Edit tour

Windows Analysis Report
https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJ

Overview

General Information

Sample URL:https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=
Analysis ID:1649073
Infos:

Detection

Score:60
Range:0 - 100
Confidence:100%

Signatures

Antivirus detection for URL or domain
Malicious sample detected (through community Yara rule)
Phishing site or detected (based on various text indicators)
Creates files inside the system directory
Deletes files inside the Windows folder
HTML page contains hidden javascript code
Yara signature match

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64
  • chrome.exe (PID: 2892 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: E81F54E6C1129887AEA47E7D092680BF)
    • chrome.exe (PID: 5156 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2192,i,8304551701378974237,13015741462274710447,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2204 /prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
  • chrome.exe (PID: 6348 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU" MD5: E81F54E6C1129887AEA47E7D092680BF)
  • cleanup
No configs have been found
SourceRuleDescriptionAuthorStrings
sslproxydump.pcapevilnumpayload_fmtstrDetect payload of EvilNumSekoia.io
  • 0x1408c61:$fmtstr01: {"v":"
  • 0xa97bb2:$fmtstr02: ,"u":"
  • 0x137de13:$fmtstr02: ,"u":"
  • 0x1c9d6e7:$fmtstr02: ,"u":"
  • 0x1d97aa9:$fmtstr02: ,"u":"
  • 0xa97ca9:$fmtstr03: ,"a":"
  • 0xa97d74:$fmtstr03: ,"a":"
  • 0xa97e84:$fmtstr03: ,"a":"
  • 0xa97ff2:$fmtstr03: ,"a":"
  • 0xa98193:$fmtstr03: ,"a":"
  • 0xa98421:$fmtstr03: ,"a":"
  • 0xa986bd:$fmtstr03: ,"a":"
  • 0xa98747:$fmtstr03: ,"a":"
  • 0xa987f0:$fmtstr03: ,"a":"
  • 0xa97bec:$fmtstr04: ,"w":"
  • 0x137de46:$fmtstr04: ,"w":"
  • 0x1c95318:$fmtstr04: ,"w":"
  • 0x1c9d71a:$fmtstr04: ,"w":"
  • 0x1d97adc:$fmtstr04: ,"w":"
  • 0xa97502:$fmtstr05: ,"d":"
  • 0xa9778c:$fmtstr05: ,"d":"
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: https://login.microsoftonline-int.comAvira URL Cloud: Label: phishing

Phishing

barindex
Source: Chrome DOM: 0.1OCR Text: EDP Vertriebs GmbH Q File Home Insert Draw View Help Viewing v Tell me what you want to do abc Styles v EDPVertriebs GmbH EDP Vertriebs GmbH Add section + Add page Wednesday, March 26, 2025 4:36 AM Quick Notes EDP Vertriebs GmbH PDF KLICKEN SIE HIER UM DAS DOKUMENT ANZUSEHEN Loading [NIathJaxYextensiom'MathZoom.jE
Source: Chrome DOM: 1.4OCR Text: EDP Vertriebs GmbH Q File Home Insert Draw View Help Viewing v Tell me what you want to do abc Styles v EDPVertriebs GmbH EDP Vertriebs GmbH Add section + Add page Wednesday, March 26, 2025 4:36 AM Quick Notes EDP Vertriebs GmbH PDF KLICKEN SIE HIER UM DAS DOKUMENT ANZUSEHEN
Source: https://onedrive.live.com/personal/a19e0d27a159b01d/_layouts/15/Doc.aspx?sourcedoc=%7Be850d13a-ad6f-4f54-8dfe-dfae61d3c47a%7D&action=default&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU&slrid=114b8ea1-0060-c000-6241-c77a4dce2e19&originalPath=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_cnRpbWU9WmRsRlIyVnMzVWc&CID=2229562f-da64-467c-81ae-ab18381bbb3c&_SRM=0:G:56HTTP Parser: Base64 decoded: {"siteid":"1b2bdca2-c9d3-4f22-9504-f5db141119ce","aud":"00000003-0000-0ff1-ce00-000000000000/onedrive.live.com@9188040d-6c67-4c5b-b112-36a304b66dad","exp":"1743422040"}
Source: unknownHTTPS traffic detected: 142.251.40.228:443 -> 192.168.2.7:49690 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.137.11:443 -> 192.168.2.7:49691 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.137.11:443 -> 192.168.2.7:49692 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.229.20:443 -> 192.168.2.7:49806 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.219.36.101:443 -> 192.168.2.7:49816 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.135.4.170:443 -> 192.168.2.7:49832 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.72:443 -> 192.168.2.7:49844 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.230.4:443 -> 192.168.2.7:49846 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49852 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49851 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49855 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49854 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49862 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49853 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.117.182.51:443 -> 192.168.2.7:49863 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.28.13:443 -> 192.168.2.7:49866 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.35.21:443 -> 192.168.2.7:49865 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.229.20:443 -> 192.168.2.7:49894 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49903 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49906 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49907 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49904 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49905 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49908 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.57.90.112:443 -> 192.168.2.7:49992 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.44.136.154:443 -> 192.168.2.7:49993 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.44.201.134:443 -> 192.168.2.7:49991 version: TLS 1.2
Source: Binary string: x=d(96012),z=d(60629),u=d(62280),B=d(73225),F=d(50625),D=d(13059),C=d(65097),I=d(72974),M=d(93168),K=d(48703),R=d(67590),T=d(79587),v=d(50952),N=d(44914);class Q{constructor(){this.MX=!1;this.EJe=this.PDb=0}ev(){return!0}iA(O){this.PDb=O.clientPoint.x;this.EJe=C.App.ha.oa.lg.container.clientWidth;return this.MX=!0}gt(O){this.MX&&C.App.ha.oa.lg.resize(this.EJe+r.a.V2f(O.clientPoint.x-this.PDb));return!0}gq(){this.cNb()}oB(){this.cNb()}cNb(){this.MX=!1;C.App.ha.cfa()}dispose(){}}(0,E.a)(Q,"NavigationPaneResizeAdapter", source: chromecache_197.1.dr
Source: Binary string: this.vb[t.a.$4a]=B;u.rZb(this);this.ZIb()}MGa(){return r.b(this.Mb.CommandValueId)?this.Mb.MenuItemId:this.Mb.CommandValueId}YL(){return""}get id(){return this._id}get $ea(){return!1}get Hn(){return this.rXc}get A3(){return!!Ua.AFrameworkApplication.fa&&Ua.AFrameworkApplication.fa.Ea.qE}ZIb(){if(!this.behavior){var u=L.a.Pdb;u&&(this.behavior=u.ucf(this))}}get Mb(){return this.$a}get vb(){r.c(this.JTa)&&(this.JTa={});return this.JTa}get nFa(){r.c(this.gOa)&&(this.gOa={});return this.gOa}get iSb(){return m.a.Pf(this.Mb.IsDefinitive)}get Apb(){return m.a.Vy(this.Mb.ShouldSetTitle)}get fPc(){return this.Mb.TemplateAlias}get Iz(){return this.dK? source: chromecache_192.1.dr
Source: Binary string: null;this.pDb=this.AQa=!1;this.Opd=(x,z)=>{this.Kpa.insert(0,new L(z.commandId,z.controlId,z.time,z.commandSurface,z.inputMethod,z.contentType,z.w9));this.U5a(this.Kpa);this.AQa&&this.Xaa.MOd(z.controlId)&&this.Whd(z)}}init(){this.Xaa=new d;this.Kpa=new Ca.a;this.T$=new Ca.a;this.xBa=new Ca.a;this.jRa=k.AFrameworkApplication.J.tb("MaxCommandClickedEventQueueSize",20);l.a.ojd(this.Opd);r.a.instance.kjd((0,Ja.a)(this,this.T4d,"recordActionEvent"));this.AQa=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.UserMRUActionsCookieEnabled", source: chromecache_192.1.dr
Source: Binary string: Jc._instance=null;(0,m.a)(Jc,"ControlBehaviorFactory",null,[784]);class Hd{get name(){return"CUI.Behavior"}configure(Sa){z.AFrameworkApplication.J&&z.AFrameworkApplication.J.Z("AccessibleMovingDialogsEnabled")&&Sa.tu($o,[pn.a]);Sa.tu(bu,[Fd.a])}async initializeAsync(){lc.a.Pdb=Jc.instance;const Sa=Qi.a.instance.AKc;for(let jb=0;jb<Sa.length;++jb){const zb=(0,C.a)(373,Sa[jb]);zb&&zb.MO()}Kh.a.get_instance().zr(6)}dispose(){}static main(){u.a.instance.hq(new Hd,5)}}(0,m.a)(Hd,"CuiBehaviorPackage",null, source: chromecache_192.1.dr
Source: Binary string: this.Xaa.MOd(z.controlId)&&this.Whd(z)}}init(){this.Xaa=new d;this.Kpa=new Ca.a;this.T$=new Ca.a;this.xBa=new Ca.a;this.jRa=k.AFrameworkApplication.J.tb("MaxCommandClickedEventQueueSize",20);l.a.ojd(this.Opd);r.a.instance.kjd((0,Ja.a)(this,this.T4d,"recordActionEvent"));this.AQa=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.UserMRUActionsCookieEnabled",!1);this.pDb=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.ShouldPreferParentControls", source: chromecache_317.1.dr
Source: Binary string: this.ga.resolve("Box4.Actors.StyleActor").ib()}dispose(){}static main(){u.a.instance.Rd(new QC)}}(0,m.a)(QC,"Box4ActorsPackage",null,[0,1]);class hl{constructor(Sa,jb,zb,Kb,Vb,pc){this.rpe=this.Epa=null;this.ia=Sa;this.UHg=jb;this.l7c=zb;this.Vm=Kb;this.mc=Vb;this.Ci=pc}get recentColors(){return hl.OBb||(hl.OBb=ff.a.instance.va("Box4.UI.RecentColorsSectionHandler"))}get Aae(){this.Epa||(this.Epa=new oF("Shading"),this.iRb(this.Epa));return this.Epa}iRb(Sa){Sa.CEa(2,jj.a.pdb);Sa.CEa(3,jj.a.gga);Sa.CEa(4, source: chromecache_192.1.dr
Source: Binary string: null,[]);class h{constructor(x,z,u,B){this.CmdId=this.ParentTcid=this.Tcid=null;this.Time=0;this.Tcid=x;this.ParentTcid=z;this.CmdId=u;this.Time=B}}(0,Fa.a)(h,"MRUControl",null,[]);var k=J(51647),l=J(76327),r=J(50478),t=J(62733);class m{constructor(){this.Xaa=null;this.uzb=this.jRa=20;this.ora=this.yz=this.xBa=this.T$=this.Kpa=null;this.pDb=this.AQa=!1;this.Opd=(x,z)=>{this.Kpa.insert(0,new L(z.commandId,z.controlId,z.time,z.commandSurface,z.inputMethod,z.contentType,z.w9));this.U5a(this.Kpa);this.AQa&& source: chromecache_317.1.dr
Source: Binary string: I.activeSection&&(I=I.activeSection.Yb(M))&&(C=I.label);m.a.xu(K,C)}static z1a(){m.a.eo(F.AppFrame.Yea)}}(0,E.a)(D,"ASectionListView",m.a,[])},56805:function(E,L,d){d.d(L,{a:function(){return M}});E=d(100);var h=d(77072),k=d(57531),l=d(96012),r=d(60629),t=d(73225),m=d(93651),x=d(65097),z=d(305),u=d(71987),B=d(79587),F=d(19655),D=d(50952),C=d(87478);class I{constructor(K){this.MX=!1;this.FJe=this.PDb=0;this.eF=K}ev(){return this.eF.eod()}iA(K){if(!this.ev(K))return this.MX=!1;this.PDb=K.clientPoint.x; source: chromecache_197.1.dr
Source: Binary string: this.FJe=this.eF.container.clientWidth;return this.MX=!0}gt(K){this.MX&&this.eF.resize(this.FJe+C.a.V2f(K.clientPoint.x-this.PDb));return!0}gq(){this.cNb()}oB(){this.cNb()}cNb(){this.MX=!1;x.App.ha.cfa()}dispose(){}}(0,E.a)(I,"ListViewResizeAdapter",null,[431,44]);class M extends m.a{constructor(K){super(new F.a,m.a.Ywc,x.App.bX);this.Gba=this.aY=this.vaa=this.nU=this.FX=this.OBa=null;this.isa=4294967295;this.cCa=!1;this.JN=!0;this.zz=K}get resizeMinWidth(){return 0}get resizeMaxWidth(){return 350}get Wda(){return this.OBa}get QHa(){return this.vaa}get Sla(){return this.FX}get $Sb(){return!0}get isCollapsed(){return this.cCa}set isCollapsed(K){this.cCa= source: chromecache_197.1.dr
Source: Binary string: 1028);this.ia.la(jj.a.pdb,Sl.a.view,rA.BNb);this.ia.la(jj.a.pdb,Sl.a.tableCell,(0,ye.a)(this,this.pdb,"clearCellShadingColor"));this.ia.Wb(jj.a.pdb,1028);this.ia.la(jj.a.a3a,Sl.a.view,(0,ye.a)(this,this.VSi,"queryCellShadingColorView"));this.ia.la(jj.a.a3a,Sl.a.tableCell,(0,ye.a)(this,this.a3a,"queryCellShadingColor"));this.ia.Wb(jj.a.a3a,1124);this.ia.la(jj.a.f0b,Sl.a.view,rA.BNb);this.ia.la(jj.a.f0b,Sl.a.tableCell,(0,ye.a)(this,this.S0g,"cellShadingCustomColor"));this.ia.Wb(jj.a.f0b,1028);this.ia.la(jj.a.hSf, source: chromecache_192.1.dr
Source: Binary string: 4034531111;h.Cta=319972657;h.VVa=1892407702;h.QHb=329522368;h.Hca=3386890908;h.WHb=70356481;h.bIb=1303135280;h.centerJustify=4284004393;h.eFa=3332601592;h.W0g=3523575366;h.fdb=1880533947;h.gdb=768894625;h.Y0g=3230325101;h.dIb=2981608035;h.Olc=3502060538;h.hdb=4291024442;h.Iod=1943062421;h.g1g=3246658478;h.EVe=3281315808;h.DVe=3968581736;h.cC=2858610352;h.pdb=3275596206;h.rdb=562361573;h.U1=3491966299;h.clearFormatting=2319895756;h.gpd=2449130731;h.iWa=1011300372;h.wXe=3589727007;h.uIb=3901727243; source: chromecache_197.1.dr
Source: Binary string: Ua.AFrameworkApplication.fa.Ea.qE}ZIb(){if(!this.behavior){var u=L.a.Pdb;u&&(this.behavior=u.ucf(this))}}get Mb(){return this.$a}get vb(){r.c(this.JTa)&&(this.JTa={});return this.JTa}get nFa(){r.c(this.gOa)&&(this.gOa={});return this.gOa}get iSb(){return m.a.Pf(this.Mb.IsDefinitive)}get Apb(){return m.a.Vy(this.Mb.ShouldSetTitle)}get fPc(){return this.Mb.TemplateAlias}get Iz(){return this.dK?E.a.bSe:E.a.BH}aYa(u){if(-1===this.daa.indexOf(","+u+","))throw Error.create("The display mode with name: "+ source: chromecache_317.1.dr
Source: Binary string: !0);this.AQa&&(this.yz=new Ca.a,this.ora="UserRecentActions_"+this.bgb(),this.AQd())}bgb(){switch(k.AFrameworkApplication.fa.Ea.Ng){case 3:return"Word";case 1:return"Excel";case 2:return"PowerPoint";case 5:return"Visio";case 4:return"OneNote";default:return"Unknown"}}AQd(){var x=t.a.get(this.ora);if(!this.Xaa.isNullOrUndefined(x)&&0<x.length){let z=null;try{z=JSON.parse(decodeURIComponent(x))}catch(u){t.a.remove(this.ora);return}x=0;for(const u of z)this.yz.insert(x++,u)}}Whd(x){const z=this.pDb&& source: chromecache_317.1.dr
Source: Binary string: return}x=0;for(const u of z)this.yz.insert(x++,u)}}Whd(x){const z=this.pDb&&!this.Xaa.isNullOrUndefined(x.w9)&&0<x.w9.length;if(0<this.yz.count){for(var u=0;u<this.yz.count&&3>u;u++){var B=this.yz.K(u);if(z&&B.ParentTcid===x.w9||B.Tcid===x.controlId)return}for(u=3;u<this.yz.count;u++)if(B=this.yz.K(u),z&&B.ParentTcid===x.w9||B.Tcid===x.controlId){this.yz.remove(B);break}}this.yz.insert(0,new h(x.controlId,x.w9,x.commandId,x.time));this.yz.count>this.uzb&&this.yz.removeAt(this.uzb);x=JSON.stringify(this.yz.toArray()); source: chromecache_192.1.dr
Source: Binary string: !1);this.pDb=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.ShouldPreferParentControls",!0);this.AQa&&(this.yz=new Ca.a,this.ora="UserRecentActions_"+this.bgb(),this.AQd())}bgb(){switch(k.AFrameworkApplication.fa.Ea.Ng){case 3:return"Word";case 1:return"Excel";case 2:return"PowerPoint";case 5:return"Visio";case 4:return"OneNote";default:return"Unknown"}}AQd(){var x=t.a.get(this.ora);if(!this.Xaa.isNullOrUndefined(x)&&0<x.length){let z=null;try{z=JSON.parse(decodeURIComponent(x))}catch(u){t.a.remove(this.ora); source: chromecache_192.1.dr
Source: chrome.exeMemory has grown: Private usage: 1MB later: 65MB
Source: unknownTCP traffic detected without corresponding DNS query: 2.18.98.62
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.215.203
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.215.203
Source: unknownTCP traffic detected without corresponding DNS query: 2.18.98.62
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.208
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.15
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.80.99
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET /:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU HTTP/1.1Host: onedrive.live.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /personal/a19e0d27a159b01d/_layouts/15/Doc.aspx?sourcedoc=%7Be850d13a-ad6f-4f54-8dfe-dfae61d3c47a%7D&action=default&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU&slrid=114b8ea1-0060-c000-6241-c77a4dce2e19&originalPath=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_cnRpbWU9WmRsRlIyVnMzVWc&CID=2229562f-da64-467c-81ae-ab18381bbb3c&_SRM=0:G:56 HTTP/1.1Host: onedrive.live.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Cookie: FedAuth=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
Source: global trafficHTTP traffic detected: GET /campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2 HTTP/1.1Host: messaging.engagement.office.comConnection: keep-alivex-clientsessionid: 489263a8-bb67-4f98-39cb-f26ac34c7ce4sec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0x-correlationid: 01db9715-1484-4567-ccfe-89744fd5c878Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /files/fabric/assets/icons/fabricmdl2icons.woff HTTP/1.1Host: spoprod-a.akamaihd.netConnection: keep-aliveOrigin: https://onenote.officeapps.live.comsec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /mydata/myprofile/expressionprofile/profilephoto:UserTileStatic,UserTileSmall/MeControlMediumUserTile?ck=1&ex=24&fofoff=1&sc=1742993650256 HTTP/1.1Host: storage.live.comConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /me?partner=OneNoteOnline&version=latest&market=EN-US&wrapperId=suiteshell HTTP/1.1Host: amcdn.msftauth.netConnection: keep-aliveOrigin: https://onenote.officeapps.live.comsec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /officeaddins/learningtools/?et= HTTP/1.1Host: www.onenote.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: augloop.office.comConnection: UpgradePragma: no-cacheCache-Control: no-cacheUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Upgrade: websocketOrigin: https://onenote.officeapps.live.comSec-WebSocket-Version: 13Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Sec-WebSocket-Key: yzAYbN7tIcSTpj5yT7Pupg==Sec-WebSocket-Extensions: permessage-deflate; client_max_window_bits
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000110.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2409.12011/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000138.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000128.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2404.23003/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000096.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2503.17004/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000012.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000111.resources.office.netConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Origin: https://onenote.officeapps.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://onenote.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /ajax/jQuery/jquery-3.5.0.min.js HTTP/1.1Host: ajax.aspnetcdn.comConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptSec-Fetch-Storage-Access: activeReferer: https://www.onenote.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=0b8c0379-a401-4592-817b-addd9f08b69e&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=HDVK6zZJo6cY73oZVAXiALeMrfrIVZziBo3Y1XfJPCU&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-781b-7094-9966-016889dc4b4b&state=eyJpZCI6IjAxOTVkMjg0LTc4MWItN2MxNi1iNGYzLWM5N2E0ZDQ2YTFiZSIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D HTTP/1.1Host: login.microsoftonline.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://oauth.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2 HTTP/1.1Host: messaging.engagement.office.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000128.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2503.17004/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000012.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2404.23003/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000096.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2409.12011/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000138.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000110.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1Host: fa000000111.resources.office.netConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=4e4fd511-ce24-44ac-8e48-28c5f2dc9b90&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=HBqh2uO71gpacuuDSzg7TpXt3GBdzPOikDTDhgUTwqk&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-99b8-7fd9-b8da-d733f54c2a8d&state=eyJpZCI6IjAxOTVkMjg0LTk5YjgtNzEwZC05MGY3LWE3NDU4ZmU3ZjQ1YiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D HTTP/1.1Host: login.microsoftonline.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://oauth.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
Source: global trafficHTTP traffic detected: GET /suite/RemoteTelemetry.ashx?usid=6e978169-98b0-08db-1683-11f39403677b HTTP/1.1Host: common.online.office.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=ff7e1408-d504-4158-8cd8-f4edf2e3f729&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=EfNgJeWUgGyvxl-mDCqJ-yR58ekTsaEADmfZhGAazI4&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-ede7-77fb-b56b-8d76b626de53&state=eyJpZCI6IjAxOTVkMjg0LWVkZTYtNzVhNi05ZjRhLTdlYmFjM2U1ZjY3ZiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D HTTP/1.1Host: login.microsoftonline.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://oauth.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
Source: global trafficHTTP traffic detected: GET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=66f5292e-92f4-4a6e-a158-3d441f77515a&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=RuEWUuglZ9hU-2PCcEiSXcoZRLiqyXu1H6jw_a_DmPY&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-fa46-79ad-9b7e-1a34db938360&state=eyJpZCI6IjAxOTVkMjg0LWZhNDYtNzhjMC04MTY4LTUwZmIwYzk0YTIzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D HTTP/1.1Host: login.microsoftonline.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://oauth.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
Source: global trafficHTTP traffic detected: GET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=748b13bf-01af-4b40-869f-ca76e4538997&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=0rq8G6LyusZy84tamqJKJhXix1wH0byR4VAhvgqeXts&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d285-3599-730b-9ed3-8aca50e73466&state=eyJpZCI6IjAxOTVkMjg1LTM1OTgtN2IxYi04MGYzLWNkYmJiOWFiZWYzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22%3A%7B%22values%22%3A%5B%22CP1%22%5D%7D%7D%7D HTTP/1.1Host: login.microsoftonline.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeSec-Fetch-Storage-Access: activeReferer: https://oauth.officeapps.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
Source: global trafficHTTP traffic detected: GET /officeaddins/RemoteUls.ashx HTTP/1.1Host: www.onenote.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /r/gsr1.crl HTTP/1.1Cache-Control: max-age = 3000Connection: Keep-AliveAccept: */*If-Modified-Since: Tue, 07 Jan 2025 07:28:00 GMTUser-Agent: Microsoft-CryptoAPI/10.0Host: c.pki.goog
Source: global trafficHTTP traffic detected: GET /r/r4.crl HTTP/1.1Cache-Control: max-age = 3000Connection: Keep-AliveAccept: */*If-Modified-Since: Thu, 25 Jul 2024 14:48:00 GMTUser-Agent: Microsoft-CryptoAPI/10.0Host: c.pki.goog
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: onedrive.live.com
Source: global trafficDNS traffic detected: DNS query: common.online.office.com
Source: global trafficDNS traffic detected: DNS query: messaging.engagement.office.com
Source: global trafficDNS traffic detected: DNS query: spoprod-a.akamaihd.net
Source: global trafficDNS traffic detected: DNS query: storage.live.com
Source: global trafficDNS traffic detected: DNS query: www.onenote.com
Source: global trafficDNS traffic detected: DNS query: amcdn.msftauth.net
Source: global trafficDNS traffic detected: DNS query: augloop.office.com
Source: global trafficDNS traffic detected: DNS query: fa000000012.resources.office.net
Source: global trafficDNS traffic detected: DNS query: fa000000096.resources.office.net
Source: global trafficDNS traffic detected: DNS query: fa000000110.resources.office.net
Source: global trafficDNS traffic detected: DNS query: fa000000111.resources.office.net
Source: global trafficDNS traffic detected: DNS query: fa000000128.resources.office.net
Source: global trafficDNS traffic detected: DNS query: fa000000138.resources.office.net
Source: global trafficDNS traffic detected: DNS query: ajax.aspnetcdn.com
Source: global trafficDNS traffic detected: DNS query: login.microsoftonline.com
Source: global trafficDNS traffic detected: DNS query: js.monitor.azure.com
Source: global trafficDNS traffic detected: DNS query: edp-germany.schinndlerr.com
Source: global trafficDNS traffic detected: DNS query: onenoteonline.nel.measure.office.net
Source: global trafficDNS traffic detected: DNS query: m365cdn.nel.measure.office.net
Source: unknownHTTP traffic detected: POST /suite/RemoteUls.ashx?usid=6e978169-98b0-08db-1683-11f39403677b&officeserverversion= HTTP/1.1Host: common.online.office.comConnection: keep-aliveContent-Length: 703sec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"Content-Type: text/plain;charset=UTF-8sec-ch-ua-mobile: ?0Accept: */*Origin: https://onedrive.live.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptySec-Fetch-Storage-Access: activeReferer: https://onedrive.live.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: chromecache_207.1.dr, chromecache_330.1.drString found in binary or memory: http://fb.me/use-check-prop-types
Source: chromecache_303.1.drString found in binary or memory: http://hammerjs.github.io/
Source: chromecache_288.1.dr, chromecache_285.1.dr, chromecache_222.1.drString found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: chromecache_197.1.drString found in binary or memory: http://www.mozilla.org/newlayout/xml/parsererror.xml
Source: chromecache_330.1.drString found in binary or memory: http://www.opensource.org/licenses/mit-license.php
Source: chromecache_197.1.drString found in binary or memory: https://1drv.ms
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://Office.net
Source: chromecache_234.1.drString found in binary or memory: https://ajax.aspnetcdn.com/ajax/jQuery/jquery-3.5.0.min.js
Source: chromecache_317.1.drString found in binary or memory: https://aka.ms/MathAssistantSupport?client_id=onenote_wac&platform_id=web&correlation_id=
Source: chromecache_317.1.drString found in binary or memory: https://api.addins.omex.office.net/
Source: chromecache_192.1.drString found in binary or memory: https://apps.apple.com/in/app/microsoft-onenote/id410395246
Source: chromecache_197.1.drString found in binary or memory: https://attributes.engagement.office-int.com
Source: chromecache_197.1.drString found in binary or memory: https://attributes.engagement.office.com
Source: chromecache_197.1.drString found in binary or memory: https://attributes.engagement.officeppe.com
Source: chromecache_180.1.drString found in binary or memory: https://augloop.office.com/v2;394866fc-eedb-4f01-8536-3ff84b16be2a;liveprofilecard.access;https://sh
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://c3web.trafficmanager.net
Source: chromecache_197.1.drString found in binary or memory: https://cdn.dev.fluidpreview.office.net
Source: chromecache_197.1.drString found in binary or memory: https://cdn.dev.fluidpreview.office.net/fluid/dev
Source: chromecache_197.1.drString found in binary or memory: https://cdn.dev.fluidpreview.office.net/fluid/stg
Source: chromecache_197.1.drString found in binary or memory: https://cdn.fluidpreview.office.net
Source: chromecache_197.1.drString found in binary or memory: https://cdn.fluidpreview.office.net/fluid/df
Source: chromecache_197.1.drString found in binary or memory: https://cdn.fluidpreview.office.net/fluid/gcc
Source: chromecache_197.1.drString found in binary or memory: https://cdn.fluidpreview.office.net/fluid/prod
Source: chromecache_192.1.drString found in binary or memory: https://cdn.hubblecontent.msit.osi.office.net
Source: chromecache_192.1.drString found in binary or memory: https://cdn.hubblecontent.osi.office.net
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/BrowserUls.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/CommonDiagnostics.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/ExternalResources/js-cookie.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/Instrumentation.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/LearningTools/LearningTools.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/aria-web-telemetry-2.9.0.min.js
Source: chromecache_234.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/161872540452_Scripts/pickadate.min.js
Source: chromecache_292.1.dr, chromecache_321.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/images/meetings/insert_outlook_meeting_details16x16.png
Source: chromecache_292.1.dr, chromecache_321.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/images/meetings/insert_outlook_meeting_details32x32.png
Source: chromecache_292.1.dr, chromecache_321.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/images/meetings/insert_outlook_meeting_details48x48.png
Source: chromecache_292.1.dr, chromecache_321.1.drString found in binary or memory: https://cdn.onenote.net/officeaddins/images/meetings/insert_outlook_meeting_details80x80.png
Source: chromecache_317.1.drString found in binary or memory: https://consent.config.office.com/consentcheckin/v1.0/consents
Source: chromecache_197.1.drString found in binary or memory: https://content.lifecycle.officeppe.net/
Source: chromecache_197.1.drString found in binary or memory: https://contentstorage.osi.office.net/images/2f4febe2cca96f7f.gif
Source: chromecache_197.1.drString found in binary or memory: https://contentstorage.osi.office.net/images/eb14b3fe6a1e1671.png
Source: chromecache_197.1.drString found in binary or memory: https://ecs.office.com
Source: chromecache_192.1.drString found in binary or memory: https://edog.onenote.com
Source: chromecache_197.1.drString found in binary or memory: https://eurppc-word-edit.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://fa000000096.resources.office.net
Source: chromecache_197.1.drString found in binary or memory: https://fa000000096.resources.office.net/f7024bdc-7caf-4ca8-807d-2908f09640d6/1.0.2210.23001/en-us_w
Source: chromecache_197.1.drString found in binary or memory: https://fa000000096.resources.office.net/f7024bdc-7caf-4ca8-807d-2908f09640d6/1.0.2401.26003/en-us_w
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://fa000000128.resources.office.net
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://fa000000128.resources.office.net:3000/index_onenotejs.html
Source: chromecache_197.1.dr, chromecache_218.1.drString found in binary or memory: https://feross.org
Source: chromecache_197.1.dr, chromecache_218.1.drString found in binary or memory: https://feross.org/opensource
Source: chromecache_197.1.drString found in binary or memory: https://ffc-word-edit.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://ffc-word-view.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://fil1-word-edit.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://fin1-word-edit.officeapps.live.com
Source: chromecache_317.1.drString found in binary or memory: https://forms.office.com
Source: chromecache_317.1.drString found in binary or memory: https://forms.office.com/Pages/OneNoteMathAddinFunctionPage.aspx
Source: chromecache_254.1.dr, chromecache_317.1.dr, chromecache_261.1.drString found in binary or memory: https://forms.officeppe.com
Source: chromecache_197.1.drString found in binary or memory: https://fus1-word-edit.officeapps.live.com
Source: chromecache_257.1.dr, chromecache_213.1.drString found in binary or memory: https://github.com/OfficeDev/office-js/blob/release/LICENSE.md
Source: chromecache_267.1.drString found in binary or memory: https://github.com/js-cookie/js-cookie
Source: chromecache_197.1.drString found in binary or memory: https://github.com/uuidjs/uuid#getrandomvalues-not-supported
Source: chromecache_330.1.drString found in binary or memory: https://github.com/webpack-contrib/style-loader#insertat)
Source: chromecache_192.1.drString found in binary or memory: https://hedwigtestserver.blob.core.windows.net/builds/
Source: chromecache_192.1.drString found in binary or memory: https://hubblecontent.azureedge.eaglex.ic.gov
Source: chromecache_192.1.drString found in binary or memory: https://hubblecontent.azureedge.microsoft.scloud
Source: chromecache_317.1.drString found in binary or memory: https://inclient.store.office.com/gyro/clientstore/flyoutdetails/
Source: chromecache_218.1.drString found in binary or memory: https://localcdn.centro-dev.com:5555/floodgate.bundle.js.map
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.live-int.com
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.live.com
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.microsoftonline-int.com
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.microsoftonline.com
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.windows-ppe.net
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://login.windows.net
Source: chromecache_197.1.dr, chromecache_219.1.drString found in binary or memory: https://my.microsoftpersonalcontent.com
Source: chromecache_317.1.drString found in binary or memory: https://office.visualstudio.com/DefaultCollection/OC/_wiki/wikis/OC.wiki/22688/Using-Dictation-on-yo
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://officeapps.live.com
Source: chromecache_317.1.drString found in binary or memory: https://onedrive.live.com
Source: chromecache_180.1.drString found in binary or memory: https://onenote.officeapps.live.com
Source: chromecache_192.1.drString found in binary or memory: https://osizewuspersimmon001.blob.core.windows.net
Source: chromecache_192.1.drString found in binary or memory: https://osiziwuspersimmon002.blob.core.windows.net
Source: chromecache_192.1.drString found in binary or memory: https://osizpscuspersimmon000.blob.core.windows.net
Source: chromecache_197.1.drString found in binary or memory: https://outlook-1-cdn.azureedge.eaglex.ic.gov
Source: chromecache_197.1.drString found in binary or memory: https://outlook-1-cdn.azureedge.microsoft.scloud
Source: chromecache_301.1.drString found in binary or memory: https://pf.events.data.cloudapp.onecollector.akadns.net/OneCollector/1.0/
Source: chromecache_219.1.drString found in binary or memory: https://portal.office.com/
Source: chromecache_197.1.drString found in binary or memory: https://ppc-word-edit.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://ppc-word-view.officeapps.live.com
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://prod.support.office.com
Source: chromecache_257.1.dr, chromecache_206.1.dr, chromecache_213.1.drString found in binary or memory: https://raw.githubusercontent.com/jakearchibald/es6-promise/master/LICENSE
Source: chromecache_207.1.drString found in binary or memory: https://reactjs.org/link/react-polyfills
Source: chromecache_197.1.drString found in binary or memory: https://res-1.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://res-1.cdn.partner.office365.cn
Source: chromecache_197.1.drString found in binary or memory: https://res-2-dev.cdn.officeppe.net
Source: chromecache_197.1.drString found in binary or memory: https://res-2-sdf.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://res-2.cdn.office.net
Source: chromecache_192.1.drString found in binary or memory: https://res-dev.cdn.officeppe.net
Source: chromecache_192.1.drString found in binary or memory: https://res-dev.cdn.officeppe.net/mirrored/smartlookup/
Source: chromecache_197.1.drString found in binary or memory: https://res-dod.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://res-dod.cdn.office.net/fluid/dod
Source: chromecache_197.1.drString found in binary or memory: https://res-gcch.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://res-gcch.cdn.office.net/fluid/gcch
Source: chromecache_197.1.drString found in binary or memory: https://res-h1.cdn.office.net
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://res-h3.public.cdn.office.net
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://res-h3.sdf.cdn.office.net
Source: chromecache_197.1.dr, chromecache_192.1.drString found in binary or memory: https://res-sdf.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://res-v-sdf.cdn.office.net
Source: chromecache_197.1.dr, chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://res.cdn.office.net
Source: chromecache_191.1.drString found in binary or memory: https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/
Source: chromecache_191.1.drString found in binary or memory: https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/floodgate.en.bundle.js
Source: chromecache_338.1.dr, chromecache_226.1.drString found in binary or memory: https://res.sdf.cdn.office.net
Source: chromecache_197.1.drString found in binary or memory: https://roaming.edog.officeapps.live.com/rs/v1/settings
Source: chromecache_197.1.drString found in binary or memory: https://roaming.officeapps.live.com/rs/v1/settings
Source: chromecache_197.1.drString found in binary or memory: https://roaming.officeapps.partner.office365.cn/rs/v1/settings
Source: chromecache_197.1.drString found in binary or memory: https://roaming.osi.apps.mil/rs/v1/settings
Source: chromecache_197.1.drString found in binary or memory: https://roaming.osi.office.de/rs/v1/settings
Source: chromecache_197.1.drString found in binary or memory: https://roaming.osi.office365.us/rs/v1/settings
Source: chromecache_317.1.drString found in binary or memory: https://substrate.office.com/search/api/v1/suggestions
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com
Source: chromecache_197.1.drString found in binary or memory: https://support.office.com/article/7afcb4f3-4aa2-443a-9b08-125a5d692576
Source: chromecache_192.1.drString found in binary or memory: https://support.office.com/article/ec43ed03-eb3c-4a10-8d9d-e9e5433c9ed2
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/drawing
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/excel
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/onenote
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/outlook
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/powerpoint
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/project
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/SDX/word
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/home/isAgave=true&amp;helpid=126385
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/home?isAgave=true
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/f1/home?isAgave=true&amp;helpid=161255
Source: chromecache_315.1.drString found in binary or memory: https://support.office.com/icon32.png
Source: chromecache_265.1.dr, chromecache_315.1.drString found in binary or memory: https://support.office.com/icon80.png
Source: chromecache_301.1.drString found in binary or memory: https://tb.events.data.cloudapp.onecollector.akadns.net/OneCollector/1.0/
Source: chromecache_192.1.drString found in binary or memory: https://uci.cdn.office.net/mirrored/smartlookup/
Source: chromecache_192.1.drString found in binary or memory: https://uci.edog.cdn.office.net/mirrored/smartlookup/
Source: chromecache_217.1.dr, chromecache_177.1.drString found in binary or memory: https://usc-onenote.officeapps.live.com/o/RemoteUls.ashx
Source: chromecache_197.1.drString found in binary or memory: https://whiteboard.apps.mil
Source: chromecache_197.1.drString found in binary or memory: https://whiteboard.eaglex.ic.gov
Source: chromecache_197.1.drString found in binary or memory: https://whiteboard.microsoft.scloud
Source: chromecache_197.1.drString found in binary or memory: https://whiteboard.office.com/root/index.fluid.js
Source: chromecache_197.1.drString found in binary or memory: https://whiteboard.office365.us
Source: chromecache_180.1.drString found in binary or memory: https://wise-m-backup.public.onecdn.static.microsoft/wise/owl/sharedauthclientmsal.6b11c4094d365aa3e
Source: chromecache_180.1.drString found in binary or memory: https://wise.public.cdn.office.net/wise/owl/sharedauthclientmsal.6b11c4094d365aa3ee90.js
Source: chromecache_197.1.drString found in binary or memory: https://word-edit.officeapps.live.com
Source: chromecache_197.1.drString found in binary or memory: https://wordwebclientbuilds.blob.core.windows.net
Source: chromecache_301.1.drString found in binary or memory: https://www.office.com/launch
Source: chromecache_192.1.drString found in binary or memory: https://www.onenote.com
Source: chromecache_317.1.drString found in binary or memory: https://www.onenote.com/officeaddins/mathassistant
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=af-ZA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=am-ET&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ar-SA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=as-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=az-Latn-AZ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=be-BY&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=bg-BG&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=bn-BD&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=bn-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=bs-Latn-BA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ca-ES&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ca-ES-valencia&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=cs-CZ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=cy-GB&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=da-DK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=de-DE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=el-GR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=en-US&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=es-ES&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=et-EE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=eu-ES&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=fa-IR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=fi-FI&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=fil-PH&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=fr-FR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ga-IE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=gd-GB&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=gl-ES&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=gu-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ha-Latn-NG&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=he-IL&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=hi-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=hr-HR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=hu-HU&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=hy-AM&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=id-ID&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ig-NG&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=is-IS&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=it-IT&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ja-JP&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ka-GE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=kk-KZ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=km-KH&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=kn-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ko-KR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=kok-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ku-Arab-IQ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ky-KG&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=lb-LU&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=lt-LT&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=lv-LV&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=mi-NZ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=mk-MK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ml-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=mn-MN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=mr-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ms-MY&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=mt-MT&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=nb-NO&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ne-NP&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=nl-NL&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=nn-NO&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=nso-ZA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=or-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=pa-Arab-PK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=pa-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=pl-PL&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=prs-AF&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=pt-BR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=pt-PT&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=quz-PE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ro-RO&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ru-RU&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=rw-RW&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sd-Arab-PK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=si-LK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sk-SK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sl-SI&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sq-AL&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sr-Cyrl-BA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sr-Cyrl-RS&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sr-Latn-RS&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sv-SE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=sw-KE&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ta-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=te-IN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=tg-Cyrl-TJ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=th-TH&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ti-ET&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=tk-TM&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=tn-ZA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=tr-TR&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=tt-RU&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ug-CN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=uk-UA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=ur-PK&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=uz-Latn-UZ&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=vi-VN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=wo-SN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=xh-ZA&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=yo-NG&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=zh-CN&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=zh-TW&amp;temporaryLocalization=true
Source: chromecache_321.1.drString found in binary or memory: https://www.onenote.com/officeaddins/meetings?ui=zu-ZA&amp;temporaryLocalization=true
Source: unknownNetwork traffic detected: HTTP traffic on port 50013 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49983
Source: unknownNetwork traffic detected: HTTP traffic on port 49932 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49906 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49979
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49978
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 49866 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 49996 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49971
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49692
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49691
Source: unknownNetwork traffic detected: HTTP traffic on port 49692 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50018 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49690
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49978 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49963
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49933 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49963 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49992 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49904 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49832
Source: unknownNetwork traffic detected: HTTP traffic on port 49677 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49994 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49672
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50000
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49983 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49907 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49865 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50018
Source: unknownNetwork traffic detected: HTTP traffic on port 49691 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50013
Source: unknownNetwork traffic detected: HTTP traffic on port 49894 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49939 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49939
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49933
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49932
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49894
Source: unknownNetwork traffic detected: HTTP traffic on port 49862 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49971 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49671 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49988 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49911 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50000 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 49991 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49905 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49995 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49854 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49908 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49690 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49979 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49911
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49996
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49995
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49994
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49993
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49992
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49991
Source: unknownNetwork traffic detected: HTTP traffic on port 49832 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49908
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49907
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49906
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49905
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49904
Source: unknownNetwork traffic detected: HTTP traffic on port 49993 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49903
Source: unknownNetwork traffic detected: HTTP traffic on port 49903 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49988
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49866
Source: unknownHTTPS traffic detected: 142.251.40.228:443 -> 192.168.2.7:49690 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.137.11:443 -> 192.168.2.7:49691 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.137.11:443 -> 192.168.2.7:49692 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.229.20:443 -> 192.168.2.7:49806 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.219.36.101:443 -> 192.168.2.7:49816 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.135.4.170:443 -> 192.168.2.7:49832 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.72:443 -> 192.168.2.7:49844 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.230.4:443 -> 192.168.2.7:49846 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49852 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49851 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49855 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49854 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49862 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49853 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.117.182.51:443 -> 192.168.2.7:49863 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.28.13:443 -> 192.168.2.7:49866 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.35.21:443 -> 192.168.2.7:49865 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.111.229.20:443 -> 192.168.2.7:49894 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49903 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49906 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49907 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49904 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.45.193.219:443 -> 192.168.2.7:49905 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.51.57.212:443 -> 192.168.2.7:49908 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.57.90.112:443 -> 192.168.2.7:49992 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.44.136.154:443 -> 192.168.2.7:49993 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.44.201.134:443 -> 192.168.2.7:49991 version: TLS 1.2

