=Object.defineProperty||function(t,e,r){t[e]=r.value},o="function"==typeof Symbol?Symbol:{},a=o.iterator||"@@iterator",c=o.asyncIterator||"@@asyncIterator",l=o.toStringTag||"@@toStringTag";function u(t,e,r){return Object.definePro
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 113769
                                                  Category:downloaded
                                                  Size (bytes):35170
                                                  Entropy (8bit):7.993096534744333
                                                  Encrypted:true
                                                  SSDEEP:
                                                  MD5:171A4DD9400708B88724B57D62B24A6A
                                                  SHA1:9C6F1303B8F02FCE18D20EC9CADA11D38D0C4B37
                                                  SHA-256:EA00750636C11DBD4FA3ACB1B3CDCBAE3EFA43F6B6C3753444B6D6A242AE9336
                                                  SHA-512:5B13B63912B34E3EEEDD8DA5953B869A83DF82FFD2A8D737AA81DC984F1811800A534F340C48041DA803C25B6B8F5605EA8D003B6A09A1874408F95A710F5126
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://aadcdn.msauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pstringcustomizationhelper_cc2c59f5ef2c09e14b08.js
                                                  Preview:...........kC.H.0......e....0.pX..Iv3..\f..0YY.m..e$.K..o...j..g.3.lpW.......[..Y.?k.Y.......8~.a..../_.;]{.............v...0..q.Dk.w...h-....Z<..l.fA..k3.7..dm....b..-...(,.$...4...f...e...AV..z.mA....O.9........k..h-.......<Z[.GQ.v3....Oq..y:..(..k.$_...._..h-...q..S.ck.=.T......Sq@.:.A.c.(....SDq..Ac.t..m.$Lc....Z...K...O<....f9..p...0Z..3.<...$YK.x.F......v....nm..s$...&..dQ4.......n-.-.......E.XD..-5~...f.....t...-_.....fsg...8kZ..|.{{....p+Lg.t9I..P./ap......o9Wx.._{....k..,...............................7.|..t...Ax.7..b..v..v.m-...~v...:....r..._........,...A........z.....|..t.. [.C.....{...~..c......ua...~.v<.I..P#._{{}._.......Km...eR....u?GY..h..}..gAv...<.l.Z...#.....:P?Q..."..........,.D...I<._.'..-..=..;.>.C_..#.....D[0.Y..*...M.....{.YT,...x..SQ/......N<`...|._.k....0)......+.Z..4...M. ...i...`.ml..-X.E.....d.. .}.e4.{6hz^..}....@....W.1...d8...>.@.....(.'[..`..A..?...yL.|..QTF...-.='S@.Q.sM.`...}.t..$..y^..0J.kC.S...U.
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (28564)
                                                  Category:downloaded
                                                  Size (bytes):28735
                                                  Entropy (8bit):5.382552541734876
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:05EEF125165B37AEE16400AA1D14F3C2
                                                  SHA1:D69303EC7C9756306D89AC3894A64D3C9976ECE6
                                                  SHA-256:A538D090294C66C34FEDDB51959E02DADC4A2B0224BF8DBC30630939F0C0E406
                                                  SHA-512:9B7A04BF323267CA2082126B210306FFE8CBC3F3E2B3CDF48CC0D7CEFE17C1FC0A06D66A1DDEE4238FA07611FE117D6C5A98B0150AD8639F27644279D87DAE20
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.3329.js?cs=8a8ff9be5c941c72ec67
                                                  Preview:/*! For license information please see signing_iframeless_mobile.3329.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3329],{62247:function(e,t,r){r.r(t),r.d(t,{default:function(){return z},registerTabLookup:function(){return W}});var n={};r.r(n),r.d(n,{cleanUpTelemetryArr:function(){return L},getShouldUseSendBeaconForSave:function(){return j},isTelemetryFeatureEnabled:function(){return R},promiseToSwallowErrors:function(){return I},save:function(){return _},swallowErrors:function(){return C},telemetryRecorder:function(){return N}});var o=r(72398),a=(r(40590),r(83515),r(17),r(28743),r(3101),r(44154),r(56639),r(83725),r(35019),r(29838),r(58379),r(28936)),i=r(40010),c=r(46887);function u(e,t){var r=Object.keys(e);if(Object.getOwnPropertySymbols){var n=Object.getOwnPropertySymbols(e);t&&(n=n.filter((function(t){return Object.getOwnPropertyDescriptor(e,t).enumerable}))),r.push.apply(r,n)}return r}function l(e){for(var t=1;t<arguments.le
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:dropped
                                                  Size (bytes):493855
                                                  Entropy (8bit):5.539923181314683
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:D479F3A7B1F45FABD17917E4C8146247
                                                  SHA1:E36F3844F1C259A6770504AF2337DEB151F095E7
                                                  SHA-256:58D57BB84F898BCA1947CD8EE674D29DAC87570372227CBE7C367E0ACB35C7E9
                                                  SHA-512:44CC6020968AA02B2160E66211FC0F1D2FA830E80989F27795254FA2EAF87007D55F813A5191DA9BEA6F220A44F09A0CD51BE14B1098E8F306694A8521E9C060