System Summary

barindex
Source: sslproxydump.pcap, type: PCAPMatched rule: Detect payload of EvilNum Author: Sekoia.io
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Windows\SystemTemp\scoped_dir2892_703703847Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile deleted: C:\Windows\SystemTemp\scoped_dir2892_703703847Jump to behavior
Source: sslproxydump.pcap, type: PCAPMatched rule: evilnumpayload_fmtstr author = Sekoia.io, description = Detect payload of EvilNum, creation_date = 2022-07-25, classification = TLP:CLEAR, version = 1.1, id = 980c58e4-e04d-4076-a92e-2c04ced19ece
Source: chromecache_197.1.drBinary or memory string: new r.a(t.a.Ad());const C=".3gp .aa .aac .aax .act .aiff .amr .ape .au .awb .dct .dss .dvf .flac .gsm .iklax .ivs .m4a .m4b .m4p .mmf .mp3 .mpc .msv .ogg .oga .mogg .opus .ra .rm .raw .sln .tta .vox .wav .webm .wma .wv".split(" ");for(const I of C)D.pbc.add(I)}return D.pbc}static C9h(C){return D.JRh().contains(C)}static zdi(C){C=x.uCh(C);return""!==document.createElement("audio").canPlayType(C)}}D.pbc=null;(0,E.a)(D,"EmbeddedFileReaderUtils",null,[])},61068:function(E,L,d){d.d(L,{a:function(){return k}});
Source: classification engineClassification label: mal60.phis.win@34/289@70/20
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2192,i,8304551701378974237,13015741462274710447,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2204 /prefetch:3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2192,i,8304551701378974237,13015741462274710447,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2204 /prefetch:3Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: Binary string: x=d(96012),z=d(60629),u=d(62280),B=d(73225),F=d(50625),D=d(13059),C=d(65097),I=d(72974),M=d(93168),K=d(48703),R=d(67590),T=d(79587),v=d(50952),N=d(44914);class Q{constructor(){this.MX=!1;this.EJe=this.PDb=0}ev(){return!0}iA(O){this.PDb=O.clientPoint.x;this.EJe=C.App.ha.oa.lg.container.clientWidth;return this.MX=!0}gt(O){this.MX&&C.App.ha.oa.lg.resize(this.EJe+r.a.V2f(O.clientPoint.x-this.PDb));return!0}gq(){this.cNb()}oB(){this.cNb()}cNb(){this.MX=!1;C.App.ha.cfa()}dispose(){}}(0,E.a)(Q,"NavigationPaneResizeAdapter", source: chromecache_197.1.dr
Source: Binary string: this.vb[t.a.$4a]=B;u.rZb(this);this.ZIb()}MGa(){return r.b(this.Mb.CommandValueId)?this.Mb.MenuItemId:this.Mb.CommandValueId}YL(){return""}get id(){return this._id}get $ea(){return!1}get Hn(){return this.rXc}get A3(){return!!Ua.AFrameworkApplication.fa&&Ua.AFrameworkApplication.fa.Ea.qE}ZIb(){if(!this.behavior){var u=L.a.Pdb;u&&(this.behavior=u.ucf(this))}}get Mb(){return this.$a}get vb(){r.c(this.JTa)&&(this.JTa={});return this.JTa}get nFa(){r.c(this.gOa)&&(this.gOa={});return this.gOa}get iSb(){return m.a.Pf(this.Mb.IsDefinitive)}get Apb(){return m.a.Vy(this.Mb.ShouldSetTitle)}get fPc(){return this.Mb.TemplateAlias}get Iz(){return this.dK? source: chromecache_192.1.dr
Source: Binary string: null;this.pDb=this.AQa=!1;this.Opd=(x,z)=>{this.Kpa.insert(0,new L(z.commandId,z.controlId,z.time,z.commandSurface,z.inputMethod,z.contentType,z.w9));this.U5a(this.Kpa);this.AQa&&this.Xaa.MOd(z.controlId)&&this.Whd(z)}}init(){this.Xaa=new d;this.Kpa=new Ca.a;this.T$=new Ca.a;this.xBa=new Ca.a;this.jRa=k.AFrameworkApplication.J.tb("MaxCommandClickedEventQueueSize",20);l.a.ojd(this.Opd);r.a.instance.kjd((0,Ja.a)(this,this.T4d,"recordActionEvent"));this.AQa=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.UserMRUActionsCookieEnabled", source: chromecache_192.1.dr
Source: Binary string: Jc._instance=null;(0,m.a)(Jc,"ControlBehaviorFactory",null,[784]);class Hd{get name(){return"CUI.Behavior"}configure(Sa){z.AFrameworkApplication.J&&z.AFrameworkApplication.J.Z("AccessibleMovingDialogsEnabled")&&Sa.tu($o,[pn.a]);Sa.tu(bu,[Fd.a])}async initializeAsync(){lc.a.Pdb=Jc.instance;const Sa=Qi.a.instance.AKc;for(let jb=0;jb<Sa.length;++jb){const zb=(0,C.a)(373,Sa[jb]);zb&&zb.MO()}Kh.a.get_instance().zr(6)}dispose(){}static main(){u.a.instance.hq(new Hd,5)}}(0,m.a)(Hd,"CuiBehaviorPackage",null, source: chromecache_192.1.dr
Source: Binary string: this.Xaa.MOd(z.controlId)&&this.Whd(z)}}init(){this.Xaa=new d;this.Kpa=new Ca.a;this.T$=new Ca.a;this.xBa=new Ca.a;this.jRa=k.AFrameworkApplication.J.tb("MaxCommandClickedEventQueueSize",20);l.a.ojd(this.Opd);r.a.instance.kjd((0,Ja.a)(this,this.T4d,"recordActionEvent"));this.AQa=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.UserMRUActionsCookieEnabled",!1);this.pDb=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.ShouldPreferParentControls", source: chromecache_317.1.dr
Source: Binary string: this.ga.resolve("Box4.Actors.StyleActor").ib()}dispose(){}static main(){u.a.instance.Rd(new QC)}}(0,m.a)(QC,"Box4ActorsPackage",null,[0,1]);class hl{constructor(Sa,jb,zb,Kb,Vb,pc){this.rpe=this.Epa=null;this.ia=Sa;this.UHg=jb;this.l7c=zb;this.Vm=Kb;this.mc=Vb;this.Ci=pc}get recentColors(){return hl.OBb||(hl.OBb=ff.a.instance.va("Box4.UI.RecentColorsSectionHandler"))}get Aae(){this.Epa||(this.Epa=new oF("Shading"),this.iRb(this.Epa));return this.Epa}iRb(Sa){Sa.CEa(2,jj.a.pdb);Sa.CEa(3,jj.a.gga);Sa.CEa(4, source: chromecache_192.1.dr
Source: Binary string: null,[]);class h{constructor(x,z,u,B){this.CmdId=this.ParentTcid=this.Tcid=null;this.Time=0;this.Tcid=x;this.ParentTcid=z;this.CmdId=u;this.Time=B}}(0,Fa.a)(h,"MRUControl",null,[]);var k=J(51647),l=J(76327),r=J(50478),t=J(62733);class m{constructor(){this.Xaa=null;this.uzb=this.jRa=20;this.ora=this.yz=this.xBa=this.T$=this.Kpa=null;this.pDb=this.AQa=!1;this.Opd=(x,z)=>{this.Kpa.insert(0,new L(z.commandId,z.controlId,z.time,z.commandSurface,z.inputMethod,z.contentType,z.w9));this.U5a(this.Kpa);this.AQa&& source: chromecache_317.1.dr
Source: Binary string: I.activeSection&&(I=I.activeSection.Yb(M))&&(C=I.label);m.a.xu(K,C)}static z1a(){m.a.eo(F.AppFrame.Yea)}}(0,E.a)(D,"ASectionListView",m.a,[])},56805:function(E,L,d){d.d(L,{a:function(){return M}});E=d(100);var h=d(77072),k=d(57531),l=d(96012),r=d(60629),t=d(73225),m=d(93651),x=d(65097),z=d(305),u=d(71987),B=d(79587),F=d(19655),D=d(50952),C=d(87478);class I{constructor(K){this.MX=!1;this.FJe=this.PDb=0;this.eF=K}ev(){return this.eF.eod()}iA(K){if(!this.ev(K))return this.MX=!1;this.PDb=K.clientPoint.x; source: chromecache_197.1.dr
Source: Binary string: this.FJe=this.eF.container.clientWidth;return this.MX=!0}gt(K){this.MX&&this.eF.resize(this.FJe+C.a.V2f(K.clientPoint.x-this.PDb));return!0}gq(){this.cNb()}oB(){this.cNb()}cNb(){this.MX=!1;x.App.ha.cfa()}dispose(){}}(0,E.a)(I,"ListViewResizeAdapter",null,[431,44]);class M extends m.a{constructor(K){super(new F.a,m.a.Ywc,x.App.bX);this.Gba=this.aY=this.vaa=this.nU=this.FX=this.OBa=null;this.isa=4294967295;this.cCa=!1;this.JN=!0;this.zz=K}get resizeMinWidth(){return 0}get resizeMaxWidth(){return 350}get Wda(){return this.OBa}get QHa(){return this.vaa}get Sla(){return this.FX}get $Sb(){return!0}get isCollapsed(){return this.cCa}set isCollapsed(K){this.cCa= source: chromecache_197.1.dr
Source: Binary string: 1028);this.ia.la(jj.a.pdb,Sl.a.view,rA.BNb);this.ia.la(jj.a.pdb,Sl.a.tableCell,(0,ye.a)(this,this.pdb,"clearCellShadingColor"));this.ia.Wb(jj.a.pdb,1028);this.ia.la(jj.a.a3a,Sl.a.view,(0,ye.a)(this,this.VSi,"queryCellShadingColorView"));this.ia.la(jj.a.a3a,Sl.a.tableCell,(0,ye.a)(this,this.a3a,"queryCellShadingColor"));this.ia.Wb(jj.a.a3a,1124);this.ia.la(jj.a.f0b,Sl.a.view,rA.BNb);this.ia.la(jj.a.f0b,Sl.a.tableCell,(0,ye.a)(this,this.S0g,"cellShadingCustomColor"));this.ia.Wb(jj.a.f0b,1028);this.ia.la(jj.a.hSf, source: chromecache_192.1.dr
Source: Binary string: 4034531111;h.Cta=319972657;h.VVa=1892407702;h.QHb=329522368;h.Hca=3386890908;h.WHb=70356481;h.bIb=1303135280;h.centerJustify=4284004393;h.eFa=3332601592;h.W0g=3523575366;h.fdb=1880533947;h.gdb=768894625;h.Y0g=3230325101;h.dIb=2981608035;h.Olc=3502060538;h.hdb=4291024442;h.Iod=1943062421;h.g1g=3246658478;h.EVe=3281315808;h.DVe=3968581736;h.cC=2858610352;h.pdb=3275596206;h.rdb=562361573;h.U1=3491966299;h.clearFormatting=2319895756;h.gpd=2449130731;h.iWa=1011300372;h.wXe=3589727007;h.uIb=3901727243; source: chromecache_197.1.dr
Source: Binary string: Ua.AFrameworkApplication.fa.Ea.qE}ZIb(){if(!this.behavior){var u=L.a.Pdb;u&&(this.behavior=u.ucf(this))}}get Mb(){return this.$a}get vb(){r.c(this.JTa)&&(this.JTa={});return this.JTa}get nFa(){r.c(this.gOa)&&(this.gOa={});return this.gOa}get iSb(){return m.a.Pf(this.Mb.IsDefinitive)}get Apb(){return m.a.Vy(this.Mb.ShouldSetTitle)}get fPc(){return this.Mb.TemplateAlias}get Iz(){return this.dK?E.a.bSe:E.a.BH}aYa(u){if(-1===this.daa.indexOf(","+u+","))throw Error.create("The display mode with name: "+ source: chromecache_317.1.dr
Source: Binary string: !0);this.AQa&&(this.yz=new Ca.a,this.ora="UserRecentActions_"+this.bgb(),this.AQd())}bgb(){switch(k.AFrameworkApplication.fa.Ea.Ng){case 3:return"Word";case 1:return"Excel";case 2:return"PowerPoint";case 5:return"Visio";case 4:return"OneNote";default:return"Unknown"}}AQd(){var x=t.a.get(this.ora);if(!this.Xaa.isNullOrUndefined(x)&&0<x.length){let z=null;try{z=JSON.parse(decodeURIComponent(x))}catch(u){t.a.remove(this.ora);return}x=0;for(const u of z)this.yz.insert(x++,u)}}Whd(x){const z=this.pDb&& source: chromecache_317.1.dr
Source: Binary string: return}x=0;for(const u of z)this.yz.insert(x++,u)}}Whd(x){const z=this.pDb&&!this.Xaa.isNullOrUndefined(x.w9)&&0<x.w9.length;if(0<this.yz.count){for(var u=0;u<this.yz.count&&3>u;u++){var B=this.yz.K(u);if(z&&B.ParentTcid===x.w9||B.Tcid===x.controlId)return}for(u=3;u<this.yz.count;u++)if(B=this.yz.K(u),z&&B.ParentTcid===x.w9||B.Tcid===x.controlId){this.yz.remove(B);break}}this.yz.insert(0,new h(x.controlId,x.w9,x.commandId,x.time));this.yz.count>this.uzb&&this.yz.removeAt(this.uzb);x=JSON.stringify(this.yz.toArray()); source: chromecache_192.1.dr
Source: Binary string: !1);this.pDb=k.AFrameworkApplication.J.getBooleanFeatureGate("Microsoft.Office.SharedOnline.ShouldPreferParentControls",!0);this.AQa&&(this.yz=new Ca.a,this.ora="UserRecentActions_"+this.bgb(),this.AQd())}bgb(){switch(k.AFrameworkApplication.fa.Ea.Ng){case 3:return"Word";case 1:return"Excel";case 2:return"PowerPoint";case 5:return"Visio";case 4:return"OneNote";default:return"Unknown"}}AQd(){var x=t.a.get(this.ora);if(!this.Xaa.isNullOrUndefined(x)&&0<x.length){let z=null;try{z=JSON.parse(decodeURIComponent(x))}catch(u){t.a.remove(this.ora); source: chromecache_192.1.dr
Source: chromecache_187.1.dr, chromecache_218.1.dr, chromecache_219.1.drBinary or memory string: ",ConnectVirtualMachine:"
Source: chromecache_187.1.dr, chromecache_218.1.dr, chromecache_219.1.drBinary or memory string: ",DisconnectVirtualMachine:"
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Masquerading
OS Credential Dumping1
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Extra Window Memory Injection
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin Hook1
Extra Window Memory Injection
NTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 signatures2 2 Behavior Graph ID: 1649073 URL: https://onedrive.live.com/:... Startdate: 26/03/2025 Architecture: WINDOWS Score: 60 26 Malicious sample detected (through community Yara rule) 2->26 28 Antivirus detection for URL or domain 2->28 30 Phishing site or detected (based on various text indicators) 2->30 6 chrome.exe 2 2->6         started        9 chrome.exe 2->9         started        process3 dnsIp4 14 192.168.2.16 unknown unknown 6->14 16 192.168.2.5 unknown unknown 6->16 18 192.168.2.7, 443, 49453, 49535 unknown unknown 6->18 11 chrome.exe 6->11         started        process5 dnsIp6 20 e11271.dscg.akamaiedge.net 23.51.57.212, 443, 49851, 49852 TMNET-AS-APTMNetInternetServiceProviderMY United States 11->20 22 edp-germany.schinndlerr.com 185.225.69.75, 443, 49932, 49933 NET23-ASHU Hungary 11->22 24 77 other IPs or domains 11->24