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.3664.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[3664],{42584:function(e,t,n){var i=n(93633);e.exports=(i.default||i).template({1:function(e,t,n,i,a){var r,o,s=null!=t?t:e.nullContext||{},l=e.hooks.helperMissing,u="function",c=e.escapeExpression,d=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return" <"+c(typeof(o=null!=(o=d(n,"htmlTag")||(null!=t?d(t,"htmlTag"):t))?o:l)===u?o.call(s,{name:"htmlTag",hash:{},data:a,loc:{start:{line:3,column:3},end:{line:3,column:14}}}):o)+'\n class="pdf-ua_'+c(typeof(o=null!=(o=d(n,"tag")||(null!=t?d(t,"tag"):t))?o:l)===u?o.call(s,{name:"tag",hash:{},data:a,loc:{start:{line:4,column:18},end:{line:4,column:25}}}):o)+"_"+c(typeof(o=null!=(o=d(n,"pathString")||(null!=t?d(t,"pathString"):t))?o:l)===u?o.call(s,{name:"pathString",hash:{},data:a,loc:{start:{line:4,column:26},end:{line:4,column:40}}}):o)+"
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:downloaded
                                                  Size (bytes):84993
                                                  Entropy (8bit):5.267174884182598
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:B901E18B5A1E8B376889B09B294C6836
                                                  SHA1:59D9CED0841DAF1257D7A218A504F6A92F8FDDB6
                                                  SHA-256:C2FA05ED4B4911E16F800170F4890EA6B67AB7450F4C0DCA2E536B67F4A21A51
                                                  SHA-512:2011068FC8D7A049CA3CE392F89A37C37AFD9712E76EACA788E9E18C27DA09C3C93CE1B74270E8D1D277DB319C4B10706003BF4ADE2D12784644E63B2213376D
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.6826.js?cs=9976133c7fbe6a189b3e
                                                  Preview:/*! For license information please see signing_iframeless_mobile.6826.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[6826],{45603:function(e,t,n){n.d(t,{k:function(){return u}});var r=n(38008),o=n(96540),i=n(82715),u=function(){var e=(0,o.useState)((0,i._T)()||""),t=(0,r.A)(e,2),n=t[0],u=t[1];return(0,o.useEffect)((function(){var e=function(){u(arguments.length>0&&void 0!==arguments[0]?arguments[0]:"")};return(0,i.pF)(e),function(){return(0,i.CK)(e)}}),[]),n}},92742:function(e,t,n){n.d(t,{A:function(){return S}});var r=n(53811),o=n(27026),i=n(48079),u=n.n(i),c=n(96319),l=n.n(c),s=n(8628),a=n.n(s),f=n(96540),d=n(45603),m=n(90812),p=n(6982),v=n(95361),g=n(34743),h=n(53289),y=n(18491),b=n(59793),w=n(94801),x=n(31824),E={flip:function(){return{mainAxis:!(arguments.length>0&&void 0!==arguments[0])||arguments[0],crossAxis:!(arguments.length>1&&void 0!==arguments[1])||arguments[1],fallbackAxisSideDirection:arguments.length>2&&void 0!==arg
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with no line terminators
                                                  Category:dropped
                                                  Size (bytes):20
                                                  Entropy (8bit):3.921928094887362
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:1000A6CAF7299F030F5C73974CCD617E
                                                  SHA1:44C1943894BE0A43D5F1176C085F82A9CF75DAAA
                                                  SHA-256:BB107868145E022BC860243BF8E7144DB9F5350D02F73F9EF56F70C3B89A2BEB
                                                  SHA-512:5864B198DC92823E2F166D2F594BF37B28F53CC0786D4680EB47B3B91D8C3ED831C446AF833EBF5E43A2F03336B8EBE17DDAC57AF5B03F835DE7F15FC551D294
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:window.cdnReport();
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Web Open Font Format, CFF, length 33752, version 0.0
                                                  Category:downloaded
                                                  Size (bytes):33752
                                                  Entropy (8bit):7.984139047245452
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:4DE7535F6F5DF8D5437C21C068DDB0EC
                                                  SHA1:3553204B4624CA41CF1C4F3BD9B37D8C968CBA23
                                                  SHA-256:8F6A520A392FF62149E5FC5AA87BFAB9B3816CD6010D4D4FCA194E8683CA498B
                                                  SHA-512:E2A9B45F69BD1CBCF0D5F3710BECFACF6A28AF0A9FD034262F6AF4803628DADCE4C2FCC385758F88130AB68D362F3694ED786D0971CF7FD7E8FAF6CD1C2860DE
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/fonts/maven-pro/MavenPro-Bold.woff
                                                  Preview:wOFFOTTO...........x........................CFF ......Om......FFTM...h........Z...GDEF..T........ ....GPOS..TH..-....DiP}7GSUB..T(... ... l.t.OS/2.......H...`...Ccmap.......|....#G..head...0...3...6....hhea...d... ...$.U.>hmtx.......Q...X.Xl7maxp..............P.name.......4....N...post........... .j.fx.c`d```d8...l<..W.n...8..2.F.../..)...:..&.(..v...x.c`d``../........g.2.EP.5.......P.....x.c`b.......u..1...<.f........p...).,*fP`P...._....N.u05..X.@r.L.GP..x.m.1O.A.....(...XL...K...*.+.[...-..@.A....6..K...e#.x..|.......^.p..PzV...s...=7q.O..z..+.xn.R=Q.....m.Y.......s..><........6n..c.lq@..klPC.....!".,AJ.`N.e.&.L....F..7g..&..w<.J...P..M-..@.Q.Kz.yn.)dRg...B..J...v:....gR.vFC..N.2....PF0..=.)V.,..{..LY.g"...;9..]p..2n!f....IW67..a.%.mO..-......iXax.c```f.`..F..8..1..,..........P..a)........L..(.(H).)().)X).QTz..........@....1.AU.+H(.UZBU2.................n...}.`...V=X.`.I...Q8.z..*..#..A.L.,.l...\.<.|...B.".b...R.2.r...J.*.j...Z.:.z...F.&.f...V.6.v...N...n...
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (65431)
                                                  Category:dropped
                                                  Size (bytes):196998
                                                  Entropy (8bit):5.034831422597138
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:8079CF99275D5F372DD4721B39CFFCBE
                                                  SHA1:C758F0C63C1213978DE4D2F64393CD06CDC71FD6
                                                  SHA-256:37D3EE6AE32C07D3ED21E7C32FADAAFABCB8DCCCEBD86B8D9D29F3E25D58F6A6
                                                  SHA-512:E0653DE8D79041B88C886785C37A2314A2B046DAD52B6E862737BB41C28E1ADF2C0CAD5120B37CA62B6CC7C056623C603CEAEC65A69FD6361453285E2CA861EC
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.5889.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[5889],{5889:function(e,t,n){n.d(t,{M:function(){return y},W:function(){return b}}),n(40590),n(27727),n(83515),n(18665),n(28743),n(10557),n(14913),n(31586),n(96982),n(69193),n(56639),n(83725),n(29838),n(58379),n(14602);var i=n(18719),a=n(59028),r=n(34248),o=(n(80115),n(15195),n(84095),n(75670),n(87136),n(70617),n(6048),n(40173),n(82715));function s(e,t,n,i,a,r,o){try{var s=e[r](o),l=s.value}catch(e){return void n(e)}s.done?t(l):Promise.resolve(l).then(i,a)}function l(){l=function(){return t};var e,t={},n=Object.prototype,i=n.hasOwnProperty,a=Object.defineProperty||function(e,t,n){e[t]=n.value},r="function"==typeof Symbol?Symbol:{},o=r.iterator||"@@iterator",s=r.asyncIterator||"@@asyncIterator",c=r.toStringTag||"@@toStringTag";function u(e,t,n){return Object.defineProperty(e,t,{value:n,enumerable:!0,configurable:!0,wri
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (24828)
                                                  Category:downloaded
                                                  Size (bytes):24999
                                                  Entropy (8bit):5.38982505162578
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2730C66D531DAEA2B7FFDFDC22C9E37B
                                                  SHA1:3C8B36365CCECD756347F505CDA3CD728A4AB6CA
                                                  SHA-256:FA415AB3CFE06F52E849FBB7D16837A87C28F3D19A623AE0D5E256D6EA867EFD
                                                  SHA-512:0F372A2E869DBB6D4D5646A714F1DDC12C5620DA2B2DF915C03B2ACFCA51CA9111CBC5415739CAD4EA9BB7F6B92729692DDEAB0ECEDE8FD5B7DF8F4F71E09965
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.1180.js?cs=60cb6a75f4e2264dc66b
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1180.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1180],{72559:function(e,t,n){"use strict";n.d(t,{H:function(){return h}});var o=n(38008),r=n(96540),a=n(32627),l=n(39653),i=n(56213),d=n(49859),c=n(11393),s=n.n(c),u=n(5306);function f(e,t){return(e.matches||e.webkitMatchesSelector||e.msMatchesSelector).call(e,t)}function b(e,t){if(e.closest)return e.closest(t);for(var n=e;n;){if(f(n,t))return n;n=n.parentElement}return null}var g=function(e){var t=(0,r.useState)([]),n=(0,o.A)(t,2),a=n[0],l=n[1],i=(0,r.useState)(0),d=(0,o.A)(i,2),c=d[0],s=d[1],u=(0,r.useCallback)((function(e){l(e),s((function(e){return e+1}))}),[]);return(e.length!==a.length||e.some((function(e,t){return e!==a[t]})))&&u(e),c},p=function(){function e(){var t=arguments.length>0&&void 0!==arguments[0]?arguments[0]:{},n=t.actionKey,o=void 0===n?"action":n,r=t.ignoreKey,a=void 0===r?"ignore":r;(0,l.A)(this,e),(0,d.A)(
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (10069)
                                                  Category:dropped
                                                  Size (bytes):10238
                                                  Entropy (8bit):5.474596980689426
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:47DD7796F7D64B1C05CB50616B310F87
                                                  SHA1:02477EA9C7050286936FB2CEB7FA24655AA934FA
                                                  SHA-256:0869EA61716F1923944DB1B29ABC2DF5503D8A1FE1E1BFFEB91D5DAEAA41E059
                                                  SHA-512:62B5C626DB145030188FCEE75DCCCE1A2ED715F0920D4A7D37A1A7C88E96BA263999C286A94539E50B0569268EAB2D423AFD47A06084B13276DF2B184319F9F9