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
https://login.microsoftonline-int.com100%Avira URL Cloudphishing
https://edog.onenote.com0%Avira URL Cloudsafe
https://forms.officeppe.com0%Avira URL Cloudsafe
https://whiteboard.microsoft.scloud0%Avira URL Cloudsafe
https://roaming.osi.office.de/rs/v1/settings0%Avira URL Cloudsafe
https://whiteboard.eaglex.ic.gov0%Avira URL Cloudsafe

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
s-part-0012.t-0009.t-msedge.net
13.107.246.40
truefalse
    high
    b-0004.b-dc-msedge.net
    13.107.9.156
    truefalse
      high
      s-part-0044.t-0009.t-msedge.net
      13.107.246.72
      truefalse
        high
        i-blz04p-cor006.api.p001.1drv.com
        20.135.4.170
        truefalse
          high
          wac-0003.wac-dc-msedge.net
          52.108.10.12
          truefalse
            high
            augloop-prod-pa01.eastus2.cloudapp.azure.com
            52.111.230.4
            truefalse
              high
              a1894.dscb.akamai.net
              23.44.201.134
              truefalse
                high
                www.tm.a.prd.aadg.trafficmanager.net
                40.126.35.21
                truefalse
                  high
                  a46.dscr.akamai.net
                  104.117.182.51
                  truefalse
                    high
                    edp-germany.schinndlerr.com
                    185.225.69.75
                    truefalse
                      unknown
                      s-part-0010.t-0009.t-msedge.net
                      13.107.246.38
                      truefalse
                        high
                        dual-spov-0006.spov-msedge.net
                        13.107.137.11
                        truefalse
                          high
                          wac-0003.wac-msedge.net
                          52.108.8.12
                          truefalse
                            high
                            prod-campaignaggregator.omexexternallfb.office.net.akadns.net
                            52.111.229.20
                            truefalse
                              high
                              a726.dscd.akamai.net
                              23.44.136.179
                              truefalse
                                high
                                www.google.com
                                142.251.40.228
                                truefalse
                                  high
                                  a1531.g2.akamai.net
                                  23.219.36.101
                                  truefalse
                                    high
                                    s-0005.dual-s-msedge.net
                                    52.123.129.14
                                    truefalse
                                      high
                                      e11271.dscg.akamaiedge.net
                                      23.51.57.212
                                      truefalse
                                        high
                                        fa000000012.resources.office.net
                                        unknown
                                        unknownfalse
                                          high
                                          js.monitor.azure.com
                                          unknown
                                          unknownfalse
                                            high
                                            fa000000111.resources.office.net
                                            unknown
                                            unknownfalse
                                              high
                                              fa000000128.resources.office.net
                                              unknown
                                              unknownfalse
                                                high
                                                augloop.office.com
                                                unknown
                                                unknownfalse
                                                  high
                                                  storage.live.com
                                                  unknown
                                                  unknownfalse
                                                    high
                                                    ajax.aspnetcdn.com
                                                    unknown
                                                    unknownfalse
                                                      high
                                                      m365cdn.nel.measure.office.net
                                                      unknown
                                                      unknownfalse
                                                        high
                                                        fa000000110.resources.office.net
                                                        unknown
                                                        unknownfalse
                                                          high
                                                          onenoteonline.nel.measure.office.net
                                                          unknown
                                                          unknownfalse
                                                            high
                                                            common.online.office.com
                                                            unknown
                                                            unknownfalse
                                                              high
                                                              fa000000138.resources.office.net
                                                              unknown
                                                              unknownfalse
                                                                high
                                                                onedrive.live.com
                                                                unknown
                                                                unknownfalse
                                                                  high
                                                                  amcdn.msftauth.net
                                                                  unknown
                                                                  unknownfalse
                                                                    high
                                                                    login.microsoftonline.com
                                                                    unknown
                                                                    unknownfalse
                                                                      high
                                                                      spoprod-a.akamaihd.net
                                                                      unknown
                                                                      unknownfalse
                                                                        high
                                                                        www.onenote.com
                                                                        unknown
                                                                        unknownfalse
                                                                          high
                                                                          messaging.engagement.office.com
                                                                          unknown
                                                                          unknownfalse
                                                                            high
                                                                            fa000000096.resources.office.net
                                                                            unknown
                                                                            unknownfalse
                                                                              high
                                                                              NameMaliciousAntivirus DetectionReputation
                                                                              https://fa000000128.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xmlfalse
                                                                                high
                                                                                http://c.pki.goog/r/gsr1.crlfalse
                                                                                  high
                                                                                  https://fa000000110.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xmlfalse
                                                                                    high
                                                                                    https://spoprod-a.akamaihd.net/files/fabric/assets/icons/fabricmdl2icons.wofffalse
                                                                                      high
                                                                                      https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWUfalse
                                                                                        high
                                                                                        https://common.online.office.com/suite/RemoteTelemetry.ashx?usid=6e978169-98b0-08db-1683-11f39403677bfalse
                                                                                          high
                                                                                          https://common.online.office.com/suite/RemoteUls.ashx?usid=6e978169-98b0-08db-1683-11f39403677b&officeserverversion=false
                                                                                            high
                                                                                            https://www.onenote.com/officeaddins/learningtools/?et=false
                                                                                              high
                                                                                              https://augloop.office.com/false
                                                                                                high
                                                                                                https://fa000000111.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xmlfalse
                                                                                                  high
                                                                                                  NameSourceMaliciousAntivirus DetectionReputation
                                                                                                  https://roaming.officeapps.partner.office365.cn/rs/v1/settingschromecache_197.1.drfalse
                                                                                                    high
                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=fil-PH&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                      high
                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=az-Latn-AZ&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                        high
                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=hy-AM&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                          high
                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=is-IS&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                            high
                                                                                                            https://support.office.com/f1/home?isAgave=true&amp;helpid=161255chromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                              high
                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=mi-NZ&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                high
                                                                                                                https://login.microsoftonline-int.comchromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                • Avira URL Cloud: phishing
                                                                                                                unknown
                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=kok-IN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                  high
                                                                                                                  http://www.opensource.org/licenses/mit-license.phpchromecache_330.1.drfalse
                                                                                                                    high
                                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=ky-KG&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                      high
                                                                                                                      https://content.lifecycle.officeppe.net/chromecache_197.1.drfalse
                                                                                                                        high
                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=sk-SK&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                          high
                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=ca-ES-valencia&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                            high
                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=ka-GE&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                              high
                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=tk-TM&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                high
                                                                                                                                https://augloop.office.com/v2;394866fc-eedb-4f01-8536-3ff84b16be2a;liveprofilecard.access;https://shchromecache_180.1.drfalse
                                                                                                                                  high
                                                                                                                                  https://www.onenote.com/officeaddins/meetings?ui=et-EE&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                    high
                                                                                                                                    https://cdn.fluidpreview.office.net/fluid/prodchromecache_197.1.drfalse
                                                                                                                                      high
                                                                                                                                      https://my.microsoftpersonalcontent.comchromecache_197.1.dr, chromecache_219.1.drfalse
                                                                                                                                        high
                                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=mt-MT&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                          high
                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=sr-Latn-RS&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                            high
                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=ne-NP&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                              high
                                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=ru-RU&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                high
                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=sl-SI&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                  high
                                                                                                                                                  https://forms.office.comchromecache_317.1.drfalse
                                                                                                                                                    high
                                                                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=bn-BD&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                      high
                                                                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=vi-VN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                        high
                                                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=af-ZA&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                          high
                                                                                                                                                          https://whiteboard.microsoft.scloudchromecache_197.1.drfalse
                                                                                                                                                          • Avira URL Cloud: safe
                                                                                                                                                          unknown
                                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=mn-MN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                            high
                                                                                                                                                            https://github.com/webpack-contrib/style-loader#insertat)chromecache_330.1.drfalse
                                                                                                                                                              high
                                                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=ro-RO&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                high
                                                                                                                                                                https://consent.config.office.com/consentcheckin/v1.0/consentschromecache_317.1.drfalse
                                                                                                                                                                  high
                                                                                                                                                                  https://www.onenote.com/officeaddins/meetings?ui=cs-CZ&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                    high
                                                                                                                                                                    https://fa000000096.resources.office.netchromecache_197.1.drfalse
                                                                                                                                                                      high
                                                                                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=pl-PL&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                        high
                                                                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=prs-AF&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                          high
                                                                                                                                                                          https://whiteboard.office.com/root/index.fluid.jschromecache_197.1.drfalse
                                                                                                                                                                            high
                                                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=sv-SE&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                              high
                                                                                                                                                                              https://github.com/js-cookie/js-cookiechromecache_267.1.drfalse
                                                                                                                                                                                high
                                                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=uk-UA&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                  high
                                                                                                                                                                                  https://support.office.com/article/7afcb4f3-4aa2-443a-9b08-125a5d692576chromecache_197.1.drfalse
                                                                                                                                                                                    high
                                                                                                                                                                                    https://res-dev.cdn.officeppe.net/mirrored/smartlookup/chromecache_192.1.drfalse
                                                                                                                                                                                      high
                                                                                                                                                                                      https://support.office.com/article/ec43ed03-eb3c-4a10-8d9d-e9e5433c9ed2chromecache_192.1.drfalse
                                                                                                                                                                                        high
                                                                                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=ar-SA&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                          high
                                                                                                                                                                                          https://prod.support.office.comchromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                                                                                            high
                                                                                                                                                                                            https://roaming.osi.office.de/rs/v1/settingschromecache_197.1.drfalse
                                                                                                                                                                                            • Avira URL Cloud: safe
                                                                                                                                                                                            unknown
                                                                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=he-IL&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                              high
                                                                                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=nso-ZA&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                high
                                                                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=mk-MK&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                  high
                                                                                                                                                                                                  https://login.windows-ppe.netchromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                                                                                                    high
                                                                                                                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=zu-ZA&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                      high
                                                                                                                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=lt-LT&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                        high
                                                                                                                                                                                                        https://reactjs.org/link/react-polyfillschromecache_207.1.drfalse
                                                                                                                                                                                                          high
                                                                                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=sq-AL&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                            high
                                                                                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=pt-PT&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                              high
                                                                                                                                                                                                              https://login.microsoftonline.comchromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                                                                                                                high
                                                                                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=tg-Cyrl-TJ&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                  high
                                                                                                                                                                                                                  https://cdn.fluidpreview.office.net/fluid/gccchromecache_197.1.drfalse
                                                                                                                                                                                                                    high
                                                                                                                                                                                                                    https://support.office.com/f1/SDX/wordchromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                                                                                                                      high
                                                                                                                                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=nb-NO&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                        high
                                                                                                                                                                                                                        https://www.onenote.com/officeaddins/meetings?ui=zh-TW&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                          high
                                                                                                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=tr-TR&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                            high
                                                                                                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=fr-FR&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                              high
                                                                                                                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=wo-SN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                high
                                                                                                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=de-DE&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                  high
                                                                                                                                                                                                                                  https://www.onenote.com/officeaddins/meetings?ui=kn-IN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                    high
                                                                                                                                                                                                                                    https://fa000000096.resources.office.net/f7024bdc-7caf-4ca8-807d-2908f09640d6/1.0.2210.23001/en-us_wchromecache_197.1.drfalse
                                                                                                                                                                                                                                      high
                                                                                                                                                                                                                                      https://www.onenote.com/officeaddins/mathassistantchromecache_317.1.drfalse
                                                                                                                                                                                                                                        high
                                                                                                                                                                                                                                        https://portal.office.com/chromecache_219.1.drfalse
                                                                                                                                                                                                                                          high
                                                                                                                                                                                                                                          https://forms.officeppe.comchromecache_254.1.dr, chromecache_317.1.dr, chromecache_261.1.drfalse
                                                                                                                                                                                                                                          • Avira URL Cloud: safe
                                                                                                                                                                                                                                          unknown
                                                                                                                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=bn-IN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                            high
                                                                                                                                                                                                                                            https://www.onenote.com/officeaddins/meetings?ui=fi-FI&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                              high
                                                                                                                                                                                                                                              https://localcdn.centro-dev.com:5555/floodgate.bundle.js.mapchromecache_218.1.drfalse
                                                                                                                                                                                                                                                high
                                                                                                                                                                                                                                                https://www.onenote.com/officeaddins/meetings?ui=ms-MY&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                  high
                                                                                                                                                                                                                                                  https://www.onenote.com/officeaddins/meetings?ui=te-IN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                    high
                                                                                                                                                                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=ml-IN&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                      high
                                                                                                                                                                                                                                                      http://hammerjs.github.io/chromecache_303.1.drfalse
                                                                                                                                                                                                                                                        high
                                                                                                                                                                                                                                                        https://whiteboard.office365.uschromecache_197.1.drfalse
                                                                                                                                                                                                                                                          high
                                                                                                                                                                                                                                                          https://www.onenote.com/officeaddins/meetings?ui=id-ID&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                            high
                                                                                                                                                                                                                                                            https://res-2-dev.cdn.officeppe.netchromecache_197.1.drfalse
                                                                                                                                                                                                                                                              high
                                                                                                                                                                                                                                                              https://www.onenote.com/officeaddins/meetings?ui=ca-ES&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                                high
                                                                                                                                                                                                                                                                https://edog.onenote.comchromecache_192.1.drfalse
                                                                                                                                                                                                                                                                • Avira URL Cloud: safe
                                                                                                                                                                                                                                                                unknown
                                                                                                                                                                                                                                                                https://support.office.com/f1/home?isAgave=truechromecache_265.1.dr, chromecache_315.1.drfalse
                                                                                                                                                                                                                                                                  high
                                                                                                                                                                                                                                                                  https://whiteboard.eaglex.ic.govchromecache_197.1.drfalse
                                                                                                                                                                                                                                                                  • Avira URL Cloud: safe
                                                                                                                                                                                                                                                                  unknown
                                                                                                                                                                                                                                                                  https://www.onenote.com/officeaddins/meetings?ui=tt-RU&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                                    high
                                                                                                                                                                                                                                                                    https://www.onenote.com/officeaddins/meetings?ui=am-ET&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                                      high
                                                                                                                                                                                                                                                                      https://www.onenote.com/officeaddins/meetings?ui=es-ES&amp;temporaryLocalization=truechromecache_321.1.drfalse
                                                                                                                                                                                                                                                                        high
                                                                                                                                                                                                                                                                        https://roaming.osi.apps.mil/rs/v1/settingschromecache_197.1.drfalse
                                                                                                                                                                                                                                                                          high
                                                                                                                                                                                                                                                                          • No. of IPs < 25%
                                                                                                                                                                                                                                                                          • 25% < No. of IPs < 50%
                                                                                                                                                                                                                                                                          • 50% < No. of IPs < 75%
                                                                                                                                                                                                                                                                          • 75% < No. of IPs
                                                                                                                                                                                                                                                                          IPDomainCountryFlagASNASN NameMalicious
                                                                                                                                                                                                                                                                          23.51.57.212
                                                                                                                                                                                                                                                                          e11271.dscg.akamaiedge.netUnited States
                                                                                                                                                                                                                                                                          4788TMNET-AS-APTMNetInternetServiceProviderMYfalse
                                                                                                                                                                                                                                                                          23.45.193.219
                                                                                                                                                                                                                                                                          unknownUnited States
                                                                                                                                                                                                                                                                          20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                                                          13.107.246.38
                                                                                                                                                                                                                                                                          s-part-0010.t-0009.t-msedge.netUnited States
                                                                                                                                                                                                                                                                          8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          185.225.69.75
                                                                                                                                                                                                                                                                          edp-germany.schinndlerr.comHungary
                                                                                                                                                                                                                                                                          30836NET23-ASHUfalse
                                                                                                                                                                                                                                                                          52.111.230.4
                                                                                                                                                                                                                                                                          augloop-prod-pa01.eastus2.cloudapp.azure.comUnited States
                                                                                                                                                                                                                                                                          8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          13.107.246.72
                                                                                                                                                                                                                                                                          s-part-0044.t-0009.t-msedge.netUnited States
                                                                                                                                                                                                                                                                          8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          104.117.182.51
                                                                                                                                                                                                                                                                          a46.dscr.akamai.netUnited States
                                                                                                                                                                                                                                                                          20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                                                          23.57.90.112
                                                                                                                                                                                                                                                                          unknownUnited States
                                                                                                                                                                                                                                                                          35994AKAMAI-ASUSfalse
                                                                                                                                                                                                                                                                          142.251.40.228
                                                                                                                                                                                                                                                                          www.google.comUnited States
                                                                                                                                                                                                                                                                          15169GOOGLEUSfalse
                                                                                                                                                                                                                                                                          20.135.4.170
                                                                                                                                                                                                                                                                          i-blz04p-cor006.api.p001.1drv.comUnited States
                                                                                                                                                                                                                                                                          8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          23.219.36.101
                                                                                                                                                                                                                                                                          a1531.g2.akamai.netUnited States
                                                                                                                                                                                                                                                                          20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                                                          40.126.35.21
                                                                                                                                                                                                                                                                          www.tm.a.prd.aadg.trafficmanager.netUnited States
                                                                                                                                                                                                                                                                          8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          23.44.136.154
                                                                                                                                                                                                                                                                          unknownUnited States
                                                                                                                                                                                                                                                                          20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                                                          13.107.137.11
                                                                                                                                                                                                                                                                          dual-spov-0006.spov-msedge.netUnited States
                                                                                                                                                                                                                                                                          8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          23.44.201.134
                                                                                                                                                                                                                                                                          a1894.dscb.akamai.netUnited States
                                                                                                                                                                                                                                                                          20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                                                          40.126.28.13
                                                                                                                                                                                                                                                                          unknownUnited States
                                                                                                                                                                                                                                                                          8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          52.111.229.20
                                                                                                                                                                                                                                                                          prod-campaignaggregator.omexexternallfb.office.net.akadns.netUnited States
                                                                                                                                                                                                                                                                          8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                                                          IP
                                                                                                                                                                                                                                                                          192.168.2.7
                                                                                                                                                                                                                                                                          192.168.2.5
                                                                                                                                                                                                                                                                          192.168.2.16
                                                                                                                                                                                                                                                                          Joe Sandbox version:42.0.0 Malachite
                                                                                                                                                                                                                                                                          Analysis ID:1649073
                                                                                                                                                                                                                                                                          Start date and time:2025-03-26 13:53:02 +01:00
                                                                                                                                                                                                                                                                          Joe Sandbox product:CloudBasic
                                                                                                                                                                                                                                                                          Overall analysis duration:0h 3m 47s
                                                                                                                                                                                                                                                                          Hypervisor based Inspection enabled:false
                                                                                                                                                                                                                                                                          Report type:full
                                                                                                                                                                                                                                                                          Cookbook file name:browseurl.jbs
                                                                                                                                                                                                                                                                          Sample URL:https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU
                                                                                                                                                                                                                                                                          Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                                                                                                                                                                                                                                          Number of analysed new started processes analysed:14
                                                                                                                                                                                                                                                                          Number of new started drivers analysed:0
                                                                                                                                                                                                                                                                          Number of existing processes analysed:0
                                                                                                                                                                                                                                                                          Number of existing drivers analysed:0
                                                                                                                                                                                                                                                                          Number of injected processes analysed:0
                                                                                                                                                                                                                                                                          Technologies:
                                                                                                                                                                                                                                                                          • HCA enabled
                                                                                                                                                                                                                                                                          • EGA enabled
                                                                                                                                                                                                                                                                          • AMSI enabled
                                                                                                                                                                                                                                                                          Analysis Mode:default
                                                                                                                                                                                                                                                                          Analysis stop reason:Timeout
                                                                                                                                                                                                                                                                          Detection:MAL
                                                                                                                                                                                                                                                                          Classification:mal60.phis.win@34/289@70/20
                                                                                                                                                                                                                                                                          EGA Information:Failed
                                                                                                                                                                                                                                                                          HCA Information:
                                                                                                                                                                                                                                                                          • Successful, ratio: 100%
                                                                                                                                                                                                                                                                          • Number of executed functions: 0
                                                                                                                                                                                                                                                                          • Number of non-executed functions: 0
                                                                                                                                                                                                                                                                          • Exclude process from analysis (whitelisted): sppsvc.exe, SIHClient.exe, SgrmBroker.exe, TextInputHost.exe, svchost.exe
                                                                                                                                                                                                                                                                          • Excluded IPs from analysis (whitelisted): 142.250.65.206, 142.251.163.84, 142.250.80.35, 142.250.72.110, 142.251.35.174, 142.251.40.142, 142.250.80.78, 104.208.16.89, 142.250.64.106, 142.250.64.74, 142.251.40.234, 142.250.80.74, 142.250.80.42, 142.250.65.234, 142.251.40.170, 142.251.35.170, 142.251.40.106, 142.251.32.106, 142.251.40.202, 142.250.176.202, 142.250.72.106, 142.250.80.106, 142.250.81.234, 142.251.40.138, 52.182.143.214, 208.89.73.29, 52.109.6.4, 20.190.152.20, 40.126.24.146, 20.190.152.19, 40.126.24.83, 40.126.24.81, 40.126.24.147, 40.126.24.84, 20.190.152.21, 142.251.32.110, 23.51.56.248, 142.250.81.238, 142.250.64.110, 142.251.35.163, 142.250.80.46, 142.250.81.227, 34.104.35.123, 142.251.40.195, 51.11.192.49, 20.42.65.90, 142.250.176.206, 142.251.40.110, 23.44.136.179, 52.108.10.12, 52.108.9.12, 23.44.136.155, 23.44.136.159, 52.123.129.14, 13.107.9.156, 20.109.210.53, 23.44.136.161, 13.107.246.40, 52.123.128.14, 184.31.69.3, 23.44.136.153, 23.57.90.70, 52.108.8.12
                                                                                                                                                                                                                                                                          • Excluded domains from analysis (whitelisted): usc-onenote.officeapps.live.com, slscr.update.microsoft.com, mrodevicemgr.officeapps.live.com, www.tm.lg.prod.aadmsa.akadns.net, clientservices.googleapis.com, res-1.cdn.office.net, browser.events.data.trafficmanager.net, onedscolprdeus14.eastus.cloudapp.azure.com, cdn.onenote.net.edgekey.net, clients2.google.com, dual-s-0005-office.config.skype.com, login.live.com, onedscolprdfrc07.francecentral.cloudapp.azure.com, update.googleapis.com, csp.microsoft.com, mrodevicemgr-prod-defaultgeo.trafficmanager.net, www.gstatic.com, ecs.office.com, fs.microsoft.com, content-autofill.googleapis.com, wise.public.cdn.office.net, res-stls-prod.edgesuite.net, res-prod.trafficmanager.net, edgedl.me.gvt1.com, euc-onenote-geo.wac.trafficmanager.net, e1553.dspg.akamaiedge.net, clients.l.google.com, ecs.office.trafficmanager.net, euc-onenote.officeapps.live.com, www.tm.lg.prod.aadmsa.trafficmanager.net, appsforoffice.microsoft.com, redirector.gvt1.com, onedscolprdcus11.centralus.cloud
                                                                                                                                                                                                                                                                          • Not all processes where analyzed, report is missing behavior information
                                                                                                                                                                                                                                                                          • Report size getting too big, too many NtCreateFile calls found.
                                                                                                                                                                                                                                                                          • Report size getting too big, too many NtOpenFile calls found.
                                                                                                                                                                                                                                                                          • Report size getting too big, too many NtSetInformationFile calls found.
                                                                                                                                                                                                                                                                          • Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
                                                                                                                                                                                                                                                                          • VT rate limit hit for: https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&amp;ithint=onenote&amp;e=VRLCee&amp;migratedtospo=true&amp;redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU
                                                                                                                                                                                                                                                                          No simulations
                                                                                                                                                                                                                                                                          No context
                                                                                                                                                                                                                                                                          No context
                                                                                                                                                                                                                                                                          No context
                                                                                                                                                                                                                                                                          No context
                                                                                                                                                                                                                                                                          No context
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):3997
                                                                                                                                                                                                                                                                          Entropy (8bit):4.374123181769314
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:3/VXGWSAWPHMScQhlsg7uECJYU1GTmhI4U3odG393oP:3/oWrwHSQhtw6TTj73I
                                                                                                                                                                                                                                                                          MD5:4DE28836DE634CEC640C1D510205CC49
                                                                                                                                                                                                                                                                          SHA1:987DDC6F0C4AD7FA8120DCE95F9AF40E893DDED8
                                                                                                                                                                                                                                                                          SHA-256:860B212DF09B02CEEF520D1416F37147B8F7A0ACBD53AFA340741CEE0EF74368
                                                                                                                                                                                                                                                                          SHA-512:9B6A1B57968E552C8406A30215D6463F694E7BE478BEE29CA8FB9A0B2EAB6B0472DB4281A9520B0EE3F2D5EFF315CB3225682EE21E1F952704B27E46975117F9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"timestamp":1742993673185,"BootstrapperUlsHeartBeatIsEnabled":false,"EnableCommonHostDiagnosticsParams":true,"ShouldLogJsApiKpisForWord":true,"EnableFramePageErrorReportingForWord":false,"EnableWordSessionRefreshTelemetry":false,"EnableWordSessionRefreshLoggingCleanup":false,"BootstrapperSettingsFetchPeriod":60000,"BootstrapperUlsHeartbeatIntervalMs":5000,"BootstrapperMaxUlsHeartbeatTime":600000,"BootstrapperNoCompleteWarning1Time":30000,"BootstrapperNoCompleteWarning2Time":120000,"BootstrapperNoCompleteWarning3Time":180000,"BootstrapperUlsUploadCadenceMs":60000,"WordRefreshTelemetryExpirationInDays":7,"RequestedCallThrottlingDefaultToViewMinimumValue":"Major","RemoteUlsETag":"3446F01DD18F16CB80609621A6A1DCA89020D1DE","RemoteUlsSuppressions":"378069,1671813,2208151,2209344,3249545,3290144,4273285,4285850,4298965,4298968,4298969,4751696,5018275,5306497,5904476,6375195,6572226,6948167,7463498,8194017,8458642,16799123,17044289,17085210,17085216,17162522,17358857,17387682,19214611,1924347
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1233
                                                                                                                                                                                                                                                                          Entropy (8bit):5.464953219409053
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:hM0mIAvy4WvsqoLBa7JZRGNeHX+AYcvP2wk1TLz+eGFk5:lmIAq1Uq+iJZ+eHX+AdP2edk5
                                                                                                                                                                                                                                                                          MD5:11CA4578CB026A23713AEA6781B8ECE3
                                                                                                                                                                                                                                                                          SHA1:A05AE51B4A3E2E0076222CBCBE9C58833CDEF108
                                                                                                                                                                                                                                                                          SHA-256:C55F527E536DE44C7980FECECE7428AE5A765647495E47008A8A54FA1E434736
                                                                                                                                                                                                                                                                          SHA-512:5F57C749A78FF8DFA4D172A11A179D9EC9E036C0A6B2C6059F79B2DCF1114A3D289104B68316B4913A01C54FBBE07FF38D1648BB8534B510C3797433AF6B2158
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://onenote.officeapps.live.com/o/AddinServiceHandler.ashx?action=laststoreupdate&app=4&lc=EN-US&WOPIsrc=https%3A%2F%2Fmy%2Emicrosoftpersonalcontent%2Ecom%2Fpersonal%2Fa19e0d27a159b01d%2F%5Fvti%5Fbin%2Fwopi%2Eashx%2Ffolders%2FA19E0D27A159B01D%21se850d13aad6f4f548dfedfae61d3c47a&access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsIng1dCI6Ik5MSE5vUHpCZWMzakxsUXNTWW9MNVExRWdmRSJ9%2EeyJhdWQiOiJ3b3BpL215Lm1pY3Jvc29mdHBlcnNvbmFsY29udGVudC5jb21AOTE4ODA0MGQtNmM2Ny00YzViLWIxMTItMzZhMzA0YjY2ZGFkIiwiaXNzIjoiMDAwMDAwMDMtMDAwMC0wZmYxLWNlMDAtMDAwMDAwMDAwMDAwQDkwMTQwMTIyLTg1MTYtMTFlMS04ZWZmLTQ5MzA0OTI0MDE5YiIsIm5iZiI6IjE3NDI5OTM2NDAiLCJleHAiOiIxNzQzNDIyMDQwIiwibmFtZWlkIjoiMCMuZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jZDI3OWU1Y2NiMmYzZjQ5Y2YxZDlmMTNjOTQ4NjVjYTNiMGQxZjUwNDllZDRhNjMzZGExODM5YWZiYjZiNDc4YSIsIm5paSI6Im1pY3Jvc29mdC5zaGFyZXBvaW50IiwiaXN1c2VyIjoidHJ1ZSIsImNhY2hla2V5IjoiMGguZnxtZW1iZXJzaGlwfHVybiUzYXNwbyUzYWFub24jZDI3OWU1Y2NiMmYzZjQ5Y2YxZDlmMTNjOTQ4NjVjYTNiMGQxZjUwNDllZDRhNjMzZGExODM5YWZiYjZiNDc4YSIsInNoYXJpbmdpZCI6Ik4wem5DcVhjQlVxN3BseWU3RzJSMnciLCJpc2xvb3BiYWNrIjoiVHJ1ZSIsImFwcGN0eCI6ImU4NTBkMTNhYWQ2ZjRmNTQ4ZGZlZGZhZTYxZDNjNDdhO01NSW9kVHVrMnhacDRTTFIyUlQ3cU9HcTNsTT07RGVmYXVsdDs5Y2MwYzgzYzg5ZDM0ZjA5OGM4OWZkZDdjYTA3NDMwYzs7VHJ1ZTs7OzM4NDA7MTI0YjhlYTEtOTAzNS1jMDAwLTE2MjktZTE0OWE2ZTNhMmJjIiwiZmlkIjoiMTg4ODY3In0%2EuEoVh%5FSquu5OjxsRdCFWOnsln%2Ds4ocWFfT%5F7uy67iKjfsoAbhTRgj33m0lz7KHSq1sXgtfLjP9VGWrJ9mUNnsRUoGQh9VnXSqFefSn18ZrV0cPYjtI3r9BPCkknw8mI5EpPjfG19tLATFmlrNJCW5hWvOIyy2Myt53wKXx3PrktkohUb6G9w4zkccSZ7yL5FBVKAUNsMLNd5S97qkyGC2FaBYs%5FzsDI6aFInwWkpFftAVKYDdz8GA9W7sdJjifj%5FZ5pDHbFLFHt0MHnzIuqbg6yT4HpIazib5mD04ytOwTMHD9%2Dr4aq8PFjTilFdZHQ%5FUkdcg6KI0JUdTcKv6CdbrA&access_token_ttl=1743422040375
                                                                                                                                                                                                                                                                          Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">..<html xmlns="http://www.w3.org/1999/xhtml">..<head>..<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"/>..<title>403 - Forbidden: Access is denied.</title>..<style type="text/css">.. ..body{margin:0;font-size:.7em;font-family:Verdana, Arial, Helvetica, sans-serif;background:#EEEEEE;}..fieldset{padding:0 15px 10px 15px;} ..h1{font-size:2.4em;margin:0;color:#FFF;}..h2{font-size:1.7em;margin:0;color:#CC0000;} ..h3{font-size:1.2em;margin:10px 0 0 0;color:#000000;} ..#header{width:96%;margin:0 0 0 0;padding:6px 2% 6px 2%;font-family:"trebuchet MS", Verdana, sans-serif;color:#FFF;..background-color:#555555;}..#content{margin:0 0 0 2%;position:relative;}...content-container{background:#FFF;width:96%;margin-top:8px;padding:10px;position:relative;}..-->..</style>..</head>..<body>..<div id="header"><h1>Server Error</h1></div>..<div id="content">.. <div class="co
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1208
                                                                                                                                                                                                                                                                          Entropy (8bit):5.4647615085670616
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:hM0mIAvy4WvsqFOa7JZRGNeHX+AYcvP2wk1USdYF9Yk5:lmIAq1UqFOiJZ+eHX+AdP2wyYFOk5
                                                                                                                                                                                                                                                                          MD5:D29FA9F2AB3A72F2608E8E82C8C3D1C6
                                                                                                                                                                                                                                                                          SHA1:8B21CC06752837B4B6B8FEF8D54F50EB2C7CCA8F
                                                                                                                                                                                                                                                                          SHA-256:E1B0A10649C4B92F828523EFC2EBE135EA9488179A2816888D1E84F786202DBF
                                                                                                                                                                                                                                                                          SHA-512:824A207E3F5AF4934B7B50FE5E3F8585FAECA571C3C39E510C06DC8FBDF3E64B07811CAAE06239936BDDDDFA4C90E534F03C0DA8147AF9294042DEA6B0FBCB94
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">..<html xmlns="http://www.w3.org/1999/xhtml">..<head>..<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"/>..<title>500 - Internal server error.</title>..<style type="text/css">.. ..body{margin:0;font-size:.7em;font-family:Verdana, Arial, Helvetica, sans-serif;background:#EEEEEE;}..fieldset{padding:0 15px 10px 15px;} ..h1{font-size:2.4em;margin:0;color:#FFF;}..h2{font-size:1.7em;margin:0;color:#CC0000;} ..h3{font-size:1.2em;margin:10px 0 0 0;color:#000000;} ..#header{width:96%;margin:0 0 0 0;padding:6px 2% 6px 2%;font-family:"trebuchet MS", Verdana, sans-serif;color:#FFF;..background-color:#555555;}..#content{margin:0 0 0 2%;position:relative;}...content-container{background:#FFF;width:96%;margin-top:8px;padding:10px;position:relative;}..-->..</style>..</head>..<body>..<div id="header"><h1>Server Error</h1></div>..<div id="content">.. <div class="content-
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with very long lines (337), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):4248
                                                                                                                                                                                                                                                                          Entropy (8bit):5.468721515459074
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:G9koxJm4cahUse6V+RfDJmq2ahd1nYBsQxnOfTOP:G9koxFcSYRfDf2uJYtaY
                                                                                                                                                                                                                                                                          MD5:9D0E8B6B01F9754B5EC369CAFFB6A068
                                                                                                                                                                                                                                                                          SHA1:EF6B5E44C44A73A76AACF448C5E5C1B37A2F65C9
                                                                                                                                                                                                                                                                          SHA-256:FEB2F0C8693A5930A601192EF6D06241175574AE8AB271ACE36AFFE7EE87757A
                                                                                                                                                                                                                                                                          SHA-512:84E5CDADC655683A0AEBC88A921687CA44D70DC245037522DD1B60C62FCFB1A355D6347353647E9243458896251B99CEF17C2609CD917902141184A167E10FAB
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://oauth.officeapps.live.com/oa/WacOAuth.aspx?replyUrl=https://onenote.officeapps.live.com&usid=6e978169-98b0-08db-1683-11f39403677b&WacUserType=WOPI&sv=1&msalv3=1
                                                                                                                                                                                                                                                                          Preview:....<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">....<html xmlns="http://www.w3.org/1999/xhtml">...<head><title>....</title>....<style id="sharedauthstyles" nonce="b7a6721f-d30c-4a46-9c22-f22e3ccedc1a"></style>....<script type="text/javascript" nonce="109a50aa-23ff-4506-a41b-527d258a4646">.....function loadBackupScript() {......var backupScript = document.createElement('script');......backupScript.setAttribute("data-allowedapps", "5a4eed13-c4c4-4b4c-9506-334ab200bf31;93d53678-613d-4013-afc1-62e9e444a0a5");......backupScript.setAttribute("data-allowedaudiences", "e03a13ee-9730-4cae-8525-47559c8cf18a;https://augloop.office.com/v2;394866fc-eedb-4f01-8536-3ff84b16be2a;liveprofilecard.access;https://shredder-us.osi.office.net/;https://substrate.office.com;https://consentservice.microsoft.com/web;https://consentservice.microsoft.com/checkin;");......backupScript.setAttribute("data-origin", "https://onenote.officeapps
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (27024), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):27026
                                                                                                                                                                                                                                                                          Entropy (8bit):5.536845977615562
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:ne7LRwe03wCS8V012RwlKzXicngH8I4qIZD3338z3YSzK1/0:ne756VnzZbI6Dn8z3YWd
                                                                                                                                                                                                                                                                          MD5:A230E20FEECBB758D7C13303A657EEDD
                                                                                                                                                                                                                                                                          SHA1:F12606CCE8600D9DFB5316610EE5177BA51B0CE9
                                                                                                                                                                                                                                                                          SHA-256:816A0F42A2BF473213A47BE1DDE62215811D54AF1151A1E9916DC215DF6EC776