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.769.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[769],{64431:function(t,e){!function(){var n,r=Array.prototype.forEach,s=Object.prototype.hasOwnProperty,i=Array.prototype.slice,h=0,a={keys:Object.keys||function(t){if("object"!=typeof t&&"function"!=typeof t||null===t)throw new TypeError("keys() called on a non-object");var e,n=[];for(e in t)t.hasOwnProperty(e)&&(n[n.length]=e);return n},uniqueId:function(t){var e=++h+"";return t?t+e:e},has:function(t,e){return s.call(t,e)},each:function(t,e,n){if(null!=t)if(r&&t.forEach===r)t.forEach(e,n);else if(t.length===+t.length)for(var s=0,i=t.length;s<i;s++)e.call(n,t[s],s,t);else for(var h in t)this.has(t,h)&&e.call(n,t[h],h,t)},once:function(t){var e,n=!1;return function(){return n||(n=!0,e=t.apply(this,arguments),t=null),e}}};n={on:function(t,e,n){return c(this,"on",t,[e,n])&&e?(this._events||(this._events={}),(this._events[t]||(this._
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (27581)
                                                  Category:dropped
                                                  Size (bytes):27752
                                                  Entropy (8bit):5.109239673140561
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:A991930096A56950E24BE6E0D0208F8D
                                                  SHA1:9D21BD9F14B747BF53795F6051F59DCB8A3AC3CB
                                                  SHA-256:BE3740D50C6D53BA39DD8ABB924F586DA41AC33675D6ADE48A7DD5F53F05BAC8
                                                  SHA-512:CD24D29FE4BCCC7AD2CFBE8B20087514AD030C48E06B05CA4A42BFC460E7D69328695721E72849B5A685DB320C6929EDDA2BB611915A1C24F3DFE016117C3349
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1882.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1882],{24881:function(n,r,t){var u=t(13838),e=TypeError;n.exports=function(n,r){if(!delete n[r])throw e("Cannot delete property "+u(r)+" of "+u(n))}},68763:function(n,r,t){var u=t(51605),e=t(92612),i=t(6539),o=t(79328),f=t(23493),c=t(6648),a=t(57242),l=t(62998),s=t(52057),p=t(24881),v=t(45634)("splice"),h=Math.max,d=Math.min;u({target:"Array",proto:!0,forced:!v},{splice:function(n,r){var t,u,v,y,g,m,b=e(this),w=f(b),j=i(n,w),_=arguments.length;for(0===_?t=u=0:1===_?(t=0,u=w-j):(t=_-2,u=d(h(o(r),0),w-j)),a(w+t-u),v=l(b,u),y=0;y<u;y++)(g=j+y)in b&&s(v,y,b[g]);if(v.length=u,t<u){for(y=j;y<w-u;y++)m=y+t,(g=y+u)in b?b[m]=b[g]:p(b,m);for(y=w;y>w-u+t;y--)p(b,y-1)}else if(t>u)for(y=w-u;y>j;y--)m=y+t-1,(g=y+u-1)in b?b[m]=b[g]:p(b,m);for(y=0;y<t;y++)b[y+j]=arguments[y+2];return c(b,w-u+t),v}})},83995:function(n,r,t){var u=t(51
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
                                                  Category:dropped
                                                  Size (bytes):17174
                                                  Entropy (8bit):2.9129715116732746
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:12E3DAC858061D088023B2BD48E2FA96
                                                  SHA1:E08CE1A144ECEAE0C3C2EA7A9D6FBC5658F24CE5
                                                  SHA-256:90CDAF487716184E4034000935C605D1633926D348116D198F355A98B8C6CD21
                                                  SHA-512:C5030C55A855E7A9E20E22F4C70BF1E0F3C558A9B7D501CFAB6992AC2656AE5E41B050CCAC541EFA55F9603E0D349B247EB4912EE169D44044271789C719CD01
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:..............h(..f...HH...........(..00......h....6.. ...........=...............@..........(....A..(....................(....................................."P.........................................."""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333"""""""""""""""""""""""""""""" ...333333333333333333333333333333""""""""""""""""""""""""""
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:GIF image data, version 89a, 145 x 60
                                                  Category:downloaded
                                                  Size (bytes):5469
                                                  Entropy (8bit):7.404941626697962
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:097D652B65DEC6E954C335739754FC61
                                                  SHA1:83155314927200EC3B9951246D0C1C3B631B088A