                                                                                                                                                                                                                                                                          SHA-512:1C6F7288BEBAB71D8B6C7CE21D5F1FAA53C6710FAF1A0F611C0313E71BD5DB17A304E433686836AB2EEAE0E0ACBDDEAA2E1E82EDE54145520542C0361066FEE0
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h816A0F42A2BF4732_resources/1033/EditSurface.css
                                                                                                                                                                                                                                                                          Preview: FocusedContentControl*{margin:0;padding:0;}.EditingSurfaceBody{background-color:transparent;border:none;outline:none;}.EditingSurfaceBody,.EditingSurfaceBody *{-ms-touch-select:none;-webkit-user-select:text;-khtml-user-select:text;-moz-user-select:text;-ms-user-select:text;}.EditMode span.SpellingError,.EditingSurfaceBody span.SpellingError{background-image:url('data:image/gif;base64,R0lGODlhBQAEAJECAP////8AAAAAAAAAACH5BAEAAAIALAAAAAAFAAQAAAIIlGAXCCHrTCgAOw==');border-bottom:solid 1px transparent;}.EditMode span.DictationCorrection,.EditingSurfaceBody span.DictationCorrection{background-image:url("data:image/svg+xml;utf8,<svg xmlns='http://www.w3.org/2000/svg' width='3' height='4'><path d='M 0 0 L 5 5' stroke='gray' stroke-width='1px'/></svg>");border-bottom:solid 1px transparent;}.EditMode span.ContextualSpellingAndGrammarError,.EditingSurfaceBody span.ContextualSpellingAndGrammarError{background-image:url('data:image/gif;base64,R0lGODlhBQAEAPEDAABVzDNVzDNV/wAAACH5BAUAAAMALAAAAAAFAAQ
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (59659)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):59700
                                                                                                                                                                                                                                                                          Entropy (8bit):5.399325491010828
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:b2XlwLEbHyMYvPVADK/AwJaAEwBYtmXBhYhm1atjopjCmW2TPkMFZa40IbJrbrXT:b2XoJFBhR1QQFZ/3gaf63pBBZ9Pubd
                                                                                                                                                                                                                                                                          MD5:3405EEBC14B44BED09508E69EA6F1D77
                                                                                                                                                                                                                                                                          SHA1:DE31BB171FB5AAC0B62F52CDEDBB44F172275B7E
                                                                                                                                                                                                                                                                          SHA-256:4F7A921E38A4AFE7223377B26AB873F87A54EFC2F4F4780C3767D51A561E341F
                                                                                                                                                                                                                                                                          SHA-512:3A9ABFC552202B97C383151909FDB1DBF4D50A49E4B88333C6D210B3575D9313549258BDD7CE3831C210CE9CC85AB18DF77D7596F41E90F4882E7228583D7194
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/oreolazy.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[658],{46878:function(e,t){var i;Object.defineProperty(t,"__esModule",{value:!0}),(i=t._BondDataType||(t._BondDataType={}))[i._BT_STOP=0]="_BT_STOP",i[i._BT_STOP_BASE=1]="_BT_STOP_BASE",i[i._BT_BOOL=2]="_BT_BOOL",i[i._BT_DOUBLE=8]="_BT_DOUBLE",i[i._BT_STRING=9]="_BT_STRING",i[i._BT_STRUCT=10]="_BT_STRUCT",i[i._BT_LIST=11]="_BT_LIST",i[i._BT_MAP=13]="_BT_MAP",i[i._BT_INT32=16]="_BT_INT32",i[i._BT_INT64=17]="_BT_INT64"},95925:function(e,t,i){Object.defineProperty(t,"__esModule",{value:!0});var n=i(38818),r=i(98871),o=i(48227);t._Utf8_GetBytes=function(e){for(var t=[],i=0;i<e.length;++i){var n=e.charCodeAt(i);n<128?t.push(n):n<2048?t.push(192|n>>6,128|63&n):n<55296||n>=57344?t.push(224|n>>12,128|n>>6&63,128|63&n):(n=65536+((1023&n)<<10|1023&e.charCodeAt(++i)),t.push(240|n>>18,128|n>>12&63,128|n>>6&63,128|63&n))}return t},t._Base64_GetString=function(e){for(var t,i="ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijkl
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):349073
                                                                                                                                                                                                                                                                          Entropy (8bit):5.472928244832578
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:RvdONDfExp6/2C7/wvgqwz7QoSwpQoHS5AZmX8oK1HbCik7PM:S58gqD+W5L7PM
                                                                                                                                                                                                                                                                          MD5:DF0FE4036F3FAC0CFDF8A460B2F478A4
                                                                                                                                                                                                                                                                          SHA1:DE70EBFBA5761418FD32F05F14E7BE1BC7F65AB8
                                                                                                                                                                                                                                                                          SHA-256:9F9A33CC519B439338BDEDF75D7E77EE748A792C80E92B7EFE19BFA5B7F1A908
                                                                                                                                                                                                                                                                          SHA-512:2C6D54CD0449FEBB5814CFB50553F56F9EF61E243D92F72BE98A21572D924478B14FC61015F1FBC7B60E3E78D8674E004F2262E78543CEC8D240B5CDE818C6BB
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/navigation.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[521],{88978:function(t,e,i){var n=i(94329),o=i(36706)(n);o.push([t.id,".WhatsNewLayer {\n background-color: rgba(0, 0, 0, 0.4);\n z-index: 1000001;\n position: fixed;\n top: 0;\n left: 0;\n width: 100%;\n height: 100%;\n display: flex;\n -webkit-box-align: center;\n -ms-flex-align: center;\n align-items: center;\n -webkit-box-pack: center;\n -ms-flex-pack: center;\n font-family: 'Segoe UI Web (West European)', 'Segoe UI', -apple-system, BlinkMacSystemFont, Roboto, 'Helvetica Neue',\n sans-serif;\n}\n\n.WhatsNewLayer .WhatsNewBoard {\n min-height: 100px;\n background-color: white;\n width: 100%;\n -webkit-box-shadow: 0 0 5px 0 rgba(0, 0, 0, 0.4);\n box-shadow: 0 0 5px 0 rgba(0, 0, 0, 0.4);\n -webkit-box-sizing: border-box;\n box-sizing: border-box;\n position: relative;\n outline: 3px solid transparent;\n overflow-y: auto;\n}\n\n.WhatsNewLayer .WhatsNewHeader {\n position: relative;\n
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2
                                                                                                                                                                                                                                                                          Entropy (8bit):1.0
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:H:H
                                                                                                                                                                                                                                                                          MD5:99914B932BD37A50B983C5E7C90AE93B
                                                                                                                                                                                                                                                                          SHA1:BF21A9E8FBC5A3846FB05B4FA0859E0917B2202F
                                                                                                                                                                                                                                                                          SHA-256:44136FA355B3678A1146AD16F7E8649E94FB4FC21FE77E8310C060F61CAAFF8A
                                                                                                                                                                                                                                                                          SHA-512:27C74670ADB75075FAD058D5CEAF7B20C4E7786C83BAE8A32F626F9782AF34C9A33C2046EF60FD2A7878D378E29FEC851806BBD9A67878F3A9F1CDA4830763FD
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://ecs.office.com/config/v1/CHILL/0.0.12?disableexperiments=true&disablerollouts=false&Agent=ChillWAC&Platform=Web&Host=SharePoint%20Online%20Consumer&Audience=Production&TenantId=9188040d-6c67-4c5b-b112-36a304b66dad&Application=OneNote&version=16.0.18718.41003&language=en-US
                                                                                                                                                                                                                                                                          Preview:{}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):73679
                                                                                                                                                                                                                                                                          Entropy (8bit):5.345331273160561
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:2mEAABhINqfFi3U+BBZ9rbov8krznXSraMIRF+b+hNH8IBYLd9+yerrwg6ksYcI0:sBhPfQ3pBBZ9n4wQB4XjUQeoSGfUk
                                                                                                                                                                                                                                                                          MD5:65F960810895837B06B1D3AE1CCEAEF3
                                                                                                                                                                                                                                                                          SHA1:0673F80A70CFB78AD7018E161E3201E80CB71307
                                                                                                                                                                                                                                                                          SHA-256:F452E6287DAFD3B632CBFF8533ED5DFC2F6F476C8672B468CF6DCFE321B8C889
                                                                                                                                                                                                                                                                          SHA-512:1DB287677E77DF1E62326486EEDA54DAB20A760008180ED93D905029B6361BA06212F62DD366E77435F43F701CC9BBE1DC46234C6201173B75336BA79A41DF26
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://appsforoffice.microsoft.com/lib/1.1/hosted/telemetry/oteljs_agave.js
                                                                                                                                                                                                                                                                          Preview:var oteljs_agave=function(e){var t={};function n(i){if(t[i])return t[i].exports;var r=t[i]={i:i,l:!1,exports:{}};return e[i].call(r.exports,r,r.exports,n),r.l=!0,r.exports}return n.m=e,n.c=t,n.d=function(e,t,i){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:i})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var i=Object.create(null);if(n.r(i),Object.defineProperty(i,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var r in e)n.d(i,r,function(t){return e[t]}.bind(null,r));return i},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},n.p="",n(n.s=31)}([function(e,t,n){"use strict";Object.defineProperty(t,"__esModule
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (5949), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):5949
                                                                                                                                                                                                                                                                          Entropy (8bit):5.021760613857532
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:Vq+J+ZRrxLuL7H9T4Mh+HsQ7qQYHq3l0e4QDhMWp:xJ+ZR07HNhhw7qQYHq3l0e4P8
                                                                                                                                                                                                                                                                          MD5:BBF6A2B6E77972F0718F99C86AE3FE92
                                                                                                                                                                                                                                                                          SHA1:806E8C002AE178B41819BEAFE123AE09202DF966
                                                                                                                                                                                                                                                                          SHA-256:78FF6158246E4FA25F994827F90ED69FEEF349AA57449CB404E35C3026BD4B8A
                                                                                                                                                                                                                                                                          SHA-512:4B4F58735190254E74ED9BAF547046642F622EE35414784A093356D28982A28A5D84E4CE71E476A88BC43583B6BB2D916B16A733D67D5B30E145DC2E4182BC8C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h78FF6158246E4FA2_App_Scripts/CompatParentElementFix.js
                                                                                                                                                                                                                                                                          Preview:function __loadCompat(n){n.Debug=function(){};n.Debug._fail=function(n){throw new Error(n);};n.Debug.writeln=function(n){window.console&&window.console.debug(n)};n.__getNonTextNode=function(n){try{while(n&&n.nodeType!=1)n=n.parentNode}catch(t){n=null}return n}}function _loadSafariCompat(){Node.prototype.__defineGetter__("text",function(){return this.textContent});Node.prototype.__defineSetter__("text",function(n){this.textContent=n});Node.prototype.selectNodes=function(n){var t=this.ownerDocument;return selectNodes(t,n,this)};Node.prototype.selectSingleNode=function(n){var t=this.ownerDocument;return selectSingleNode(t,n,this)};Document.prototype.selectNodes=function(n){return selectNodes(this,n,this.documentElement)};Document.prototype.selectSingleNode=function(n){return selectSingleNode(this,n,this.documentElement)}}function _loadMozillaCompat(n){n.navigate=function(n){window.setTimeout('window.location = "'+n+'";',0)};var t=function(n,t){t._mozillaEventHandler=function(n){return win
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1328222
                                                                                                                                                                                                                                                                          Entropy (8bit):5.536437292269548
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24576:seuVbVNDxy73HKsheIbkNs86+5E3Ka9KWYqRT:seuVbVNDxy73qsheuk+l+5E30WYqF
                                                                                                                                                                                                                                                                          MD5:B74F71BFFB2B405C7A096AE81C7356B0
                                                                                                                                                                                                                                                                          SHA1:A42512DADF15483B1FA1F8D89D0AADD589D0427D
                                                                                                                                                                                                                                                                          SHA-256:37AC6ED3135FEDB04605E921079D10FAD3FD8D2B73AE5CCD90620C009EF29D6D
                                                                                                                                                                                                                                                                          SHA-512:064EE8246E4F29393CEFA53EE00109EBD6C65CA66A901DBE406591B18F97B39FFBE97BAA05E380ED6ED55CDF1F20D8528CB1ED916BC1D550305BD4FBFC25BA42
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/common50.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[243],{14218:function(e,t,n){var o=n(94329),r=n(36706)(o);r.push([e.id,'.navPane__notebookArea___Bt0Ra {\n background-color: #ffffff;\n display: flex;\n flex-direction: column;\n height: 100%;\n width: 200px;\n}\n\n.navPane__oldmainArea___e6Kzp {\n background-color: var(--colorNeutralBackground2);\n border-right: 1px solid var(--colorNeutralStroke2);\n display: flex;\n flex-direction: column;\n height: 100%;\n margin-right: -1px;\n overflow: hidden;\n position: relative;\n}\n\n.navPane__mainArea___ve8sE {\n background-color: var(--colorNeutralBackground2);\n border-right: 1px solid var(--colorNeutralStroke2);\n box-sizing: border-box;\n -webkit-box-sizing: border-box;\n width: 100%;\n\n i {\n font-family: "OreoIcons";\n font-style: normal;\n }\n}\n/* Fixes navpane can\'t be resized in IE11 */\n@media screen and (-ms-high-contrast: none), (-ms-high-contrast: active) {\n .navPane__mainAre
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):7886
                                                                                                                                                                                                                                                                          Entropy (8bit):3.675002721266739
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:HOmS/+CtmE8mmmmm08mmmmmtf8mmmmmO8mmmmm+8mmmmmo8mmmmmo8mmmmmSC3on:AGHFk
                                                                                                                                                                                                                                                                          MD5:7A7A4890CAAA77025E1B33A6D6E474EE
                                                                                                                                                                                                                                                                          SHA1:DC735B99D9EF0C76B4A7AEAE8BAA4CBD9551BA77
                                                                                                                                                                                                                                                                          SHA-256:9E1DA5BF715135491519A188CAD977DB6CBA414071E2407B69D63221379D8802
                                                                                                                                                                                                                                                                          SHA-512:291692981A555857F95A3378B511E27B60154B95EA0BA0452B3A5536D9A63A16B00518066E4F4B60E6A73CBD2A7C46B99A18102EA5970989B9736E57A6474D30
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:...... .... .....6......... ............... .h...f...(... ...@..... ..........................................................................................................................................................................................................................................................................................................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................P...P...P...P...P...P...P...P...T...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................H...H...H...H...H...H...H...H...H...\...d...d...d...d...d...d...d....w...w...w...w...w...w...w...........
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (1014)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):5139
                                                                                                                                                                                                                                                                          Entropy (8bit):5.047740672459291
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:YP4oYSnScpAUV3TOJfdtp96WmkDVTssICRXhWqF7+3a7IP1LPc5ZGjmnjKujMODd:g4oYSnScpAUV3TOJFtpYWm9sICRxWqlZ
                                                                                                                                                                                                                                                                          MD5:D454A74C0867BB9ECCE496D3FFBDAECF
                                                                                                                                                                                                                                                                          SHA1:66EDDB5A714F61577751513CDE5072232ABE86CB
                                                                                                                                                                                                                                                                          SHA-256:558D264A8C446BE66A79F6A786D26105E39A986DB78D24879CF547477CE60C58
                                                                                                                                                                                                                                                                          SHA-512:EF74213B4A661E6D68EF1542DEB30119E3054594347062B47181E44B73D4E076359DE4DCBE57DFDD4A6153ECD95EE28E5C5C90A45D1ABB318E07265A6C69D5DA
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/en-us/ondemand.resx.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([["ondemand.resx"],{725:e=>{e.exports=JSON.parse('{"a":"EnvironmentType is invalid","b":"Invalid GUID string: \\u0022{0}\\u0022","f":"The value for \\u0022{0}\\u0022 is false","g":"The value for \\u0022{0}\\u0022 must not be null","h":"The value for \\u0022{0}\\u0022 must not be undefined","e":"The value for \\u0022{0}\\u0022 must not be an empty string","d":"The \\u0022{0}\\u0022 object cannot be used because it has been disposed.","c":"Invalid version string: \\u0022{0}\\u0022","j":"Cannot consume services because the scope is not finished yet","k":"Cannot consume services during ServiceScope autocreation","i":"The ServiceScope is already finished","l":"Cannot register service because the scope is already finished","m":"The service key \\u0022{0}\\u0022 has already been registered in this scope","o":"INNERERROR:","n":"CALLSTACK:","p":"LOGPROPERTIES:"}')}.,822:e=>{e.exports=JSON.parse('{"a":"A source with id \
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):184541
                                                                                                                                                                                                                                                                          Entropy (8bit):5.525066298238319
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:eQJgEeDNMzE2w0mRmQsXhrbrYYcHZDFNwP3AWx1BomKbT7SiPRu/8vRKBMS:SLDNao7mVXhrbr1YZDFNw/9omKbcBp
                                                                                                                                                                                                                                                                          MD5:181554C4C481FEF68BA5338CF9848C91
                                                                                                                                                                                                                                                                          SHA1:AF5414B1FDA1A8D1878C8645C6B3ED97ADC8BA50
                                                                                                                                                                                                                                                                          SHA-256:45740FC235801D70B653F80DE6B729F9455E1763B7389C9968D7CE09617366AC
                                                                                                                                                                                                                                                                          SHA-512:8ECB98FB672C40C97D1FBDC2230E5A3656BCE96A8B92437F926C5EC843418B54991E5FA3762A86F4949BA797967CD478D350C61C8BB2AC03D64E52F1CC5DB0B4
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise.public.cdn.office.net/wise/owl/owl.slim.ab837f2adcf05cbb8e21.js
                                                                                                                                                                                                                                                                          Preview:var Microsoft;!function(){"use strict";var t,e,n,o,i={3045:function(t,e,n){n.d(e,{h:function(){return s}});var o=n(72379),i=n(14521),r=n(39292),s=function(t){function e(){var e=null!==t&&t.apply(this,arguments)||this;return e.value=null,e.hasNext=!1,e.hasCompleted=!1,e}return o.C6(e,t),e.prototype.U=function(e){return this.hasError?(e.error(this.thrownError),r.y.EMPTY):this.hasCompleted&&this.hasNext?(e.next(this.value),e.complete(),r.y.EMPTY):t.prototype.U.call(this,e)},e.prototype.next=function(t){this.hasCompleted||(this.value=t,this.hasNext=!0)},e.prototype.error=function(e){this.hasCompleted||t.prototype.error.call(this,e)},e.prototype.complete=function(){this.hasCompleted=!0,this.hasNext&&t.prototype.next.call(this,this.value),t.prototype.complete.call(this)},e}(i.B7)},44739:function(t,e,n){n.d(e,{t:function(){return s}});var o=n(72379),i=n(14521),r=n(46624),s=function(t){function e(e){var n=t.call(this)||this;return n.N=e,n}return o.C6(e,t),Object.defineProperty(e.prototype,"val
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2459
                                                                                                                                                                                                                                                                          Entropy (8bit):5.154508783478526
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:YovlWPqvlBLyyHkYyqISOvgDdZytvfP6fREuv+REuoEgukXX1I1SOVyHkYyqISON:9aC6MPISOvgDHUa5Fkb+aXMPISOvgDHa
                                                                                                                                                                                                                                                                          MD5:1AA034E4824550A904B175C5DC5F9C2F
                                                                                                                                                                                                                                                                          SHA1:FF7B6CFC4C79D8693BFEECA223305EAA97A74776
                                                                                                                                                                                                                                                                          SHA-256:CE01710227B6B38336A79EF187AB1649F7F1B2D65F2897E84ADCFA946C98E699
                                                                                                                                                                                                                                                                          SHA-512:F972300CCF737AFE6B84C0D361770BD7C02C975070C82703457B69706EE64DC917EEDDDAD37F304198DBFCB54216E38265BB66104C2DCB6CF141E150FDE794FB
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://admin.microsoft.com/admin/api/uxversion?bldVer=v1
                                                                                                                                                                                                                                                                          Preview:{"floodgate":{"cdnUrl":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/","loaderSpec":{"type":"scriptUrl","content":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/floodgate.en.bundle.js"},"version":"2025.3.20.2"},"ariaLoggerId":"ea84b6a3285140258eaeb7caaab5884a-9d3ca75b-b3ee-42b8-a22c-ab0759ad4d38-7330","euAriaLoggerId":"","hostingAppUrls":"{\"M365AdminPortal\":\"https://admin.microsoft.com\",\"EXOAdminPortal\":\"https://admin.exchange.microsoft.com\",\"SPOAdminPortal\":\"https://admin.microsoft.com/sharepoint\",\"TeamsAdminPortal\":\"https://admin-int.teams.microsoft.net/\",\"MSGraphEndPoint\":\"https://graph.microsoft.com\",\"CDNContentURL\":\"https://res.cdn.office.net/admincenter/admin-content\",\"AriaLoggerGlobalCollectorEndpoint\":\"https://mobile.events.data.microsoft.com/Collector/3.0\",\"AriaLoggerEUCollectorEndpoint\":\"https://eu-mobile.events.data.microsoft.com/Collector/3.0\",\"AriaLoggerId\":\"ea84b6a3285140258eaeb7caaab5884a-9d3ca75b-b3ee-4
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (581)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2372414
                                                                                                                                                                                                                                                                          Entropy (8bit):5.686417084420449
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:49152:pPSseYNUgckvB6FqxWjn/OIRc9Q1Lgh1dqTwbVoJv2Qb4cEwxelmCInpb889k8bK:msq629vxU
                                                                                                                                                                                                                                                                          MD5:E043EB9C1D32A24A3BF431E92D2FF2CF
                                                                                                                                                                                                                                                                          SHA1:A09BD6A5913B0802A4C25E02C3A8B5B67BB97750
                                                                                                                                                                                                                                                                          SHA-256:CF609DA186D4129359E0455B9A6568DEADCBECD2C3732EB81E2F4014A88BF4F0
                                                                                                                                                                                                                                                                          SHA-512:CC61279DBF672148E3C89A7EDAB4B9B4938C3AFC6A346CD757A66854AFF464DDABF701C6FC3ECA54F06823F299A4FA05BF85AD58D9E4BF1D50798C99A62C81BB
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hE0C50EAA85571CEA_App_Scripts/OneNoteDS.box4.dll1.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.dullscriptWebpackJsonp=globalThis.dullscriptWebpackJsonp||[]).push([[1],{6011:function(Fa,Ya,J){J.d(Ya,{a:function(){return ca}});Fa=J(100);var Ca=J(43792),Ja=J(76487),Ua=J(20502),E=J(33797),L=J(62280),d=J(60629),h=J(51647),k=J(37296),l=J(21207),r=J(85832),t=J(29486),m=J(24378),x=J(37693),z=J(38555),u=J(12472),B=J(42007),F=J(94925),D=J(25409),C=J(75343),I=J(79758),M=J(66203),K=J(38756),R=J(38407),T=J(50952),v=J(70744),N=J(55619),Q=J(10166),S=J(97033),O=J(42155);class da{constructor(){this.pressure=.this.pageY=this.pageX=this.y=this.x=0}}(0,Fa.a)(da,"InkPacket",null,[]);var X=J(3581),Z=J(62090),aa=J(78006),ta=J(65001),ja=J(25164);class ca{static get xxc(){return L.a.instance.resolve("OneNote.IInkEditor")}static get E2(){return d.FocusManager.instance()}static get adb(){return ca.ze||(ca.ze=L.a.instance.resolve("Box4.ICaretPositionManager"))}static get Ita(){return ca.Za||(ca.Za=L.a.instance.resolve("Box4.ICevViewContentManager"))}static gs(){return ca.Bh||(ca.Bh=L.a.instance
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (59898)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):59941
                                                                                                                                                                                                                                                                          Entropy (8bit):5.311598774703625
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:IPPHejerinTnQHRFeyw+WUBr0ptQI3x6IUBuDiBpDu:N7E2yL30r3/bDi6
                                                                                                                                                                                                                                                                          MD5:3BCD5F6C3F32B073154E16A041E6954D
                                                                                                                                                                                                                                                                          SHA1:DB8CAE942B2C44095AC458BEC3541BBB244D232B
                                                                                                                                                                                                                                                                          SHA-256:A31A0667D27212B9BFAFB62F77B219F689E04B302980200B27F0D0D796C5AE18
                                                                                                                                                                                                                                                                          SHA-512:53AB4BD01002D817880FC810DCFE5CEB79EC32A6F86BCBA52CABF42B9570ACDBCA9B2214C598F41146CDD038F499533B13FB1FAC3975EBDA4855BAE7CB255FC9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hA31A0667D27212B9_App_Scripts/wp5/wacBootNew.min.js
                                                                                                                                                                                                                                                                          Preview:var wacBoot;!function(){"use strict";var e,t,n={},i={};function s(e){var t=i[e];if(void 0!==t)return t.exports;var o=i[e]={exports:{}};return n[e](o,o.exports,s),o.exports}s.m=n,s.d=function(e,t){for(var n in t)s.o(t,n)&&!s.o(e,n)&&Object.defineProperty(e,n,{enumerable:!0,get:t[n]})},s.f={},s.e=function(e){return Promise.all(Object.keys(s.f).reduce((function(t,n){return s.f[n](e,t),t}),[]))},s.u=function(e){return"pasLogger.min.js"},s.g=function(){if("object"==typeof globalThis)return globalThis;try{return this||new Function("return this")()}catch(e){if("object"==typeof window)return window}}(),s.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},e={},t="wacBoot:",s.l=function(n,i,o,a){if(e[n])e[n].push(i);else{var r,l;if(void 0!==o)for(var c=document.getElementsByTagName("script"),d=0;d<c.length;d++){var u=c[d];if(u.getAttribute("src")==n||u.getAttribute("data-webpack")==t+o){r=u;break}}r||(l=!0,(r=document.createElement("script")).charset="utf-8",r.timeout=120,s.nc&&r.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 102 x 102, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1922
                                                                                                                                                                                                                                                                          Entropy (8bit):7.799930090275787
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:cENciM7PxxsRcCzKzVT0waLFE8ASYXamdHN:cENIgiCSVT0EJSYXamdt
                                                                                                                                                                                                                                                                          MD5:D212459353E8FD1D2514C77703D44F1F
                                                                                                                                                                                                                                                                          SHA1:A0CABB548A218E87FBCB4D4ADDEA47068A4288D3
                                                                                                                                                                                                                                                                          SHA-256:7AD89A907BFE47019D905B92D0C203082AA75852D39B480E6FBE1718A8EA3647
                                                                                                                                                                                                                                                                          SHA-512:8AA0C6904EFE31A38B2A52F05F79153D933BC48C028D18C110F59089D0EB7EAF2D97E84A42F81BAA8906AFD2BBD8C895FE53D8E998A4417422B97497556E1B7D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/m2/box43.png
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...f...f.....9..b...IIDATx^.ml.E..o.E..........B....'_$..&.&.....h....A..4......[..........]iC..h1.HjE.......K&......>....<3;{._......X$..T\\(.o..#..2K....g.....Oe...C..`..p..ee%...g`.e.8....b.k.c.P.:B.tv^W..2RW.,.g.j.........y..i....2.P.....T.G...Z..5.......5H..?.H...P...9..(.h.....p}..9.tS0.......q}..`pWFK..9..(....8.......L..]O..z<.%.".4..Lj:F....4.............@..s$../bux.N.%.`..$IN...%'{#.....<..]|....0..AYt..CDI..$...=....H)..W>.>.+G>....1b........(..1?R.A...Q...C`...X...C..q]..&.........."~.o~0.P....~(|`..^Ph......"....P.]._U0.....k.t....e.%.y3......C`.{...._$..'....k.5..J.`R........'.A....0..P(4......g...m...Z.d.I...Q.QbA..f._.nm...".....K...Cw4...k..F.e..=~..d....|s.....`.V.*..`....j..ww....-..V....f.......C...6v...p.9Y..h..Wj]..._`......Z..G.m.?..*..w)...~...(.....=a=.]a.+R...5.`.H$..D..ehW...@..2..#..j..T.w...c..T.w...#~....e........e.k.....C.c..e.F.2.`..j..1._:....o_,.j:.!0...%....9..c.......OY0.;....0|.U>.@`...
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (11712), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):11712
                                                                                                                                                                                                                                                                          Entropy (8bit):4.98085336112849
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:cHGtlNF+JzgGuA3pNvWAPsYmiT398yRFXiBpiiBlVIkslsunbe4uGfEinAMj9fsN:T/kpldNhVVimx+8mkKDypJfJeJjxQSlT
                                                                                                                                                                                                                                                                          MD5:0C9C05836733B98DF095BB63535A76D2
                                                                                                                                                                                                                                                                          SHA1:E538F5ADD76CBA091CEFBAB616ADA524075D3BAF
                                                                                                                                                                                                                                                                          SHA-256:95BF883FB88CD8006A42E6CAAA1277B1AB57B16E8E3703F832986B4EEB5589FF
                                                                                                                                                                                                                                                                          SHA-512:CDBB377B151C7EFCBD8BAD42E78748D204EC9A1A2E757F0820698D1E8E9F4E5BB051816E52F5631966DAEF71BE25D30F3F25CBB44D34FBE26FBF0762E6AF2E92
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/osfruntime_strings.js
                                                                                                                                                                                                                                                                          Preview:Type.registerNamespace("Strings");Strings.OsfRuntime=function(){};Strings.OsfRuntime.registerClass("Strings.OsfRuntime");Strings.OsfRuntime.L_ActivateAttempLoading_ERR="This add-in may not load properly, but you can still try to start it.";Strings.OsfRuntime.L_ActivateAttempLoading_ERR_FirstParty="This feature may not load properly, but you can still try to start it.";Strings.OsfRuntime.L_ActivateButton_TXT="Start";Strings.OsfRuntime.L_AddinCommands_AddinNotSupported_Message="Your add-in manifest is not valid.";Strings.OsfRuntime.L_AddinCommands_LearnMore_Link="Learn more.";Strings.OsfRuntime.L_AddinsCatalogIframeTitle_TXT="Office Add-ins catalog iframe";Strings.OsfRuntime.L_AgaveActivationError_ERR="Something went wrong and we couldn't start this add-in. Please try again later or contact your system administrator.";Strings.OsfRuntime.L_AgaveActivationError_ERR_FirstParty="Something went wrong and we couldn't start this feature. Please try again later or contact your system administrat
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):399
                                                                                                                                                                                                                                                                          Entropy (8bit):5.45028578898622