                                                  SHA-256:00E709E22EA18FB242C2F41290179522537ABEC841EEF2655D17E02B36CFDC7A
                                                  SHA-512:DE13A4A8CCEC57F7AF23143D55A93AF581D04F6066DF5C0D0B910DEC17EA0EA430621ACD88A25422A5180F37EDAC44A6746051BCE942F8D5E07BF8842A3F08EB
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/imgs/transparentLoader.gif
                                                  Preview:GIF89a..<...............................................................................................................................................................................................!..NETSCAPE2.0.....!..XMP DataXMP<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c021 79.154911, 2013/10/29-11:47:16 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6952efb6-7b37-44ad-8f49-fb6d57787754" xmpMM:DocumentID="xmp.did:CC4E39E8547B11E4960B8D7E59B6B241" xmpMM:InstanceID="xmp.iid:CC4E39E7547B11E4960B8D7E59B6B241" xmp:CreatorTool="Adobe Photoshop CC (Macintosh)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:22335ebf-8a2f-43c0-a35d-602b0ebe7cf3" stRef:documentID="xmp.did:695
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:Unicode text, UTF-8 text, with very long lines (65439)
                                                  Category:dropped
                                                  Size (bytes):521480
                                                  Entropy (8bit):5.836676312039422
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:2AD5075CB374875994B003EFF832FD36
                                                  SHA1:1178888F4119C342CAD4C047AEAF41E16280949A
                                                  SHA-256:3D3F217E23A1A720ACB4448085610825BC09F58F332CDF079B51B87790B8FEAA
                                                  SHA-512:3BB43A78333F59996AB2466CF20085184DB399CBC30A20C3264811D8FB02FA982FFD057E24B93FFB518CD2B8FBD22FFAC8D71B53277EEDCA150DEC611886D663
                                                  Malicious:false
                                                  Reputation:unknown
                                                  Preview:/*! For license information please see signing_iframeless_mobile.1453.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[1453],{1643:function(e,t,a){"use strict";a.d(t,{A:function(){return g}});var o,n=a(59028),r=a(49859),i=a(53811),s=a(38008),l=a(38573),c=(o={"Powered by":{translation:"Powered by {{DOCUSIGN_LOGO}}"},"Contact Us":{translation:"Contact Us"},"Terms of Use":{translation:"Terms of Use"},Privacy:{translation:"Privacy"},"Intellectual Property":{translation:"Intellectual Property"},"xDTM Compliant":{translation:"xDTM Compliant"},"FOOTER:TRUST":{translation:"Trust"},"Copyright . {{CURRENT_YEAR}} DocuSign, Inc. All rights reserved":{translation:"Copyright . {{CURRENT_YEAR}} Docusign, Inc. All rights reserved"},Feedback:{translation:"Feedback"},"Aria-language-selector":{translation:"language selector"},"CMTS:NAME_NOT_AVAILABLE":{translation:"Name not available"},"CMTS:SELECTED_TEXT_LABEL":{translation:"SELECTED:"},"CMTS:PRIVACY_DESCRIPTION
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65440)
                                                  Category:downloaded
                                                  Size (bytes):906737
                                                  Entropy (8bit):5.338821079518622
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:EAD7B5E6341FB82AABDAE4DF2582B1E2
                                                  SHA1:63859B4752A18959C1DE5858A74ED1F64A861233
                                                  SHA-256:CC4CF5B9FC663E69DA0E80E29F8014C0570127B716B30BCE9FB6D905937178C6
                                                  SHA-512:BD1C08EF3DBBCB40C2C11600FFA2F9D24C328A233A49FE5F73B8F2B2DC944A420AEE33FA3715F5CA685919C61CEEC0C64ABCBA96DF12BBDCF5CAD42E88C1B6A9
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.backbone-app.js?cs=d8ae135208666e9f6b23
                                                  Preview:/*! For license information please see signing_iframeless_mobile.backbone-app.js.LICENSE.txt */.(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[2618,3920],{443:function(e,t,n){var a=n(93633);e.exports=(a.default||a).template({compiler:[8,">= 4.3.0"],main:function(e,t,n,a,l){var i,o=null!=t?t:e.nullContext||{},r=e.hooks.helperMissing,s=e.escapeExpression,c="function",u=e.lookupProperty||function(e,t){if(Object.prototype.hasOwnProperty.call(e,t))return e[t]};return'<div id="simple-verify-dialog" class="modal-wrap dialog" data-qa="simple-dialog"><div class="modal-content" role="dialog" aria-labelledby="simple-verify-dialog-title" aria-describedby="simple-verify-dialog-content"><button type="button" class="icon icon-times x-close close" data-action="canceled"><span class="btn-label">'+s((u(n,"$")||t&&u(t,"$")||r).call(o,"DocuSign_Close",{name:"$",hash:{},data:l,loc:{start:{line:1,column:322},end:{line:1,column:344}}}))+'</span></button><div class="header"><h1 id="sim
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:ASCII text, with very long lines (65448)
                                                  Category:downloaded
                                                  Size (bytes):90802
                                                  Entropy (8bit):5.154734784192861
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:69B14F77F5F15C165AB0E0494A2C4E29
                                                  SHA1:4CD94494F118531C889BBF5B04583530A6B5F336
                                                  SHA-256:945D7715D059999187D25501066F3DA70F2C654BD0F7D4C9B41B482C83BAFC0D
                                                  SHA-512:C58FDAE8EF4E65E3232CE9B28C5B7DAA1F5605F39B1AB27FA05ABEFAA86C0EA3CD4DACA2EE769FC96C979DEB58B8226523A4173515608086C782348A8302BC23
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/production/1ds/widgets/@ds/signing/24.12.68-5/signing_iframeless_mobile.8919.js?cs=9782db0616a134b46b39
                                                  Preview:/*! For license information please see signing_iframeless_mobile.8919.js.LICENSE.txt */."use strict";(self.webpackChunk_ds_signing=self.webpackChunk_ds_signing||[]).push([[8919],{83201:function(e,t,n){function r(){r=function(){return t};var e,t={},n=Object.prototype,o=n.hasOwnProperty,i=Object.defineProperty||function(e,t,n){e[t]=n.value},a="function"==typeof Symbol?Symbol:{},s=a.iterator||"@@iterator",u=a.asyncIterator||"@@asyncIterator",c=a.toStringTag||"@@toStringTag";function p(e,t,n){return Object.defineProperty(e,t,{value:n,enumerable:!0,configurable:!0,writable:!0}),e[t]}try{p({},"")}catch(e){p=function(e,t,n){return e[t]=n}}function d(e,t,n,r){var o=t&&t.prototype instanceof h?t:h,a=Object.create(o.prototype),s=new I(r||[]);return i(a,"_invoke",{value:M(e,n,s)}),a}function g(e,t,n){try{return{type:"normal",arg:e.call(t,n)}}catch(e){return{type:"throw",arg:e}}}t.wrap=d;var f="suspendedStart",m="suspendedYield",l="executing",w="completed",v={};function h(){}function S(){}function
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:PNG image data, 32 x 30, 8-bit/color RGBA, non-interlaced
                                                  Category:downloaded
                                                  Size (bytes):1692
                                                  Entropy (8bit):7.1762207959998205
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:8E9667B8E903D03189108CAF045CA989
                                                  SHA1:DAD39B90A3C3365E3E5F8E47DD564D5051AB18F3
                                                  SHA-256:5D0E5A5E557F10318DF3DB0D699B11C154CA087BF681F983A4EFA5EDBAC3BF81
                                                  SHA-512:D8267712526E2D173D45528B4DD245A83B70E14A0125415FFA53326F6F585939E1822F59372404633CBD52D72D20570C8D9D63C0484BE4A896B5125AFCDF731F
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://na4.docusign.net/Signing/images/icons/Warning.png
                                                  Preview:.PNG........IHDR... .........M..)....tEXtSoftware.Adobe ImageReadyq.e<...kiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:AD547700DE0C11E1905FE33E0CA114BE" xmpMM:DocumentID="xmp.did:DC9D5E67425111E38880A304ACC2C5EA" xmpMM:InstanceID="xmp.iid:DC9D5E66425111E38880A304ACC2C5EA" xmp:CreatorTool="Adobe Photoshop CC (Macintosh)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9c1ee5f2-0460-40af-bac1-66ca53c74b1a" stRef:documentID="xmp.did:AD547700DE0C11E1905FE33E0CA114BE"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.S......IDATx.WMk.A....d..ib....*.-E=.H.....?