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12:Yq033PfmtiSFH41jDEpjh9QaarpHuS3SXR:Yq033Pe7FH49e/0Huos
                                                                                                                                                                                                                                                                          MD5:2581C9D94A1978DE88EDED0315503424
                                                                                                                                                                                                                                                                          SHA1:22CCAFEDBB367E5CFC01202E467E8998D2281862
                                                                                                                                                                                                                                                                          SHA-256:A4B44F08DB410FEBE28DD638D35F82E4C6A9E5E30EA719D093EFA42052B7293A
                                                                                                                                                                                                                                                                          SHA-512:F81F5A07D08231DDC1D3D92BC4B85D1CD53EF0A8B9560F668326C232E35EDD93B9EEFA433EDD4128EE86D108E0EC0EE2E7A89701B78C06C3E2A7F392FF38B774
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"OneShell":{"M365CopilotRebrandingEnabled":true,"UpdatedConsumerAppList":true,"M365StartEnabled":true,"DisableM365StartIntentsModule":false,"default":true},"Headers":{"ETag":"\"9btqTzDiElwLNfZkRp7wFewLNoXKAK6cxU5RSHQIYfE=\"","Expires":"Wed, 26 Mar 2025 13:54:13 GMT","CountryCode":"US","StatusCode":"200"},"ConfigIDs":{"OneShell":"P-R-1535312-4-8,P-R-1157040-4-8,P-R-1131228-4-17,P-D-1117449-1-4"}}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (1775)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):4228972
                                                                                                                                                                                                                                                                          Entropy (8bit):5.640894107932592
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:49152:m2RuDAeF/2QFGdMutLqaxUbchvrfCLYB3nHRHE7PSXrridpEORvC95KmzquDYdpQ:mIRjizAA1AADar
                                                                                                                                                                                                                                                                          MD5:3250DC1D762B2D799FEB36923501B1A5
                                                                                                                                                                                                                                                                          SHA1:A455CA420FA8D1E1AA9DDA5919461CCB895A38F5
                                                                                                                                                                                                                                                                          SHA-256:E0C50EAA85571CEAC36E987D80516A5AD9CD3930C46806A27A36290DB0D007EF
                                                                                                                                                                                                                                                                          SHA-512:F4B6D6FBC7B48D3C53C2E7294D333C032B13C43D3DA813C8C68DD517B6C4E1F602105D722039EF23CB7C672D7A1D17D7B8DB340F330514F208EAC4411D6B0B20
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hE0C50EAA85571CEA_App_Scripts/OneNoteDS.js
                                                                                                                                                                                                                                                                          Preview:/*. Microsoft Corporation. All rights reserved.. The buffer module from node.js, for the browser... @author Feross Aboukhadijeh <https://feross.org>. @license MIT. @license DOMPurify 2.5.7 | (c) Cure53 and other contributors | Released under the Apache license 2.0 and Mozilla Public License 2.0 | github.com/cure53/DOMPurify/blob/2.5.7/LICENSE ieee754. BSD-3-Clause License. Feross Aboukhadijeh <https://feross.org/opensource> Copyright (c) Microsoft Corporation and contributors. All rights reserved.. Licensed under the MIT License..*/.(function(){function Fa(E){var L=J[E];if(void 0!==L)return L.exports;L=J[E]={exports:{}};Ya[E].call(L.exports,L,L.exports,Fa);return L.exports}var Ya={3849:function(E,L,d){function h(O,da){return O.toLowerCase().localeCompare(da.toLowerCase())}function k(O){if(!O)return[];let da="";try{r(O).forEach(X=>{da+=String.fromCharCode(X)})}catch(X){da=l(O)}return da.split("\r\n").filter(X=>X)}function l(O){try{if(!/^[a-z0-9+/]+={0,2}$/i.test(O)||0!==O.length%4)
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (40217), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):40217
                                                                                                                                                                                                                                                                          Entropy (8bit):4.9024931307049915
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:N4kjOKvWptT2z2p9hmkNqJ3htY1xYhwn5n9tHhSa:YKOptT2Sp9A7htY1xYC5n9t
                                                                                                                                                                                                                                                                          MD5:1DAFFFC9A2BCC5A083C8C7FBF2063E36
                                                                                                                                                                                                                                                                          SHA1:677D520BFBDBE9A5CE87313E87676D2D7348C63E
                                                                                                                                                                                                                                                                          SHA-256:CAEFFA9E7ADAF6DD166789EAAAD0ADB8E34A66F5CF461F68536ED5820BBEEFCB
                                                                                                                                                                                                                                                                          SHA-512:A3B9577D100D12523C368C1E21D480D9868DEC60471A85847805EB20D284DE8DF903FA6CA6CFDF64B3F67D54516AE882EAC0FF5237BD56B26D569A6A8F86FCF3
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hCAEFFA9E7ADAF6DD_App_Scripts/1033/OneNoteIntl.js
                                                                                                                                                                                                                                                                          Preview:Type.registerNamespace("OneNoteIntl");OneNoteIntl.OneNoteStrings=function(){};OneNoteIntl.OneNoteStrings.registerClass("OneNoteIntl.OneNoteStrings");OneNoteIntl.OneNoteStrings.L_CloudFilesUploadSuccess="Successfully Uploaded : {0}";OneNoteIntl.OneNoteStrings.L_CloudFilesUploadFailed="Error Uploading : {0}";OneNoteIntl.OneNoteStrings.L_ContextMenuSmartLookup="Search";OneNoteIntl.OneNoteStrings.L_ContextMenuTextSmartLookup='Search "{0}"';OneNoteIntl.OneNoteStrings.L_BrowseVersions="Page Versions";OneNoteIntl.OneNoteStrings.L_Camera="Camera";OneNoteIntl.OneNoteStrings.L_CopyNotebook="Copy Notebook";OneNoteIntl.OneNoteStrings.L_HierarchySyncErrorMessage="The new experimental sync feature has experienced an error and your change may not be saved.";OneNoteIntl.OneNoteStrings.L_HierarchySyncErrorRefreshMessage="Please click here or refresh the webpage to resolve the issue.";OneNoteIntl.OneNoteStrings.L_CopyToCloudDescription="Edit and view this notebook on all your devices";OneNoteIntl.OneNot
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/production/10/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):283415
                                                                                                                                                                                                                                                                          Entropy (8bit):5.547534322979334
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:8oI53kZVa6iov0Ut5/KeIbWuwJqSfTewZIRWLo8s:M3kZVaUcUt5/KeIbWBfXyRV
                                                                                                                                                                                                                                                                          MD5:72F7B59D9E8F971A7FB2D227C9A17EA2
                                                                                                                                                                                                                                                                          SHA1:39B90E76A0000BD79D2FF102516ACF7DDFCBFA7B
                                                                                                                                                                                                                                                                          SHA-256:893B05BE697B7F64726498282D9860E4CD26A27341D66A1F59AF38402D69784D
                                                                                                                                                                                                                                                                          SHA-512:90A66EA3E0833A6753512E0ED821EC9BAC0C51FAEC456E75842FFF272093D5D7CD29CD9BF0C2D6A4081FBB92298A21AD2891676549178C588E78D1B2C499E8D7
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/js/suiteux.shell.plus.js
                                                                                                                                                                                                                                                                          Preview:var shellPerformance=window.performance,HighResolutionTimingSupported=!!shellPerformance&&"function"==typeof shellPerformance.mark;HighResolutionTimingSupported&&shellPerformance.mark("shell_plus_start"),(self["suiteux_shell_webpackJsonp_suiteux-main"]=self["suiteux_shell_webpackJsonp_suiteux-main"]||[]).push([["plus"],{14142:function(e,t,n){"use strict";var i;n.d(t,{f:function(){return i}}),function(e){e.depth0="0 0 0 0 transparent",e.depth4="0 1.6px 3.6px 0 rgba(0, 0, 0, 0.132), 0 0.3px 0.9px 0 rgba(0, 0, 0, 0.108)",e.depth8="0 3.2px 7.2px 0 rgba(0, 0, 0, 0.132), 0 0.6px 1.8px 0 rgba(0, 0, 0, 0.108)",e.depth16="0 6.4px 14.4px 0 rgba(0, 0, 0, 0.132), 0 1.2px 3.6px 0 rgba(0, 0, 0, 0.108)",e.depth64="0 25.6px 57.6px 0 rgba(0, 0, 0, 0.22), 0 4.8px 14.4px 0 rgba(0, 0, 0, 0.18)"}(i||(i={}))},66097:function(e,t,n){"use strict";n.d(t,{I:function(){return l}});var i=/[\(\[\{\<][^\)\]\}\>]*[\)\]\}\>]/g,a=/[\0-\u001F\!-/:-@\[-`\{-\u00BF\u0250-\u036F\uD800-\uFFFF]/g,o=/^\d+[\d\s]*(:?ext|x|)\s*\d
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):72
                                                                                                                                                                                                                                                                          Entropy (8bit):4.241202481433726
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YozDD/RNgQJzRWWlKFiFD3e4xCzY:YovtNgmzR/wYFDxkY
                                                                                                                                                                                                                                                                          MD5:9E576E34B18E986347909C29AE6A82C6
                                                                                                                                                                                                                                                                          SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                                                                                                                                                                                                                                          SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                                                                                                                                                                                                                                          SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (22692)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):428005
                                                                                                                                                                                                                                                                          Entropy (8bit):4.8865370136385
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:AsJOrFyMwFqwYDP3VefEWqldpPkTGzHx1AHLRobnRGV+Wqddp4sXfsXJsGC7ag/X:78rFnVUGmZxg6Q6GObjO
                                                                                                                                                                                                                                                                          MD5:F023714DA6A2E8F53727451FDAB798E8
                                                                                                                                                                                                                                                                          SHA1:9063A5B0DFDEA680D946B079D9AB0892CA97F5B2
                                                                                                                                                                                                                                                                          SHA-256:B2A1D4CE053BC18A5F5F0014351AAC760C6C92EC1AEC55F91A97D29196D6A0D2
                                                                                                                                                                                                                                                                          SHA-512:DA857E2AA25A82C1C19E52A5C72EA1769203C204CFCCDE53DC04ABCCEAD9FAA91B8A85DA5187AABB32D3AE010792FF3EF3BBFE92F24CFF9FC7BC4C9210D9F2B5
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/onenote-ribbon-intl.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";var OnenoteRibbonStrings={About:"About",AboutKeytip:"D",Accessibility:"Accessibility",AddInsKeytipPrefix:"Y",AdditionalControls:"Additional Controls",AlignLeft:"Align Left",AlignLeftKeytip:"AL",AlignRight:"Align Right",AlignRightKeytip:"AR",AltText:"Alt Text",AltTextKeytip:"E",AltTextTableStandalone:"Edit Table Alt Text",AudioTabTitle:"Record & Playback",AutoCorrectOptions:"AutoCorrect Options...",AutoCorrectOptionsKeytip:"AC",Automatic:"Automatic",AutomaticKeytip:"A",Back15Seconds:"Back 15 Seconds",Back15SecondsKeytip:"B",Bold:"Bold",BoldKeytip:"1",BrowseVersions:"Page Versions",BrowseVersionsKeytip:"V",BulletLibraryTitle:"Bullet Library",BulletStyle1:"Solid",BulletStyle1Keytip:"S",BulletStyle2:"Hollow",BulletStyle2Keytip:"H",BulletStyle3:"Square",BulletStyle3Keytip:"B",ButtonOfficeAddins:"Office Add-ins",CentimeterUnitPlaceholder:"{0} cm",Checklist:"Checklist",ChecklistKeytip:"CL",BulletedList:"Bulleted list",BulletedListKeytip:"BL",NumberedList:"Numbered list",NumberedL
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):146725
                                                                                                                                                                                                                                                                          Entropy (8bit):5.380763205028774
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:5fxye5UZECYRme6SNmGli0uuK1oCmGy9dhl231uwPt1P2:5fxyDRYRmwAa3h4zi
                                                                                                                                                                                                                                                                          MD5:EACCC1B2FD3A553813A22B790546429E
                                                                                                                                                                                                                                                                          SHA1:C05AE341443855B2834DFCB545E4DE2BC5A8ABCB
                                                                                                                                                                                                                                                                          SHA-256:49A7E1E1E583EADC935C174DB0A7128B9187DB337978CE97D33D6744EFACA45A
                                                                                                                                                                                                                                                                          SHA-512:756F76492A42AAE54E0C9CF1F48ED8773587AE006D3DF4D29CE723C952B8D487D4258E87F10E6EABE326EB2600AEF5AE1E11CA8660762DA94FFCC02F942DB035
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise.public.cdn.office.net/wise/owl/onenote-boot.4cd6acc29a3780b31c8a.js
                                                                                                                                                                                                                                                                          Preview:var Microsoft="object"==typeof Microsoft?Microsoft:{};Microsoft.Office=Microsoft.Office||{},Microsoft.Office.OneNote=function(t){var e={};function i(s){if(e[s])return e[s].exports;var o=e[s]={i:s,l:!1,exports:{}};return t[s].call(o.exports,o,o.exports,i),o.l=!0,o.exports}return i.m=t,i.c=e,i.d=function(t,e,s){i.o(t,e)||Object.defineProperty(t,e,{enumerable:!0,get:s})},i.r=function(t){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(t,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(t,"__esModule",{value:!0})},i.t=function(t,e){if(1&e&&(t=i(t)),8&e)return t;if(4&e&&"object"==typeof t&&t&&t.__esModule)return t;var s=Object.create(null);if(i.r(s),Object.defineProperty(s,"default",{enumerable:!0,value:t}),2&e&&"string"!=typeof t)for(var o in t)i.d(s,o,function(e){return t[e]}.bind(null,o));return s},i.n=function(t){var e=t&&t.__esModule?function(){return t.default}:function(){return t};return i.d(e,"a",e),e},i.o=function(t,e){return Object.prototype.hasOwnPro
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):80
                                                                                                                                                                                                                                                                          Entropy (8bit):4.773010557409425
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:mS/SJhnjiCkj7ui5T8IDqtUPlkk2SY:mS/SJhjhw7uiuIiLk2r
                                                                                                                                                                                                                                                                          MD5:FF55249D55143D5EB2DF396FA8A34EE8
                                                                                                                                                                                                                                                                          SHA1:D2B08C91DD9FCC8D49BAE85476308230D0BC591F
                                                                                                                                                                                                                                                                          SHA-256:216A9426D94326E483B2C11154DE2E303385366841111A4A3DAD5590FF89F0BC
                                                                                                                                                                                                                                                                          SHA-512:8C1608B6F69312D5BE76DFDBF4E762BA9B50CDE6BBDECA98274F965764F54465CA336EDD6DC7D76996D3DAEC4CB1D59FE5CFEB3B9EE1820E2771879D460A2DD5
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTM0LjAuNjk5OC4zNhInCftwJNe0MsE1EgUNibJV5RIFDdjY4LISBQ11LGDrIf8ne2UWGsfhEicJWaR8RJuwMawSBQ2JslXlEgUN2NjgshIFDXUsYOsh_yd7ZRYax-E=?alt=proto
                                                                                                                                                                                                                                                                          Preview:ChsKBw2JslXlGgAKBw3Y2OCyGgAKBw11LGDrGgAKGwoHDYmyVeUaAAoHDdjY4LIaAAoHDXUsYOsaAA==
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (64817)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):766491
                                                                                                                                                                                                                                                                          Entropy (8bit):5.273660115780108
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:h19A7lfCfv4dWO9mriRtw1b8cWLPcxD23NX6Jp9h63NjasUCw+Nn+S0nVk3oxS/b:voLSDcc4Frh
                                                                                                                                                                                                                                                                          MD5:BA506BA37DF84AD3BC301087429CA852
                                                                                                                                                                                                                                                                          SHA1:B091D579CE4A11711FA7E2A1C273CC65CCE144BE
                                                                                                                                                                                                                                                                          SHA-256:79AF9119ADFD9A09BF664440A9FB2CBBADBB89093FCB03C8C3F629559AD529FB
                                                                                                                                                                                                                                                                          SHA-512:7DBDCAE15B8F730E8B681C79106CA2F4F0157EC41AEB85A5F96C46FFF38E69944F8207AB355E6099C820CC5959DF1932F62C54E81F0C59A0B8CA56A27DDD8F2D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/osfruntime_ono.js
                                                                                                                                                                                                                                                                          Preview:/* Office runtime JavaScript library */../*..Copyright (c) Microsoft Corporation. All rights reserved..*/.../*. Your use of this file is governed by the Microsoft Services Agreement http://go.microsoft.com/fwlink/?LinkId=266419... This file also contains the following Promise implementation (with a few small modifications):. * @overview es6-promise - a tiny implementation of Promises/A+.. * @copyright Copyright (c) 2014 Yehuda Katz, Tom Dale, Stefan Penner and contributors (Conversion to ES6 API by Jake Archibald). * @license Licensed under MIT license. * See https://raw.githubusercontent.com/jakearchibald/es6-promise/master/LICENSE. * @version 2.3.0.*/.var __extends=this&&this.__extends||function(){var e=function(t,n){return e=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var n in t)Object.prototype.hasOwnProperty.call(t,n)&&(e[n]=t[n])},e(t,n)};return function(t,n){if("fu
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (63604)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):130560
                                                                                                                                                                                                                                                                          Entropy (8bit):5.272245687496742
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:mh8VvaIdNDxIQxI4QAQuBqCELdzQBy0uR6OndP1:mh8VyIWLdcov4Ondd
                                                                                                                                                                                                                                                                          MD5:ACDFECB80B06F30C59B48F9B2140E6F5
                                                                                                                                                                                                                                                                          SHA1:C46873F855BDABF9943DA278813B53B4DD6FB6D6
                                                                                                                                                                                                                                                                          SHA-256:CA46523D06A57712685B5C6B01430B530FE76F8FD5803179FCAA3466770E93A0
                                                                                                                                                                                                                                                                          SHA-512:9BD579F55596F100C7A3723AE2345F3C43785BAF0576BFB5060F495FC8B7CCA3BD9FB43EA71B6F39FB68DFA82B80239A862E8186AD2956F2D4DFE1C971BEF293
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/sp-client/odsp.react/odsp.react.lib-9ea4d016.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see odsp.react.lib-9ea4d016.js.LICENSE.txt */.(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([["odsp.react.lib"],{react_340:function(e){"use strict";var t=Object.getOwnPropertySymbols,n=Object.prototype.hasOwnProperty,a=Object.prototype.propertyIsEnumerable;function i(e){if(null==e)throw new TypeError("Object.assign cannot be called with null or undefined");return Object(e)}e.exports=function(){try{if(!Object.assign)return!1;var e=new String("abc");if(e[5]="de","5"===Object.getOwnPropertyNames(e)[0])return!1;for(var t={},n=0;n<10;n++)t["_"+String.fromCharCode(n)]=n;if("0123456789"!==Object.getOwnPropertyNames(t).map(function(e){return t[e]}).join(""))return!1;var a={};return"abcdefghijklmnopqrst".split("").forEach(function(e){a[e]=e}),"abcdefghijklmnopqrst"===Object.keys(Object.assign({},a)).join("")}catch(e){return!1}}()?Object.assign:function(e,r){for(var o,s,c=i(e),d=1;d<arguments.length;d++){for(var l in o=Object(arguments[d]))n.ca
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (30497), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):30497
                                                                                                                                                                                                                                                                          Entropy (8bit):5.0064253326064065
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:NpM3QZmZwe3CDLqHOGRvCEWMYdd9KaAQnzkY65dv:NpM3QZbLqHO4XYdd9KvQnzkY65dv
                                                                                                                                                                                                                                                                          MD5:E55F3C2F2F2F2A339E4B0A08030E9803
                                                                                                                                                                                                                                                                          SHA1:729D608C534829E07F5DCDBBD75BBC031A9E9D9A
                                                                                                                                                                                                                                                                          SHA-256:40CBE329851D4261E0E4A3B3665FD1025747AAC3CBFD87689CF3F2689CACF4E9
                                                                                                                                                                                                                                                                          SHA-512:CB67A880ECAA6F59844F6604BB98A7E27AB64F639AC79BA683C164A2A809BFAF1D3B224CC50138846B8646EF05409820AEE490BA83D637145E16A78E67CF4847
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h40CBE329851D4261_App_Scripts/1033/WoncaIntl.js
                                                                                                                                                                                                                                                                          Preview:Type.registerNamespace("WoncaIntl");WoncaIntl.WoncaStrings=function(){};WoncaIntl.WoncaStrings.registerClass("WoncaIntl.WoncaStrings");WoncaIntl.WoncaStrings.L_RibbonLabel="Ribbon";WoncaIntl.WoncaStrings.L_TabHome="Home";WoncaIntl.WoncaStrings.L_TabInsert="Insert";WoncaIntl.WoncaStrings.L_TabWordDesign="Design";WoncaIntl.WoncaStrings.L_TabReferences="References";WoncaIntl.WoncaStrings.L_TabMailings="Mailings";WoncaIntl.WoncaStrings.L_TabReview="Review";WoncaIntl.WoncaStrings.L_TabView="View";WoncaIntl.WoncaStrings.L_TabDeveloper="Developer";WoncaIntl.WoncaStrings.L_TabAddIns="Add-ins";WoncaIntl.WoncaStrings.L_TabTableTools="Table Tools";WoncaIntl.WoncaStrings.L_TabLayout="Layout";WoncaIntl.WoncaStrings.L_TabPictureTools="Picture Tools";WoncaIntl.WoncaStrings.L_TabFormatPicture="Format";WoncaIntl.WoncaStrings.L_TabDesign="Design";WoncaIntl.WoncaStrings.L_TabHelp="Help";WoncaIntl.WoncaStrings.L_GroupUndoRedo="Undo";WoncaIntl.WoncaStrings.L_GroupClipboard="Clipboard";WoncaIntl.WoncaString
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (33654)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):33712
                                                                                                                                                                                                                                                                          Entropy (8bit):5.312964320999572
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:jTkTStDd+8hoLE+Ye92stIminlpqPe3+KAXNGeOstcnk8DSyCO:DIStOHDo
                                                                                                                                                                                                                                                                          MD5:B6E215C559C24CAFD09273E9BFAFD357
                                                                                                                                                                                                                                                                          SHA1:ECCF0B92955DACEAF6FAD3A9DE7C36EB65B341CB
                                                                                                                                                                                                                                                                          SHA-256:DAF0C5F563BBD6915BEA269FA160B52176BAE7AA972FFA7F0D9345165A4825F3
                                                                                                                                                                                                                                                                          SHA-512:06FDF7EC3F675C5B458F16E206FE8F64624A3046531EA5484C72CA58136D449DF1638B9AE9CD78C0E355A4A05D373E18D89F96743CCAFF5700DECD1BD52620E9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hDAF0C5F563BBD691_App_Scripts/healthSmallOffline.worker.min.js
                                                                                                                                                                                                                                                                          Preview:!function(e){var t={};function i(s){if(t[s])return t[s].exports;var r=t[s]={i:s,l:!1,exports:{}};return e[s].call(r.exports,r,r.exports,i),r.l=!0,r.exports}i.m=e,i.c=t,i.d=function(e,t,s){i.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:s})},i.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},i.t=function(e,t){if(1&t&&(e=i(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var s=Object.create(null);if(i.r(s),Object.defineProperty(s,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var r in e)i.d(s,r,function(t){return e[t]}.bind(null,r));return s},i.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return i.d(t,"a",t),t},i.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},i.p="",i(i.s=0)}([function(e,t,i){"use strict";var s;function r(e){if(!e)return;const t={};return e.forEac
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):175719
                                                                                                                                                                                                                                                                          Entropy (8bit):4.255303968193695
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:0hEjBUBvBrBXBWBIBXBXBaBIBQBbBnBgAfBRBbB3BjBTBDBvBHBPBPBxBBBHB6ST:/RYAQ+
                                                                                                                                                                                                                                                                          MD5:9CFEFB2D46D6102DAC2A24C606F47FEA
                                                                                                                                                                                                                                                                          SHA1:076B63F4F46CE28648201E2507BBC67FB4F990C5
                                                                                                                                                                                                                                                                          SHA-256:43C5939CB732D8AA2D20FCE97F359F46B7C3B937E60ED576B752AE0A2E73314F
                                                                                                                                                                                                                                                                          SHA-512:C56812F0A9DCBC53E8AFA542923F20E911DE172C1D87B9868DB42A01F2FC303BBECE6509925E43E8F877DC8A3C7904FAE731C1C19BD35B5FAD18582B7498E24D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/OfficeExtension.WacRuntime.js
                                                                                                                                                                                                                                                                          Preview:var __extends = (this && this.__extends) || (function () {.. var extendStatics = function (d, b) {.. extendStatics = Object.setPrototypeOf ||.. ({ __proto__: [] } instanceof Array && function (d, b) { d.__proto__ = b; }) ||.. function (d, b) { for (var p in b) if (b.hasOwnProperty(p)) d[p] = b[p]; };.. return extendStatics(d, b);.. };.. return function (d, b) {.. extendStatics(d, b);.. function __() { this.constructor = d; }.. d.prototype = b === null ? Object.create(b) : (__.prototype = b.prototype, new __());.. };..})();..var OfficeExtension;..(function (OfficeExtension) {.. var WacRuntime;.. (function (WacRuntime) {.. var ApiFlags;.. (function (ApiFlags) {.. ApiFlags[ApiFlags["none"] = 0] = "none";.. ApiFlags[ApiFlags["restrictedResource"] = 4] = "restrictedResource";.. ApiFlags[ApiFlags["makerSafe"] = 128] = "makerSafe";.. ApiFlags[ApiFlags["excludedF
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 452 x 444, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):51120
                                                                                                                                                                                                                                                                          Entropy (8bit):7.954718383506729
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:fAXURb/VRlg/u3OD+RerLnSFFFCX8iarUMpu:f/VNfO2Ocerbdv/Mpu
                                                                                                                                                                                                                                                                          MD5:ECA50172A6583B16E553E9917FB710FB
                                                                                                                                                                                                                                                                          SHA1:2FD7FB2FF5C10E17E9066CE6BD2393E1F6B93CC0
                                                                                                                                                                                                                                                                          SHA-256:FFF5919A2CBACEAE0528522B6C73E4F1D549CA8EE13C680B50ED377DFD2B61F0
                                                                                                                                                                                                                                                                          SHA-512:1E7591A35DE7C00A197C08F15BA9ED7A9014EFFEF03DB240A92B63F8A8EC8DAE8F02811C8E9696FA934E6C4EFCBBBA14F2D01082A63471092488850A2D16958B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/m2/one.png
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR.............@.....wIDATx^..xU......n{..W.;.:T.W-W......I..hD..V..U..P@..A.@H....-.HEF..."....."zE@.B......OY~..s.:{.=.....?{.....N~..z.w..............T.vmr.k.>=.....~.A.......#.q...u..=..I...gee6 .v---.$.".L..=W>kD.+@... ...z..yd...s...mhK..:.avvf._........F.N.........x...*.?.b.US.|~ii....W.V.w..-}|...n*//g..7..h..R.m{............X..+&U.....=...h.....B$../......*0lll.@.+..l....l.&.o.x9..7.Y.1{.....G...w..-}...>..u."....1h(n.t......m.....X.kIf .i..]...{A......+.g...m=....'//..k=..A|.v.8&.....!..>.}W.!.D.......s..x....w.a..Mr.....,P.KxII....5.~.>.%..1..1......y.P...w(..{..O ..n.V..Oh...iC[7.x...*.\..(..D.C...}....}..?...>%...".~0b..g.Yy...^.|./..+@.7.z.D.|*==.9.c....g..m|.]ZZ.^..b}b.....D..ly..3:.P.`BE.+.6..b....1..9...\.." ............7....]r.c.&."...-/.OJ6.........2.c.....pA.Z.................?.Z.x....r.E?`........}W>..c...g@i.."P.kUVQ/..^.........BQ....WguU.E...%1`@.F....}Uax..f..".`,.t..V .9.7..E...[Sm...y.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (36232), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):65764
                                                                                                                                                                                                                                                                          Entropy (8bit):5.346725859038425
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:ETarIzLYTfoY5iwkD9Hr09qZsOlcJoPBOmvmW7YeOeYRtbRcOMJGXX3FouZoGfx0:EOczSg4VezYrlcaPsP
                                                                                                                                                                                                                                                                          MD5:EF71578681CBED79F25EF0B287D3672F
                                                                                                                                                                                                                                                                          SHA1:A4EB44BCBBD783C6692B4743E9CAAD10FCC00B3C
                                                                                                                                                                                                                                                                          SHA-256:447B316534569AF83DB60613C61FD05BEC68AC617A8D68983D4CACA355EEBD75
                                                                                                                                                                                                                                                                          SHA-512:185B3ED5C2EF325EA9266218BC2C56A3CB7ACBCD4897F543691528BBF4065E8A97CB3C981FEDE973A34A079D40C135BF487DC9B158AC09873B5FDAAAE830838A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://appsforoffice.microsoft.com/lib/1.1/hosted/office.js
                                                                                                                                                                                                                                                                          Preview:var OSFPerformance;..(function (OSFPerformance) {.. OSFPerformance.officeExecuteStartDate = 0;.. OSFPerformance.officeExecuteStart = 0;.. OSFPerformance.officeExecuteEnd = 0;.. OSFPerformance.hostInitializationStart = 0;.. OSFPerformance.hostInitializationEnd = 0;.. OSFPerformance.totalJSHeapSize = 0;.. OSFPerformance.usedJSHeapSize = 0;.. OSFPerformance.jsHeapSizeLimit = 0;.. OSFPerformance.getAppContextStart = 0;.. OSFPerformance.getAppContextEnd = 0;.. OSFPerformance.createOMEnd = 0;.. OSFPerformance.officeOnReady = 0;.. OSFPerformance.hostSpecificFileName = "";.. function now() {.. if (performance && performance.now) {.. return performance.now();.. }.. else {.. return 0;.. }.. }.. OSFPerformance.now = now;.. function getTotalJSHeapSize() {.. if (typeof (performance) !== 'undefined' && performance.memory) {.. return performance.memory.totalJSHeapSize;.. }..