                                                  Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                  File Type:SVG Scalable Vector Graphics image
                                                  Category:downloaded
                                                  Size (bytes):3728
                                                  Entropy (8bit):4.718277261919778
                                                  Encrypted:false
                                                  SSDEEP:
                                                  MD5:EC396047518A7FEF11D53D1B4F6BE65B
                                                  SHA1:E3BEC4CDAF5567641517A23019ADBFA2328B0A7F
                                                  SHA-256:8F77CFC832517C619BC1B8D82A6A478EE18D97442B4C78B006B0286CEC91E1A8
                                                  SHA-512:34AD62B5CC5EE5C950F340D65800102AE1CD06D34D24A611E7AC2CB9F23308AC96AC669D3B226C258DC6F862D985030EC3D5BB29609ECFEDF34E14F8F48529EB
                                                  Malicious:false
                                                  Reputation:unknown
                                                  URL:https://docucdn-a.akamaihd.net/olive/images/2.63.0/global-assets/ds-logo-default.svg
                                                  Preview:<?xml version="1.0" encoding="utf-8"?>. Generator: Adobe Illustrator 28.1.0, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Layer_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. viewBox="0 0 1200 241.4" style="enable-background:new 0 0 1200 241.4;" xml:space="preserve">.<style type="text/css">...st0{fill:#4C00FF;}...st1{fill:#FF5252;}.</style>.<g>..<g>...<g>....<path d="M1169.2,109.7v78.7h-28.9v-73.5c0-17.9-7.7-27.9-22.7-27.9s-24.9,10.5-27.7,28.1c-0.8,4.2-1,10.7-1,24.4v48.8H1060v-125.....h25.6c0.1,1.1,0.7,12.3,0.7,13c0,0.9,1.1,1.4,1.8,0.8c10.6-8.4,22.3-16.2,38.6-16.2C1153.5,60.9,1169.2,79,1169.2,109.7z"/>....<path d="M1013.4,63.4l-0.9,14.3c-0.1,0.9-1.2,1.4-1.8,0.8c-3.5-3.3-16.4-17.5-38.3-17.5c-31.4,0-54.5,27.1-54.5,63.9l0,0.....c0,37.3,22.9,64.5,54.5,64.5c21.1,0,34-13.7,36.4-16.7c0.7-0.8,2-0.3,2,0.7c-0.3,3.8-0.8,13.3-4,21.4c-4,10.2-13,19.7-31.1,19.7.....c-14.9,0-28.1-5.7-40.6-17.9L920,217.3c13.7,15.5,35
                                                  File type:ASCII text, with CRLF line terminators
                                                  Entropy (8bit):5.689297785078841
                                                  TrID:
                                                    File name:Eastern Contractors Corporation Contract and submittal document.eml
                                                    File size:14'296 bytes
                                                    MD5:407cf4cbd77835f3009d017f6f5fdd91
                                                    SHA1:9cd37acd0494df75cd09668aa72c0a0eea738338
                                                    SHA256:129174ee4efbfa6524dc9bdb733bd2aa0dd54d5b7f8f5e7c0dc692021d16af5c
                                                    SHA512:5cca574d37b7b9716692342f702f84ddf4837dd0918f8ac32162c809d43302e946e284edff926d53169df3a9f4eed49bbb83e0ac726834ef6d38d2491debadef
                                                    SSDEEP:192:lvP67XtHRsJvJwUlJquZ5R+HxRt1ae3O1mOAEPmRzTNwBDVtVRpLe6Lus8cOaAei:lqZHRqf0xbUSOUQBBjbLqtdei
                                                    TLSH:7C520BB54151206B3DB31121B0017E95F5210D8F17D19EFCBC2F7628AC9E9273B6778A
                                                    File Content Preview:Authentication-Results: relay.mimecast.com;...dkim=pass header.d=docusign.net header.s=mail1 header.b=ibEY3y4E;...dmarc=pass (policy=reject) header.from=docusign.net;...spf=pass (relay.mimecast.com: domain of dse_na4@docusign.net designates 64.207.219.9 a
                                                    Subject:Eastern Contractors Corporation Contract and submittal document.
                                                    From:Peter Kim via Docusign <dse_NA4@docusign.net>
                                                    To:"jcox@stonhard.com" <jcox@stonhard.com>
                                                    Cc:
                                                    BCC:
                                                    Date:Mon, 13 Jan 2025 11:11:37 -0800
                                                    Communications:
                                                    • Hello jcox@stonhard.com, Peter Kim has sent you a new Docusign document to view and sign. Please click on the link below to begin signing. Peter Kim (Eastern Contractors Corporation) shared the Contract and submittal document with you. Please review and let me know if you have any questions. Thanks Peter Kim Founder, CEO - Eastern Companies Eastern Contractors Corporation General contractor and construction management www.eccamerica.com REVIEW DOCUMENT https://na4.docusign.net/Signing/EmailStart.aspx?a=e472f45a-3f40-4d74-a7b5-c614bd2f9460&etti=24&acct=cd0c46de-0b7c-43ac-adb1-0a336d43d913&er=da828ee4-19f3-4a0e-ba09-f575112b1029 If clicking the link does not work, you can highlight and copy the entire line above and paste it into your browser to get started. This message was sent to you by Peter Kim who is using the Docusign Electronic Signature Service. If you would rather not receive email from this sender you may contact the sender with your request. Do Not Share This Email This email contains a secure link to Docusign. Please do not share this email, link, or access code with others. Questions about the Document? If you need to modify the document or have questions about the details in the document, please reach out to the sender by emailing them directly. Stop receiving this email Report this email https://protect.docusign.net/report-abuse?e=AUtomjpFak9GlbPL0zFFi10-hdStBMvZ4G26KV1EVRF_Yfim5mhejTuXlF7MhYprgCxsWIo3gTDJkCjrs93ycKFunh0En-QkHng_Z8tqzIeNoF5QglwUF43bxPqY-owPAFRIGUTwBKjOlL9Q619TdsJeSWbGjlv18Jj7w3tGB2K88EXeVBy-qDoIQRSQN9jDCGRit1OjhUbX8jouNyo_6Xk5QIb2uWJTp9xxDuoBT53CV6XYYmgQDipNIAvH0T4A097ly7Or9zOeZztaa03KRMWSo0sFY-q7hZ4LC0ddW_MYpMjdB9DGzXoT1iINJ_w7FfNg0vO2G88gUeaDTn-dSdxweOP41pUyXKguChmR8YXiQdtT5aEFnGXZbR74TuCCc0SlU_NNwM2j_KHjmcKmxppdIsnaHrIRfcfD27yzKMbcgdySX4ekk20X2DEiGAx30A&lang=en Declining to sign Managing notifications If you have trouble signing, visit "How to Sign a Document" on our Docusign Support Center, or browse our Docusign Community for more information. https://support.docusign.com/s/articles/How-do-I-sign-a-DocuSign-document-Basic-Signing?language=en_US&#38;utm_campaign=GBL_XX_DBU_UPS_2211_SignNotificationEmailFooter&#38;utm_medium=product&#38;utm_source=postsend
                                                    Attachments:
                                                      Key Value
                                                      Authentication-Resultsrelay.mimecast.com; dkim=pass header.d=docusign.net header.s=mail1 header.b=ibEY3y4E; dmarc=pass (policy=reject) header.from=docusign.net; spf=pass (relay.mimecast.com: domain of dse_na4@docusign.net designates 64.207.219.9 as permitted sender) smtp.mailfrom=dse_na4@docusign.net
                                                      Receivedfrom docusign.net ([127.0.0.1]) by SE102FE56.corp.docusign.net with Microsoft SMTPSVC(10.0.17763.1697); Mon, 13 Jan 2025 11:11:37 -0800
                                                      X-MC-UniqueGBebz16wP5OfVvr6_qBNfg-1
                                                      X-Mimecast-MFC-AGG-IDGBebz16wP5OfVvr6_qBNfg
                                                      DKIM-Signaturev=1; a=rsa-sha256; c=relaxed/simple; d=docusign.net; s=mail1; t=1736795497; bh=ToXolCIZTfVsHaWTBEJX0w9x9thjlyWUjSC2IHVCcBI=; h=Reply-To:Feedback-ID:From:To:Date:Subject; b=ibEY3y4EFY/I0XX7VGa2rX0r9igq1XZCxspjrXW1r09igmOOYEczu48+ELa5Qnpnh cq3//mp8FwwdysGBk3aKBsaFVDqJlxEUSNNw93HW3kYCDfcj8Yg/H2PzEAFcDSym87 F8RTfxV9PYNatB72hejz9csB8CaAm3wiwW86lVEQpw4JvxvtWx1fFlcJKtToLx1Kn6 p5jhtJFtak7QFjjoTqDxsyWjoP2Oe8GCVeBB4AyRPdVR3mP+Ndr3SnBb+GtE+o16KN iGO1dJfWNyxpXMMhZXqTr1hxVnXrWKevRxP01pUNELw/IOTRwyOAIwy+u57BHAHKlH 43qP8tgJJpFaw==
                                                      SenderDocuSign NA4 System <dse_NA4@docusign.net>
                                                      Reply-ToPeter Kim <Cd3k3@outlook.com>
                                                      Recipient-Idda828ee4-19f3-4a0e-ba09-f575112b1029
                                                      X-DebugFalse
                                                      X-Email-Rejection-ModeLearningMode
                                                      X-Api-Hostna4.docusign.net
                                                      Site-Id7
                                                      X-BounceEmailVersion1
                                                      Feedback-ID1:152396136a1d93fbabedf1a7aedaf310:EnvelopeActivation:Docusign_Prod
                                                      X-DS-Score1
                                                      FromPeter Kim via Docusign <dse_NA4@docusign.net>
                                                      To"jcox@stonhard.com" <jcox@stonhard.com>
                                                      Message-ID<3d2fc9613d4146fca6e52c5465bbc158@docusign.net>
                                                      DateMon, 13 Jan 2025 11:11:37 -0800
                                                      SubjectEastern Contractors Corporation Contract and submittal document.
                                                      MIME-Version1.0
                                                      X-OriginalArrivalTime13 Jan 2025 19:11:37.0725 (UTC) FILETIME=[F8235AD0:01DB65EE]
                                                      X-Mimecast-Spam-Score-98
                                                      Content-Typemultipart/alternative; boundary="----=_NextPart_E8F6B724_1781_4BC7_B286_DDC23912847B"

                                                      Icon Hash:46070c0a8e0c67d6