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (11665), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):11665
                                                                                                                                                                                                                                                                          Entropy (8bit):5.435021033478464
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:MFiBre+1RPmTJY8SCP3jEpGfB7/h1px1K75hJdYZhbhibcm/+fhpl02pML1DaLCF:eiBre+1ZyOkp3x1oJdYZhli4mWfDlRGn
                                                                                                                                                                                                                                                                          MD5:3405AD044FDE1ECEA266736C8AA1EC7F
                                                                                                                                                                                                                                                                          SHA1:A695E0D6EB58F7F7E88B976363DC6F514CC26357
                                                                                                                                                                                                                                                                          SHA-256:E9E564F8719A973AB28848B490F4ADE7254B249E21B80990C3BA56EFAB69DCEC
                                                                                                                                                                                                                                                                          SHA-512:B04926C5FADF63B82127FDFC3C5FACC228F5E157C57188BA4FD540901F31E7F72ABAFEB4719557E0F32B57F8C97102BA1C8279D4408B3944468D46904EE06B51
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/js/suiteux.shell.consappdata.js
                                                                                                                                                                                                                                                                          Preview:var shellPerformance=window.performance,HighResolutionTimingSupported=!!shellPerformance&&"function"==typeof shellPerformance.mark;HighResolutionTimingSupported&&shellPerformance.mark("shell_consappdata_start"),(self["suiteux_shell_webpackJsonp_suiteux-bootstrapper"]=self["suiteux_shell_webpackJsonp_suiteux-bootstrapper"]||[]).push([["consappdata"],{9227:function(e,o,t){t.r(o),t.d(o,{loadConsumerAppData:function(){return _}});var l=t(6968);const n="auth=1";function s(e,o,t,l,s,r){const i=encodeURIComponent(o),a=s?encodeURIComponent(s):"",h=s?"login_hint="+a:void 0,m="https://www.microsoft365.com",u="https://outlook.com";let p=h?u+"?"+h:u;const f="https://outlook.live.com/calendar/";let d=h?f+"?"+h:f;const S="https://onedrive.live.com";let g=h?S+"?"+h:S;const w=m+"/launch/word?"+["username="+i,n].join("&");let C=h?w+"&"+h:w;const _=m+"/launch/excel?"+["username="+i,n].join("&");let O=h?_+"&"+h:_;const P=m+"/launch/powerpoint?"+["username="+i,n].join("&");let E=h?P+"&"+h:P;let y="https:/
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):31697
                                                                                                                                                                                                                                                                          Entropy (8bit):5.170379053857505
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:p/cdq+3tbkU+jWu2gxhXWNKltKPtDVkDPwDxpb6ofYft6ZmL0A0iAYyKZ+D1EfV1:H+36v1gil6RVY/62zw14QGdn/h
                                                                                                                                                                                                                                                                          MD5:9BAE2967CC03DE6F6C486461920ADF9B
                                                                                                                                                                                                                                                                          SHA1:E253B3EBE397A05BCB1B9FDB48DBCD22DAE89A5A
                                                                                                                                                                                                                                                                          SHA-256:B60CDCC4224FE94C138B4BFA56A0433FFB5E10DCC10A89D82233ABA87610BBC5
                                                                                                                                                                                                                                                                          SHA-512:0D991DC74C3879C1A6B0841543BA8D5EE67ADD50234A25B690C8739ADD72E4ADB8940470C06DBAED99C0D5DB38C30167759E8AD40222FDABE69016D2143234A9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"Architecture":1,"Audience":0,"Resources":{"Version":"1.20250317.1.0","CatalogXml":"<ResourceCatalog>\r\n <Resources>\r\n <Resource Key=\"_store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d\" Type=\"LTRRTLPath\">\r\n <RTLPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d.21872e03b6d693d5a73d.rtl.js</RTLPath>\r\n <LTRPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d.21872e03b6d693d5a73d.js</LTRPath>\r\n </Resource>\r\n <Resource Key=\"_store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-bcf27c\" Type=\"LTRRTLPath\">\r\n <RTLPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-bcf27c.abaea5ac1a02d546a7db.rtl.js</RTLPath>\r\n <LTRPath>suiteux.shell._store_mecontrol-fluent-we
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):109
                                                                                                                                                                                                                                                                          Entropy (8bit):4.66560738606782
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YmEoEMCL2RH2hAcBQMh0wVWu+xJs/FEH2MmRJBUn:YmEoYL2HuAJW0m+sNb2n
                                                                                                                                                                                                                                                                          MD5:B22CAC36842DCB642F5BFF86C0FF2FB9
                                                                                                                                                                                                                                                                          SHA1:7F0557D5258453F55C1DB5DD40AB7F1C31932655
                                                                                                                                                                                                                                                                          SHA-256:E25ABD11267B28557444D53A9A3BF52A796DF20A14205FDE0B19C6B8287976B3
                                                                                                                                                                                                                                                                          SHA-512:D991A7C2B5552EF795F01450BEB8FE91785FAB87DD53361AD4048972BADB46180966120B0EF42B647654DE6CB8E8DF6D13EFDC2C170CB498FD8DBAC63629ADAC
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://messaging.engagement.office.com/campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2
                                                                                                                                                                                                                                                                          Preview:{"CampaignContent":{"campaigns":[]},"DynamicSettings":{"TmsLoadTimeout":3000,"TeachingMessageCooldown":3600}}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):3997
                                                                                                                                                                                                                                                                          Entropy (8bit):4.374342286133974
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:z/VXGWSAWPHMScQhlsg7uECJYU1GTmhI4U3odG393oP:z/oWrwHSQhtw6TTj73I
                                                                                                                                                                                                                                                                          MD5:3D855E5E95D318E5A871F04134974609
                                                                                                                                                                                                                                                                          SHA1:88A33B3064ACDB1A204B297F9505C9801918655A
                                                                                                                                                                                                                                                                          SHA-256:9CF3F4F0392744CBBFDC04B13649DD4D2E2E9F4F6EC627DBA2E1ABDE30C525A9
                                                                                                                                                                                                                                                                          SHA-512:B88D2257E31FAE7DA7131E341FD3D8FF3A31E7D58581B67A571FD633997A3B491A4EC86E14F8A252147DDE4F540BBC02DD03EB079EF2B17D9CF24D5D5F6E1547
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://onenote.officeapps.live.com/o/AppSettingsHandler.ashx?app=OneNote&usid=6e978169-98b0-08db-1683-11f39403677b&build=
                                                                                                                                                                                                                                                                          Preview:{"timestamp":1742993672748,"BootstrapperUlsHeartBeatIsEnabled":false,"EnableCommonHostDiagnosticsParams":true,"ShouldLogJsApiKpisForWord":true,"EnableFramePageErrorReportingForWord":false,"EnableWordSessionRefreshTelemetry":false,"EnableWordSessionRefreshLoggingCleanup":false,"BootstrapperSettingsFetchPeriod":60000,"BootstrapperUlsHeartbeatIntervalMs":5000,"BootstrapperMaxUlsHeartbeatTime":600000,"BootstrapperNoCompleteWarning1Time":30000,"BootstrapperNoCompleteWarning2Time":120000,"BootstrapperNoCompleteWarning3Time":180000,"BootstrapperUlsUploadCadenceMs":60000,"WordRefreshTelemetryExpirationInDays":7,"RequestedCallThrottlingDefaultToViewMinimumValue":"Major","RemoteUlsETag":"3446F01DD18F16CB80609621A6A1DCA89020D1DE","RemoteUlsSuppressions":"378069,1671813,2208151,2209344,3249545,3290144,4273285,4285850,4298965,4298968,4298969,4751696,5018275,5306497,5904476,6375195,6572226,6948167,7463498,8194017,8458642,16799123,17044289,17085210,17085216,17162522,17358857,17387682,19214611,1924347
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (49862)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1351423
                                                                                                                                                                                                                                                                          Entropy (8bit):5.488447365559582
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24576:CDvpttZwJbhTJrSK4VxjPHRYOI+AmOkmMOkxCzaXkJTAjucy2jGfQHe3Jl6tyP7R:CDvpttZwJbhTJrSK4VxjPHRYOI+AmOk6
                                                                                                                                                                                                                                                                          MD5:8159AC3FABD8E0AEA01A520613C1304E
                                                                                                                                                                                                                                                                          SHA1:631910E798D557F86C75F1CA2619E04D330B34C4
                                                                                                                                                                                                                                                                          SHA-256:E3798436B5E90451D03A5DDFFF213F65C44AD04878D02212A4E823EFB6F2767D
                                                                                                                                                                                                                                                                          SHA-512:0E150BCA6F293D1C5A2797E01AE175307ABBCB679C0280633E9E316ED6179AF9BCDA27D3DA3D7550A78061745E4BD30728C7850C39CCD70742D4D2A7BB7E9C4C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/floodgate.en.bundle.js
                                                                                                                                                                                                                                                                          Preview:(()=>{var e,t,r,n,o,a={113:(e,t,r)=>{"use strict";var n;r.d(t,{Bw:()=>d,Sk:()=>p,WL:()=>c});var o=r(5959),a=r(7308),i=r(7431),s=r(7986),l=r(7852),u=r(7252);function c(e,t){for(var i=[],s=2;s<arguments.length;s++)i[s-2]=arguments[s];var l=e;return l.isSlot?0===(i=a.Children.toArray(i)).length?l(t):l((0,o.Cl)((0,o.Cl)({},t),{children:i})):a.createElement.apply(n||(n=r.t(a,2)),(0,o.fX)([e,t],i,!1))}function d(e,t){void 0===t&&(t={});var r=t.defaultProp,n=void 0===r?"children":r;return function(t,r,s,c,d){if(a.isValidElement(r))return r;var h=function(e,t){var r,n;"string"==typeof t||"number"==typeof t||"boolean"==typeof t?((r={})[e]=t,n=r):n=t;return n}(n,r),p=function(e,t){for(var r=[],n=2;n<arguments.length;n++)r[n-2]=arguments[n];for(var o={},a=[],s=0,c=r;s<c.length;s++){var d=c[s];a.push(d&&d.className),(0,u.k)(o,d)}return o.className=(0,i.e)([e,a],{rtl:(0,l.jI)(t)}),o}(c,d,t,h);if(s){if(s.component){var f=s.component;return a.createElement(f,(0,o.Cl)({},p))}if(s.render)return s.rende
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (11201)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):496868
                                                                                                                                                                                                                                                                          Entropy (8bit):5.502856888527409
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:C8DTrhPPeE8/tx/SMnMcpGFHTpH1ZRhyblmeMzG8C41wplPQbo:C8R0nMcpGFHNyb1MTCH
                                                                                                                                                                                                                                                                          MD5:D48EA829DC1241BC54F2D08A7657F85F
                                                                                                                                                                                                                                                                          SHA1:F556BC08199057C76F97F4D7CC74084622B31F0D
                                                                                                                                                                                                                                                                          SHA-256:4B1F2AA10CC60716E07F75C09787C50A5D0BB5A97E3CCA2E9928B0E7471A41B6
                                                                                                                                                                                                                                                                          SHA-512:B2750531E5D508C700355A3B425F56DAB1CB691888EEFE58D86DB009BB36A80994B644CDE39849617464C98129B0597FA5C711BE400C5CE93262FF7BC9078C2B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/wacowlhostwebpack.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see wacowlhostwebpack.js.LICENSE.txt */.(()=>{var e=document.currentScript;define("odsp-next/roots/WacOwlHost",["odsp.react.lib"],()=>{var t;return(()=>{"use strict";var n=[(e,t,n)=>{n.r(t),n.d(t,{__assign:()=>r,__asyncDelegator:()=>S,__asyncGenerator:()=>y,__asyncValues:()=>D,__await:()=>v,__awaiter:()=>l,__classPrivateFieldGet:()=>w,__classPrivateFieldSet:()=>E,__createBinding:()=>f,__decorate:()=>s,__exportStar:()=>p,__extends:()=>i,__generator:()=>u,__importDefault:()=>O,__importStar:()=>C,__makeTemplateObject:()=>I,__metadata:()=>d,__param:()=>c,__read:()=>_,__rest:()=>o,__spread:()=>h,__spreadArray:()=>g,__spreadArrays:()=>b,__values:()=>m});var a=function(e,t){return a=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var n in t)Object.prototype.hasOwnProperty.call(t,n)&&(e[n]=t[n])},a(e,t)};function i(e,t){if("function"!=typeof t&&null!==t)throw new TypeError("Class extends value "+String(t)
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (65530), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):654731
                                                                                                                                                                                                                                                                          Entropy (8bit):5.533831824117391
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12288:fxtKU1mmIiQ50gsOvtmtPMgkKFwuv8X5EfBn7A4U/ovV6FKX:f7J1c50gvvtmtPMgdFwnEfBn7A4U5KX
                                                                                                                                                                                                                                                                          MD5:38EF063D08D35045D7AAC6B03EE276F2
                                                                                                                                                                                                                                                                          SHA1:6FD614B160651DFC5FC7D3D8A09C353C673AC32A
                                                                                                                                                                                                                                                                          SHA-256:C5D6707256856E570D86B57605053E5CA3D0E21CCB36B017D700731083BF92DD
                                                                                                                                                                                                                                                                          SHA-512:572B2388AF89DD2C4FCFA52DE234CD90CFB48D3AAB0882237BBE4611D3D458F0490A9E79685871911CAED35750B81B40A53C10D51A78D6244ACBC64F94D1B002
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/appChromeLazy.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[868],{15650:function(){var e=window.performance,t=!!e&&"function"==typeof e.mark;t&&e.mark("shell_bootstrapper_start"),function(){var e,t,n,o,r={6467:function(e){e.exports="data:font/woff;charset=utf-8;base64,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
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (22008)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):22062
                                                                                                                                                                                                                                                                          Entropy (8bit):4.682768558765925
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:eW4GO9OuOPgOyOKOEOuOjOeOsO6SOYOIOE:eCO9OuO4OyOKOEOuOjOeOsOlOYOIOE
                                                                                                                                                                                                                                                                          MD5:034E450AF3B9C45514FF64E0BF982013
                                                                                                                                                                                                                                                                          SHA1:936555A1FE3B24DF6329BBB14316FC75B2A26510
                                                                                                                                                                                                                                                                          SHA-256:C22636AF1D0F7A74B1A1F9C7FF2C49136C51F00DC795D613CB4731FD5600967B
                                                                                                                                                                                                                                                                          SHA-512:285C024E899A6422E26F7F84D717C5053EFBBAD400866242164FC1F2600EF1BE20D43B72396CC3126A017D7D999771E063ED3222A1088F6EAD66498D73990FFE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/onenoteloadingspinner.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[814],{333:function(a,i,t){t.r(i),t.d(i,{default:function(){return n}});var x=t(19837);const e=t(15369),r=new x.U("oreo-loadingSpinner");class s{static getData(){return new Promise(((a,i)=>{a(t(29717))}))}}var k=null;class n{static startAnimation(){const a="OreoLoadingSpinner",i=document.getElementById("WACPageLoadingIndicator");if(i){if(k&&window.clearTimeout(k),k=window.setTimeout((()=>{document.getElementById(a)&&r.warningTag(591407137,"OneNote Oreo Spinner is active for too long 30000")}),3e4),!this.spinner)return new Promise(((t,x)=>{r.infoTag(591407138,"OneNote Oreo Spinner is loading."),s.getData().then((t=>{let x=document.createElement("span");x.id=a,x.className="oreoLoadingSpinner",i.insertBefore(x,i.firstChild);let r={container:x,renderer:"svg",loop:!0,autoplay:!0,animationData:t};this.spinner=e.loadAnimation(r),this.spinner.play()})).catch((a=>{r.errorTag(591407139,"Error while loading One
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (59926), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):60591
                                                                                                                                                                                                                                                                          Entropy (8bit):5.454114515101101
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:HljPEebhg4r1P15MOt8QaXiWalh5bIwQPr1O8vKeEzJczOL5IlIOiiznKym:HlW4r1DVt8QEFpxwzJWOL5IlDs
                                                                                                                                                                                                                                                                          MD5:DF30BB783BA613584E4B6159EEE9EF5E
                                                                                                                                                                                                                                                                          SHA1:0B39EC0E81F52EE28FDB9BC8827006318F4F8CA3
                                                                                                                                                                                                                                                                          SHA-256:49898AC67BD0F523AAED0F260C29FAF6F85FE746406C18F07283C6E68F969CED
                                                                                                                                                                                                                                                                          SHA-512:D14743D49D276ED3FDA25DB3F121655D130708002F537A77CA52B75957D8C4F5FAA73BA73083FEA95E1C48F71B0B4E82FAC6BF4C5BD1D67F0362BF091CF65EB5
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/mathjax/MathJax.js
                                                                                                                                                                                                                                                                          Preview:/*.. * /MathJax.js.. *.. * Copyright (c) 2009-2015 The MathJax Consortium.. *.. * Licensed under the Apache License, Version 2.0 (the "License");.. * you may not use this file except in compliance with the License... * You may obtain a copy of the License at.. *.. * http://www.apache.org/licenses/LICENSE-2.0.. *.. * Unless required by applicable law or agreed to in writing, software.. * distributed under the License is distributed on an "AS IS" BASIS,.. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied... * See the License for the specific language governing permissions and.. * limitations under the License... */....if(document.getElementById&&document.childNodes&&document.createElement){if(!(window.MathJax&&MathJax.Hub)){if(window.MathJax){window.MathJax={AuthorConfig:window.MathJax}}else{window.MathJax={}}MathJax.isPacked=true;MathJax.version="2.5";MathJax.fileversion="2.5.3";MathJax.cdnVersion="2.5.3";MathJax.cdnFileVersions={};(function(d){var
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (55890)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):55939
                                                                                                                                                                                                                                                                          Entropy (8bit):5.642946070200145
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:rA9tbLQNYAzK2AjW7utlWZIb2CfuVP100xqPxBthllOiBcfbLmIaDEs2WHueDCPn:rA9tbLQNYAzK2GrpxmHKCPuMyA
                                                                                                                                                                                                                                                                          MD5:7E7896B3D6C41FB2B1A824EAC82A30CF
                                                                                                                                                                                                                                                                          SHA1:C913D24BDDFF438ED5A49AACCE9550519A16BD44
                                                                                                                                                                                                                                                                          SHA-256:CE6FE6E2A519A8245A8BF5B848F9F861FD51242DCCE64D8626F7740967AA86DA
                                                                                                                                                                                                                                                                          SHA-512:17C7B6FDC5C097ACA0556E3CB57D9BE41837EE3C2EF3BABBD4465D18AAA24DA2D59221A08DB0382347B0F88B1FCEE25FCA59726C8E0DEA2ED6ADA5E8AFC157AC
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/oreosearchpane.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[154],{13899:function(e,t,n){var a=n(94329),s=n(36706)(a);s.push([e.id,".ms-u-slideUpIn20 {\n animation-name: fadeIn, slideUpIn20;\n -webkit-animation-duration: 0.367s;\n -moz-animation-duration: 0.367s;\n -ms-animation-duration: 0.367s;\n -o-animation-duration: 0.367s;\n animation-timing-function: cubic-bezier(0.1, 0.9, 0.2, 1);\n animation-fill-mode: both;\n}\n\n@keyframes slideUpIn20 {\n from {\n transform: translate3d(0px, 20px, 0px);\n }\n\n to {\n transform: translate3d(0px, 0px, 0px);\n }\n}\n\n.ms-u-slideDownIn20 {\n animation-name: fadeIn, slideDownIn20;\n -webkit-animation-duration: 0.367s;\n -moz-animation-duration: 0.367s;\n -ms-animation-duration: 0.367s;\n -o-animation-duration: 0.367s;\n animation-timing-function: cubic-bezier(0.1, 0.9, 0.2, 1);\n animation-fill-mode: both;\n}\n\n@keyframes slideDownIn20 {\n from {\n transform: translate3d(0px, -20px, 0px);\n }\n\n to
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (4662)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):4694
                                                                                                                                                                                                                                                                          Entropy (8bit):5.1806478625211065
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:10V9trfuDzqHWRYK+rikt+ab/4bSddyY3Gy4zRhyqDM5IIJr7vndc6sYRKRXcuz3:+tf0zGK7an4e4by10WnaXRXKWt
                                                                                                                                                                                                                                                                          MD5:3508E6BAB8250E9769107C3078044721
                                                                                                                                                                                                                                                                          SHA1:723BF8B208422603B18EBA67EC5C06C9FFF5AAD7
                                                                                                                                                                                                                                                                          SHA-256:60F803B0E5626719C4FD3E65912DBBDD0D6148B42C76BE4E964B9FFE79485753
                                                                                                                                                                                                                                                                          SHA-512:ABAD4DF4DE9CCC9E141A5F0E3E1481C429CCDEBA6E2979C31853C907D287EA2C8D4ABDE84BF8392AD0C013687726FC6649554D19207343C5BE38ADDD66D3E59C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/14.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([[14],{146:(e,t,n)=>{n.r(t),n.d(t,{getFirstCPUIdle:()=>s});var a=n(0);function i(){for(var e=[],t=0;t<arguments.length;t++)e[t]=arguments[t];r()&&console.log.apply(console,(0,a.__spreadArray)(["[fci]"],e,!1))}function r(){try{if("sessionStorage"in window&&window.sessionStorage){var e=window.sessionStorage.enableFCILogging;return e&&"true"===e.toLowerCase()&&"undefined"!=typeof console&&!!console}}catch(e){}return!1}var o=function(){function e(e){this._longTaskId=0,this._checkFCIRunId=0,this._isDisposed=!1;var t=e.requiredMainThreadCPUIdleDurationInMilliseconds,n=e.measurementStartTime;this._measureName=e.measureName||"FCI",this._measurementStartTime=n,this._requiredMainThreadCPUIdleDurationInMilliseconds=t,this._resultResolver={resolve:void 0,reject:void 0},this._fciPromise=void 0,this._longTasks=[],this._processLongTaskPreQueue(e.initialEntries),this._registerLongTaskObserver()}return e.prototype.measureFCI=fu
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (7880)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):7930
                                                                                                                                                                                                                                                                          Entropy (8bit):5.293322320574147
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:ribZFiTYqetmqJvK7gDVAz6kTnbtPk5UTRgm:rZTYltmq07GVS6kTnbRkaTRd
                                                                                                                                                                                                                                                                          MD5:0DF1491525F4C1AA0FE1CC196C541625
                                                                                                                                                                                                                                                                          SHA1:39B909095B22ACD6430835D4657EF8069DFD4466
                                                                                                                                                                                                                                                                          SHA-256:0CEAC21DF535CE79AFD0E205DCC82618652503D362FCC5CFBB3B3B6F732DBECC
                                                                                                                                                                                                                                                                          SHA-512:E00E79053BE1EA6C1D3CC4A4086051F1D5E247E54C1A1C5605278DC4D7C1FEF47591F8D4B180F6E7D402638A838891F2355DB57085566D6453EA50E8C0F46494
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/appResourceLoader.min.js
                                                                                                                                                                                                                                                                          Preview:var appResourceLoader;!function(){"use strict";var e,n,t,o,r={21909:function(e,n,t){t.r(n),t.d(n,{init:function(){return c.Ts},loadChunk:function(){return L},loadIntlBootResources:function(){return a}});var o=t(44080);let r,i=!1;function a(e){const n="onenote-ribbon-intl.min.js";return i||(r=(0,o.loadScript)(n,e.scriptBaseUrl.concat(n),void 0,5),i=!0),r}var c=t(29319);const s="appChrome",l="canvasAtMentions",u="loopLoadingManager",d="navigation",f="onenote-navpane-strings",p="onenote-ribbon-intl",h="onenote-whatsnew-strings",m="sharedComments",b="comment-pane-strings",v="hyperlinkFloatie",y="copilotCanvas",g={[s]:{dependencies:[p]},[u]:{},[v]:{},[y]:{},[m]:{dependencies:[b]},[l]:{dependencies:[b]},[d]:{dependencies:[f,h]},[p]:{isLocalized:!0},"onenote-ribbon-intl-fluent":{isLocalized:!0},"onenote-ribbon-sprite-lazy":{isLocalized:!0},"onenote-ribbon-sprite-lazy-fluent":{isLocalized:!0},"onenote-ribbon-intl-lazy":{isLocalized:!0},"onenote-ribbon-intl-lazy-fluent":{isLocalized:!0},"onenot
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2773
                                                                                                                                                                                                                                                                          Entropy (8bit):5.143437686705897
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:c8Ax81yL73bao2Q6tSJ1/2VaObOxMq9FBt82LFjnp412ImmU+J2QezcNVF:tAMy/Laox116q9FBtFNnp41aGD
                                                                                                                                                                                                                                                                          MD5:21F7CF83EC08DA474338BF2694C495A3
                                                                                                                                                                                                                                                                          SHA1:9CBC7B17A61C8F1D9081042F2AD9B90EF1C4B654
                                                                                                                                                                                                                                                                          SHA-256:A482759959D8481A843F01B34DF4DCABD1C0DDA2EDC2A1DF7F7CD9D9029DA1FC
                                                                                                                                                                                                                                                                          SHA-512:99CFEE306547AEDFD6878E948B472D46101D56B9072A73FC8E3E27275BD5116B3E18405590A49F7B5D34B83CCCF1054DCD9A6BB4C591865DCD0CA47F3CFB2B48
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000128.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8" standalone="yes"?>.<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">. <Id>8ef9aa39-de6e-4fb7-841a-f0f08546d398</Id>. <Version>1.0.0.0</Version>. <ProviderName>Microsoft Office Services</ProviderName>. <DefaultLocale>en-US</DefaultLocale>. <DisplayName DefaultValue="Copilot"/>. <Description DefaultValue="Copilot"/>. <IconUrl DefaultValue=""/>. <HighResolutionIconUrl DefaultValue=""/>. <AppDomains>. <AppDomain>https://fa000000128.resources.office.net</AppDomain>. <AppDomain>https://res.cdn.office.net</AppDomain>. <AppDomain>https://res.sdf.cdn.office.net</AppDomain>. <AppDomain>https://res-h3.sdf.cdn.office.net</AppDomain>. <AppDomain>https://res-h3.public.cdn.office.net</AppDomain>.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 452 x 444, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):51120
                                                                                                                                                                                                                                                                          Entropy (8bit):7.954718383506729
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:fAXURb/VRlg/u3OD+RerLnSFFFCX8iarUMpu:f/VNfO2Ocerbdv/Mpu
                                                                                                                                                                                                                                                                          MD5:ECA50172A6583B16E553E9917FB710FB
                                                                                                                                                                                                                                                                          SHA1:2FD7FB2FF5C10E17E9066CE6BD2393E1F6B93CC0
                                                                                                                                                                                                                                                                          SHA-256:FFF5919A2CBACEAE0528522B6C73E4F1D549CA8EE13C680B50ED377DFD2B61F0
                                                                                                                                                                                                                                                                          SHA-512:1E7591A35DE7C00A197C08F15BA9ED7A9014EFFEF03DB240A92B63F8A8EC8DAE8F02811C8E9696FA934E6C4EFCBBBA14F2D01082A63471092488850A2D16958B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR.............@.....wIDATx^..xU......n{..W.;.:T.W-W......I..hD..V..U..P@..A.@H....-.HEF..."....."zE@.B......OY~..s.:{.=.....?{.....N~..z.w..............T.vmr.k.>=.....~.A.......#.q...u..=..I...gee6 .v---.$.".L..=W>kD.+@... ...z..yd...s...mhK..:.avvf._........F.N.........x...*.?.b.US.|~ii....W.V.w..-}|...n*//g..7..h..R.m{............X..+&U.....=...h.....B$../......*0lll.@.+..l....l.&.o.x9..7.Y.1{.....G...w..-}...>..u."....1h(n.t......m.....X.kIf .i..]...{A......+.g...m=....'//..k=..A|.v.8&.....!..>.}W.!.D.......s..x....w.a..Mr.....,P.KxII....5.~.>.%..1..1......y.P...w(..{..O ..n.V..Oh...iC[7.x...*.\..(..D.C...}....}..?...>%...".~0b..g.Yy...^.|./..+@.7.z.D.|*==.9.c....g..m|.]ZZ.^..b}b.....D..ly..3:.P.`BE.+.6..b....1..9...\.." ............7....]r.c.&."...-/.OJ6.........2.c.....pA.Z.................?.Z.x....r.E?`........}W>..c...g@i.."P.kUVQ/..^.........BQ....WguU.E...%1`@.F....}Uax..f..".`,.t..V .9.7..E...[Sm...y.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (11415)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):23465
                                                                                                                                                                                                                                                                          Entropy (8bit):5.3338517540384585
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:gPtWFr8TBFi4Q9jeTKYfTTxRqFf4nplfb10g3WJ24AzzN72zrYhqxz0qTyPYR:gDNU9jRyvxRqFfSptb10g3WJ24Az12XT
                                                                                                                                                                                                                                                                          MD5:AAC3C92648D0D271C86E71B0EF7E067A
                                                                                                                                                                                                                                                                          SHA1:520BF039DC92CD597967F52CCA17EEA3C31D7855
                                                                                                                                                                                                                                                                          SHA-256:17B93E78EA5BEDEEDCBBAFEF6A9DBBDA7AC2D529C833D58A6F666E3B5BC8DE03
                                                                                                                                                                                                                                                                          SHA-512:FB8B2AB1A5C21C261FBCFA52139112C77D7AB62D98E4B3EFD43015C62F1FF6C08A8EEB907AC6FCDAAD90EF2C77625F24388130BDEF8D2453D6284F98629FFA23
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/2.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([[2],{361:(e,t,n)=>{n.d(t,{a:()=>A});var a=n(0),i=n(23),r=n(129);const o=function(){function e(){}return e.start=function(e){var t=new r.a(e);return new i.c(function(e,n){t.start(e,n)},function(){t.abort(!0)})},e.startAndPostProcess=function(e,t){var n=new r.a(e);return new i.c(function(e,a){n.start(function(n,a){e(t(n,a))},a)},function(){n.abort(!0)})},e}();var s=n(79),c=n(20),d=n(7),l=n(114),u=n(758),f=n(56),p=n(41),m=n(53),_=n(759),h=n(3),b=n(1),g=n(98),v="Authorization";function y(e){var t=new m.a(e);return"".concat(t.authority,"/{ length: ").concat(t.path.length,", segments: ").concat(t.segments.length," }")}function S(e){var t,n,a=null!==(n=null===(t=e.getAllResponseHeaders())||void 0===t?void 0:t.toLowerCase())&&void 0!==n?n:"";return a.indexOf("sprequestguid")>=0&&e.getResponseHeader("sprequestguid")||a.indexOf("request-id")>=0&&e.getResponseHeader("request-id")||void 0}function D(e){var t,n;return(null
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):985
                                                                                                                                                                                                                                                                          Entropy (8bit):5.175336884396651
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:2dQ4+A88T+Uy8+QQIWZdLIQAEJAoImLFJ1002ev+Es:cWA886hPtIWPIQlJwUFJ1005v+d
                                                                                                                                                                                                                                                                          MD5:605C6BD48B2AB0262C0113445494FF4C
                                                                                                                                                                                                                                                                          SHA1:00CC6621252EB4930486F4837638A0524E5C77E9
                                                                                                                                                                                                                                                                          SHA-256:405497AC72ADA72A30277E2493A9B00B999DF6CE1B425167B8C405AF45EF0338
                                                                                                                                                                                                                                                                          SHA-512:53993F9A6359C167302F14F272BF9D8897C2508DF9EFEC38DE1754F9B8737A621C482177981DE9702BEEAC54ACC2EEB1AB166A24533AC2A6FEA7E7C6244AD4F9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>bf3a711e-f669-4fd5-8d73-100223695f2b</Id>.. <Version>1.0.0.4</Version>.. <ProviderName>lijia</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="Office first party apps sandbox" />.. <Description DefaultValue="Office first party apps sandbox" />.... <Hosts>.. <Host Name="Document"/>.. </Hosts>.... <DefaultSettings>.. <SourceLocation DefaultValue="index.html" />.. </DefaultSettings>.... <Permissions>ReadWriteDocument</Permissions>..</OfficeApp>
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):215773
                                                                                                                                                                                                                                                                          Entropy (8bit):5.515198392628102
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:DlgpUCXC3DCN83TCu2MsxI3lYmKbk3wPOhG0CY:ZOUCXC3DCNS2MsxI3lHwPOhG0CY
                                                                                                                                                                                                                                                                          MD5:AB7E707AA754C35BFC4584615566B727
                                                                                                                                                                                                                                                                          SHA1:1AC9DEE3DDAEE2796033BEA54A903A3BF2143DA9
                                                                                                                                                                                                                                                                          SHA-256:A1A37EDD2892A4625888FE731B2003A49CDC72B71356DB7BD267756D69CE1FEB
                                                                                                                                                                                                                                                                          SHA-512:5FB08322B6690DEE16FB318D5889973BA9757380E0A64C9C0FF8B84710A06E9CA3877B9B5310970CAA7088750E4D65184C4420D7DE4EF9061FAC35ACFBB7E574
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise.public.cdn.office.net/wise/owl/owl.3e038441fedc18b6dd03.js
                                                                                                                                                                                                                                                                          Preview:var Microsoft;!function(){"use strict";var t,e,n,o,r={3045:function(t,e,n){n.d(e,{h:function(){return s}});var o=n(72379),r=n(14521),i=n(39292),s=function(t){function e(){var e=null!==t&&t.apply(this,arguments)||this;return e.value=null,e.hasNext=!1,e.hasCompleted=!1,e}return o.C6(e,t),e.prototype.N=function(e){return this.hasError?(e.error(this.thrownError),i.y.EMPTY):this.hasCompleted&&this.hasNext?(e.next(this.value),e.complete(),i.y.EMPTY):t.prototype.N.call(this,e)},e.prototype.next=function(t){this.hasCompleted||(this.value=t,this.hasNext=!0)},e.prototype.error=function(e){this.hasCompleted||t.prototype.error.call(this,e)},e.prototype.complete=function(){this.hasCompleted=!0,this.hasNext&&t.prototype.next.call(this,this.value),t.prototype.complete.call(this)},e}(r.B7)},44739:function(t,e,n){n.d(e,{t:function(){return s}});var o=n(72379),r=n(14521),i=n(46624),s=function(t){function e(e){var n=t.call(this)||this;return n.tt=e,n}return o.C6(e,t),Object.defineProperty(e.prototype,"va
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:MS Windows cursor resource - 1 icon, 32x32, hotspot @16x16
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):4286
                                                                                                                                                                                                                                                                          Entropy (8bit):0.3626382302432769
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:GlFFHvDllfl/t+lVsu/jXpRq/uXJRi/uXZRi/uXJRq/uX3XXRLtutpaKsx67YTsD:Gl/qlOeTjq2Di2Ti2Dq2nBL4OxhG5
                                                                                                                                                                                                                                                                          MD5:04D59A1FFDA7020CBDA1BB9FCBF0BCA0
                                                                                                                                                                                                                                                                          SHA1:E0CACE5751F02AF9E12B3C066FFD542F3D12A279
                                                                                                                                                                                                                                                                          SHA-256:EDC250E23E06AE7D15C1C19FDF9C6759129796B0A2F76DC82DF665C823C7B495
                                                                                                                                                                                                                                                                          SHA-512:A997D4384DA8D401321C497F49F73F0C79C1815DFD8B679458385D4E4A8ED2F645DDCF940A9347EA35F2D7AD3EE710F06784E8E1B1461AB7E8633BFF0FE0A691
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/pen_32x32.cur
                                                                                                                                                                                                                                                                          Preview:...... ..............(... ...@..... ...................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):18407
                                                                                                                                                                                                                                                                          Entropy (8bit):4.935379864718282
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:r0GcH6oaGwSaPQsPq3QfQ3/U/8vFwoHbr2wKodV15vzJ9YaikHcL2BkQk5:rUZwSkQWCU/8HVOaikMSvk
                                                                                                                                                                                                                                                                          MD5:D021B25C84E7615BC3CAB4D4B7C31652
                                                                                                                                                                                                                                                                          SHA1:9C7E4B622D7AE42553781FEF1DA0227CC58F3916
                                                                                                                                                                                                                                                                          SHA-256:3474C955EC1CD6CB5FAC1F3511A826277BB68E88C595EE90F91AF336282C7568
                                                                                                                                                                                                                                                                          SHA-512:39FD996A5836D65BB2E5C76F467806BBC5C5D8787AF30301623EEA38EBB733C1A850B11C1219D6C7BBE6703570E2D73ACCDB6E3A384960FFEF733774FE6C8A08
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/strings/en/shellstrings.json
                                                                                                                                                                                                                                                                          Preview:{. "Microsoft": "Microsoft",. "FlexpaneCloseButton": "Close pane",. "Me_Header": "My account",. "MePhotoAriaLabel": "{0} {1} Current account's user photo",. "ChangePhotoAriaLabel": "{0} {1} Change the photo that appears in IM. This may open a new window.",. "MePhotoTitle": "Current account's user photo",. "ChangePhotoTitle": "Change the photo that appears in IM. This may open a new window.",. "AppLauncherAriaLabel": "App launcher opened",. "AppLauncherCloseAriaLabel": "Close the app launcher",. "AppLauncherHomeAriaLabel": "Microsoft 365, will be open in new tab",. "AppLauncherHomeAriaLabelM365Copilot": "Microsoft 365 Copilot, will be open in new tab",. "AppsModuleHeading": "Apps",. "Microsoft365": "Microsoft 365",. "Microsoft365Copilot": "Microsoft 365 Copilot",. "AppsModuleAllApps": "All apps",. "AppsModuleAllAppsTooltip": "Open all apps",. "AllViewGroupShowMore": "Show More",. "AllViewGroupShowLess": "Show Less",. "AllViewBack": "Back",. "AllViewNewGroupHeading":
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1715525
                                                                                                                                                                                                                                                                          Entropy (8bit):5.421401770716634
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:49152:3pZFynkQBmFjH4+mzfYyWhqyU0sXDvpttZwJbhTJrSK4VxjPHRYOI+AmOkmMOkxY:1/9+o1+2
                                                                                                                                                                                                                                                                          MD5:63F41207BF1435D275EC888FD49CFAFC
                                                                                                                                                                                                                                                                          SHA1:18DDBDB37BC9A1D275F2F9A3B90B319C18075A61
                                                                                                                                                                                                                                                                          SHA-256:361CB89BBEB4BE4A5D970475A9A0B38131E566DB63E83E304021E9667DA07879
                                                                                                                                                                                                                                                                          SHA-512:DA34CC748112AD4997AFB74886C7BAC0F7903AA854216B4156E05602F6A8424752E5C85A5B5E7963EADB1226C527D43F1F76C5774DF87280CE05D6A827A27001
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/common.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[76],{64273:function(e,t,o){"use strict";o.d(t,{P:function(){return r}});var n=o(26826),r=o.n(n)()({loader:function(){return Promise.all([o.e(243),o.e(76),o.e(288)]).then(o.bind(o,71574)).then((function(e){return e.Callout}))},loading:function(){return null}})},70079:function(e,t,o){"use strict";o.d(t,{l:function(){return r}});var n=o(26826),r=o.n(n)()({loader:function(){return Promise.all([o.e(243),o.e(76),o.e(288)]).then(o.bind(o,25061)).then((function(e){return e.ContextualMenu}))},loading:function(){return null}})},15056:function(e,t,o){t._default=o(3147).default},3147:function(e,t,o){"use strict";e.exports=o(98776)},98776:function(e,t){"use strict";t.default=function(e){for(var t,o=0,n=0,r=e.length;r>=4;++n,r-=4)t=1540483477*(65535&(t=255&e.charCodeAt(n)|(255&e.charCodeAt(++n))<<8|(255&e.charCodeAt(++n))<<16|(255&e.charCodeAt(++n))<<24))+(59797*(t>>>16)<<16),o=1540483477*(65535&(t^=t>>>24))+(59797*(t>>>16)<<
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2801
                                                                                                                                                                                                                                                                          Entropy (8bit):5.45286274502017
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:EqQlq8NlqzL4T8iNlqYNlqRNlq5Nlqwrogb4X6kf1n791Rap1HTKeqMxNlqEFEyY:hQlqslqo8+lq4lqTlqLlq48X6e1nnsvs
                                                                                                                                                                                                                                                                          MD5:1C3C7F75EEF93E827F0BD9762A25C8B8
                                                                                                                                                                                                                                                                          SHA1:151AC2BAC1FEC3B3BD9CB60DD881AD8AFE7815EE
                                                                                                                                                                                                                                                                          SHA-256:D08EE98F1C182150158CCB7D11DB2E2C2049662A3D13F101E867710DD3C3E619
                                                                                                                                                                                                                                                                          SHA-512:45FF1BC9A923E37B70764F2E4E706D665350E42597718AECB4A8D2C8D5FBC14CFB2E1EC5C4AF9BE9CF1FAE4179A1F589418C11596986463598DD4131F9DDDD98
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://www.onenote.com/officeaddins/learningtools/?et=
                                                                                                                                                                                                                                                                          Preview:......<!DOCTYPE html>..<html lang="en-US">..<head>...<meta charset="utf-8">...<title></title>......<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="text/javascript" src="https://cdn.onenote.net/officeaddins/161872540452_Scripts/CommonDiagnostics.js" crossorigin="anonymous"></script>...<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="text/javascript" src="https://cdn.onenote.net/officeaddins/161872540452_Scripts/BrowserUls.js" crossorigin="anonymous"></script>.......<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA">.....var EnableClientSideLogging = true;....</script>......<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="text/javascript" src="https://ajax.aspnetcdn.com/ajax/jQuery/jquery-3.5.0.min.js"></script>...<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="text/javascript" src="https://cdn.onenote.net/officeaddins/161872540452_Scripts/ExternalResources/js-cookie.js" crossorigin="anonymous"></script>...<script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="tex
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):112261
                                                                                                                                                                                                                                                                          Entropy (8bit):5.13097356220368
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:F3aTm6ALG5SH04NcnOxtCDpdziaoIl3fKF1cEilqVcAd:wa+nuE2aoIl3fK4lCc8
                                                                                                                                                                                                                                                                          MD5:1DC889AC693F912C263AA6D27A258A93
                                                                                                                                                                                                                                                                          SHA1:B2100EA2AEE5ED5FD90E0331F26160CDD5D1B002
                                                                                                                                                                                                                                                                          SHA-256:9224E5240ABC039D55CB765EA6611F07BA95F5E59C05DA325C968470946C6E52
                                                                                                                                                                                                                                                                          SHA-512:49654A757D9C5CFD838848AF856B2A0D9FE9960CEED297E4244F948E42441506B7502DBED1236448BFF09EF4444FDF20A25197DC7E55FC4394EB2ED70CB1B0ED
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/onenoteink.js
                                                                                                                                                                                                                                                                          Preview:var onenoteink;(()=>{"use strict";var t={699:t=>{var e,i="object"==typeof Reflect?Reflect:null,n=i&&"function"==typeof i.apply?i.apply:function(t,e,i){return Function.prototype.apply.call(t,e,i)};e=i&&"function"==typeof i.ownKeys?i.ownKeys:Object.getOwnPropertySymbols?function(t){return Object.getOwnPropertyNames(t).concat(Object.getOwnPropertySymbols(t))}:function(t){return Object.getOwnPropertyNames(t)};var o=Number.isNaN||function(t){return t!=t};function s(){s.init.call(this)}t.exports=s,t.exports.once=function(t,e){return new Promise((function(i,n){function o(i){t.removeListener(e,s),n(i)}function s(){"function"==typeof t.removeListener&&t.removeListener("error",o),i([].slice.call(arguments))}g(t,e,s,{once:!0}),"error"!==e&&function(t,e,i){"function"==typeof t.on&&g(t,"error",e,{once:!0})}(t,o)}))},s.EventEmitter=s,s.prototype._events=void 0,s.prototype._eventsCount=0,s.prototype._maxListeners=void 0;var r=10;function a(t){if("function"!=typeof t)throw new TypeError('The "listener
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (22679), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):22679
                                                                                                                                                                                                                                                                          Entropy (8bit):5.2318053802945315
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:hGC3Zl0CEbriF1uBPA6fCNa6gCOzhLU4UjYAlmEqoW7XlE4rOanFVVTTAkTRQZ:tJqCEbriLUY6f76g5wYAEXe45nlAsS
                                                                                                                                                                                                                                                                          MD5:71BFAB4E6D95A80EF4D8EC3F9F9F871D
                                                                                                                                                                                                                                                                          SHA1:2C213914015383F0DEF1188C92E1489EEE2FFF72
                                                                                                                                                                                                                                                                          SHA-256:DB4A6A89D774E2AD8D4485040131FA3297A5684471AA7606296C347749D2BEB3
                                                                                                                                                                                                                                                                          SHA-512:B92F5824D42FBB6285D101FBC5A134BECE3368F3E78F1933C17732A8E3300BC949FB6B592B557FAFC9A0F6C02FE02BFBDF25E76A3A027964D4F67C6ED139E60C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/js/suiteux.shell.umc_mecontrol.js
                                                                                                                                                                                                                                                                          Preview:var shellPerformance=window.performance,HighResolutionTimingSupported=!!shellPerformance&&"function"==typeof shellPerformance.mark;HighResolutionTimingSupported&&shellPerformance.mark("shell_umc_mecontrol_start"),(self["suiteux_shell_webpackJsonp_suiteux-main"]=self["suiteux_shell_webpackJsonp_suiteux-main"]||[]).push([["umc_mecontrol"],{50641:function(t,e,n){n.r(e),n.d(e,{UniversalMeControlConnector:function(){return M}});var o=n(12810),i=n(93814),r=n(87948),s=n(95422),a=n(66097);var l=n(90872),p=n(16968),d=n(47710);const h=5,u=500,c=1.5;function g(t,e,n,o){let i=document.createElement("script");if(i.src=window.O365ShellContext.TrustedTypesPolicies[d.TR].createScriptURL(t),i.crossOrigin="anonymous",i.async=!0,null!=e){i.onload=i=>{if(o){let r=Date.now()+200,s=()=>{o()?e(i):Date.now()>r?n({ResourceName:t,Details:12}):setTimeout((()=>{s()}),50)};s()}else e(i)},null!=n&&(i.onerror=(e,o,i,r,s)=>{n(function(t,e,n,o,i,r){let s;s="string"==typeof e?e:e.type;return{ResourceName:t,Details:`Scr
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 (with BOM) text, with very long lines (18992), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):19181
                                                                                                                                                                                                                                                                          Entropy (8bit):4.3590974373798
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:im1leaXgjDSEcE+fg1gKzqF9meWFaUOKco5FXp/kf/oezD:b1leajD0kiDlgMJkIy
                                                                                                                                                                                                                                                                          MD5:D9604CC18F364A6ADE707B7FAAEC642C
                                                                                                                                                                                                                                                                          SHA1:F38F0B94764184D4373886FDA1CA87D352BFCE5A
                                                                                                                                                                                                                                                                          SHA-256:F282423F48F12F56419363384F3B10002C8D3D106BC1AC8FF721602AA2B2FD9B
                                                                                                                                                                                                                                                                          SHA-512:7B305607B79F077539E3C37CD46EAFBB9E4C9B2A8825217187515CD20FFBFE204BAC43E918CD4440EB65A3A2DCFFC4140D06B43845613D48566448765B3D5DF4
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://onenote.officeapps.live.com/o/App_Scripts/Acl/Acl1033.js
                                                                                                                                                                                                                                                                          Preview:.var AutoCorrectList={"(c)":".","(r)":".","(tm)":".","...":".","abbout":"about","abotu":"about","abouta":"about a","aboutit":"about it","aboutthe":"about the","abscence":"absence","accesories":"accessories","accidant":"accident","accomodate":"accommodate","accordingto":"according to","accross":"across","acheive":"achieve","acheived":"achieved","acheiving":"achieving","acn":"can","acommodate":"accommodate","acomodate":"accommodate","actualyl":"actually","additinal":"additional","addtional":"additional","adequit":"adequate","adequite":"adequate","adn":"and","advanage":"advantage","affraid":"afraid","afterthe":"after the","againstt he":"against the","aganist":"against","aggresive":"aggressive","agian":"again","agreemeent":"agreement","agreemeents":"agreements","agreemnet":"agreement","agreemnets":"agreements","agressive":"aggressive","ahppen":"happen","ahve":"have","allwasy":"always","allwyas":"always","almots":"almost","almsot":"almost","alomst":"almost","alot":"a lot","alraedy":
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1208
                                                                                                                                                                                                                                                                          Entropy (8bit):5.4647615085670616
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:hM0mIAvy4WvsqFOa7JZRGNeHX+AYcvP2wk1USdYF9Yk5:lmIAq1UqFOiJZ+eHX+AdP2wyYFOk5
                                                                                                                                                                                                                                                                          MD5:D29FA9F2AB3A72F2608E8E82C8C3D1C6
                                                                                                                                                                                                                                                                          SHA1:8B21CC06752837B4B6B8FEF8D54F50EB2C7CCA8F
                                                                                                                                                                                                                                                                          SHA-256:E1B0A10649C4B92F828523EFC2EBE135EA9488179A2816888D1E84F786202DBF
                                                                                                                                                                                                                                                                          SHA-512:824A207E3F5AF4934B7B50FE5E3F8585FAECA571C3C39E510C06DC8FBDF3E64B07811CAAE06239936BDDDDFA4C90E534F03C0DA8147AF9294042DEA6B0FBCB94
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">..<html xmlns="http://www.w3.org/1999/xhtml">..<head>..<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"/>..<title>500 - Internal server error.</title>..<style type="text/css">.. ..body{margin:0;font-size:.7em;font-family:Verdana, Arial, Helvetica, sans-serif;background:#EEEEEE;}..fieldset{padding:0 15px 10px 15px;} ..h1{font-size:2.4em;margin:0;color:#FFF;}..h2{font-size:1.7em;margin:0;color:#CC0000;} ..h3{font-size:1.2em;margin:10px 0 0 0;color:#000000;} ..#header{width:96%;margin:0 0 0 0;padding:6px 2% 6px 2%;font-family:"trebuchet MS", Verdana, sans-serif;color:#FFF;..background-color:#555555;}..#content{margin:0 0 0 2%;position:relative;}...content-container{background:#FFF;width:96%;margin-top:8px;padding:10px;position:relative;}..-->..</style>..</head>..<body>..<div id="header"><h1>Server Error</h1></div>..<div id="content">.. <div class="content-
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):27
                                                                                                                                                                                                                                                                          Entropy (8bit):3.708048150071232
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:HyjJTzMKHJu:HyjNz5pu
                                                                                                                                                                                                                                                                          MD5:435B48C70ACA2DC80F8B34B5FDEB2789
                                                                                                                                                                                                                                                                          SHA1:FFE2C8567607568F939FA1A6F9888639B98B400C
                                                                                                                                                                                                                                                                          SHA-256:6468AC9F9BCA964F3910FC967B80781C1C8634300E36F95AE49056D91A2734BF
                                                                                                                                                                                                                                                                          SHA-512:5C73531F908067B986F4F7F1BB423DC6FC4B1CDC9A6C65205658BD2A2499CB53F0F1C4EB928B8B87B189D969C3769F9D97EA5AB1CEA97FE6F18D2DD4AD583C60
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:The service is unavailable.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):76571
                                                                                                                                                                                                                                                                          Entropy (8bit):5.364259301211758
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:Y57B+n7r5qGhmViGJmOsrmNS+p2ZiDO0eX/DcynXE+L92w7q9u7k78CRtfa:YxB+n7r55RGMr9nXEiz7V7k78r
                                                                                                                                                                                                                                                                          MD5:4DE42314D6EDDA70DF9779762ACC12B8
                                                                                                                                                                                                                                                                          SHA1:2AF63137ABC68C0910107F8598B7DE48FD5BBD9C
                                                                                                                                                                                                                                                                          SHA-256:7E86DF2AC06E3524CB7BC6F0B8EB07565BA6D103EAF3CF1A30AC4C78F11A4EAA
                                                                                                                                                                                                                                                                          SHA-512:4465A7B79288AC5B75B4B21DDE3EA774F94AC209DDADFF99DA7741ED841C739C1F82DAEB550DC707A986FFFED8B9B84F45CA7705F40244A993D0CE34BD65B02B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/Feedback/latest/officebrowserfeedback_ecs_client.js
                                                                                                                                                                                                                                                                          Preview:!function(e,t){"object"==typeof exports&&"object"==typeof module?module.exports=t():"function"==typeof define&&define.amd?define([],t):"object"==typeof exports?exports.FloodgateDynamicCampaign=t():e.FloodgateDynamicCampaign=t()}(self,(function(){return function(){var e={7222:function(e,t,n){"use strict";var r=this&&this.__createBinding||(Object.create?function(e,t,n,r){void 0===r&&(r=n),Object.defineProperty(e,r,{enumerable:!0,get:function(){return t[n]}})}:function(e,t,n,r){void 0===r&&(r=n),e[r]=t[n]}),i=this&&this.__exportStar||function(e,t){for(var n in e)"default"===n||Object.prototype.hasOwnProperty.call(t,n)||r(t,e,n)};Object.defineProperty(t,"__esModule",{value:!0}),t.IFloodgateHostPlatform=t.GovernedChannelType=t.ICampaignDefinitions=t.Api=void 0,i(n(7560),t),t.Api=n(7560),i(n(2783),t),i(n(8262),t),i(n(234),t);var o=n(9556);Object.defineProperty(t,"ICampaignDefinitions",{enumerable:!0,get:function(){return o.ICampaignDefinitions}});var s=n(8445);Object.defineProperty(t,"Govern
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):146725
                                                                                                                                                                                                                                                                          Entropy (8bit):5.380763205028774
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:5fxye5UZECYRme6SNmGli0uuK1oCmGy9dhl231uwPt1P2:5fxyDRYRmwAa3h4zi
                                                                                                                                                                                                                                                                          MD5:EACCC1B2FD3A553813A22B790546429E
                                                                                                                                                                                                                                                                          SHA1:C05AE341443855B2834DFCB545E4DE2BC5A8ABCB
                                                                                                                                                                                                                                                                          SHA-256:49A7E1E1E583EADC935C174DB0A7128B9187DB337978CE97D33D6744EFACA45A
                                                                                                                                                                                                                                                                          SHA-512:756F76492A42AAE54E0C9CF1F48ED8773587AE006D3DF4D29CE723C952B8D487D4258E87F10E6EABE326EB2600AEF5AE1E11CA8660762DA94FFCC02F942DB035
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/wise/owl/onenote-boot.4cd6acc29a3780b31c8a.js
                                                                                                                                                                                                                                                                          Preview:var Microsoft="object"==typeof Microsoft?Microsoft:{};Microsoft.Office=Microsoft.Office||{},Microsoft.Office.OneNote=function(t){var e={};function i(s){if(e[s])return e[s].exports;var o=e[s]={i:s,l:!1,exports:{}};return t[s].call(o.exports,o,o.exports,i),o.l=!0,o.exports}return i.m=t,i.c=e,i.d=function(t,e,s){i.o(t,e)||Object.defineProperty(t,e,{enumerable:!0,get:s})},i.r=function(t){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(t,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(t,"__esModule",{value:!0})},i.t=function(t,e){if(1&e&&(t=i(t)),8&e)return t;if(4&e&&"object"==typeof t&&t&&t.__esModule)return t;var s=Object.create(null);if(i.r(s),Object.defineProperty(s,"default",{enumerable:!0,value:t}),2&e&&"string"!=typeof t)for(var o in t)i.d(s,o,function(e){return t[e]}.bind(null,o));return s},i.n=function(t){var e=t&&t.__esModule?function(){return t.default}:function(){return t};return i.d(e,"a",e),e},i.o=function(t,e){return Object.prototype.hasOwnPro
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (56385)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):203399
                                                                                                                                                                                                                                                                          Entropy (8bit):5.090398314654391
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:H5IpPz6zxcXzZmoK5fMO6kvBoKrpQmK4Zbwmk29X9vvNCYzRtF:S6boK5fMO6kvBoKrpQmK4Zbwmk29X9vF
                                                                                                                                                                                                                                                                          MD5:669B64283920BFE61946F40932CC17EA
                                                                                                                                                                                                                                                                          SHA1:8CF1BCFA9B4AF54ABA02D47245143C44B364E8E9
                                                                                                                                                                                                                                                                          SHA-256:77B840B5CD83C1E88EE3A74A7A884CEEF864D1A13421DD739046D2634A0CC7F7
                                                                                                                                                                                                                                                                          SHA-512:EF0CFAB84437E029765ED66CF0675F8E30E3943D298251D1C763FC4BA069E8F622A83F61AEE2FA6E9561C99FC33521AC969811F73EB4C942B43204000980367D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h77B840B5CD83C1E8_App_Scripts/1033/common-intl.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";var CommonStrings={qpsPloc_Name:"Pseudo",qpsPloca_Name:"Pseudo (Pseudo Asia)",qpsPlocm_Name:"Pseudo (Pseudo Mirrored)",afrikaans:"Afrikaans",albanian:"Albanian",alsatian:"Alsatian",amharic:"Amharic",arabic:"Arabic",arabic_Algeria:"Arabic (Algeria)",arabic_Bahrain:"Arabic (Bahrain)",arabic_Egypt:"Arabic (Egypt)",arabic_Iraq:"Arabic (Iraq)",arabic_Jordan:"Arabic (Jordan)",arabic_Kuwait:"Arabic (Kuwait)",arabic_Lebanon:"Arabic (Lebanon)",arabic_Libya:"Arabic (Libya)",arabic_Morocco:"Arabic (Morocco)",arabic_Oman:"Arabic (Oman)",arabic_Qatar:"Arabic (Qatar)",arabic_Saudi_Arabia:"Arabic (Saudi Arabia)",arabic_Syria:"Arabic (Syria)",arabic_Tunisia:"Arabic (Tunisia)",arabic_UAE:"Arabic (U.A.E.)",arabic_Yemen:"Arabic (Yemen)",armenian:"Armenian",assamese:"Assamese",azerbaijani:"Azerbaijani",azerbaijani_Cyrillic:"Azerbaijani (Cyrillic)",azerbaijani_Latin:"Azerbaijani (Latin)",bangla_Bangladesh:"Bangla (Bangladesh)",bangla_India:"Bangla (India)",bashkir:"Bashkir",basque:"Basque",bel
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Web Open Font Format, TrueType, length 151924, version 0.0
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):151924
                                                                                                                                                                                                                                                                          Entropy (8bit):7.996755078799659
                                                                                                                                                                                                                                                                          Encrypted:true
                                                                                                                                                                                                                                                                          SSDEEP:3072:izu4By5vR4gdzOjZHpybtAVOZ71Q1gcq0WTo7wSRhpFY/iw2yQ0X2+6L0aR/h:iznyHBmNMJcOd1ro719FY/ilyQ0Gp
                                                                                                                                                                                                                                                                          MD5:E80FF72E03E780056CFDBD85C63404CE
                                                                                                                                                                                                                                                                          SHA1:C450A1A6233F0FBC6DBFFB7FEE251E378F64EF32
                                                                                                                                                                                                                                                                          SHA-256:05828D625DCB5781D0A3CC67A2429CED535FDF848B8B8075D49751EB5B30C7AF
                                                                                                                                                                                                                                                                          SHA-512:D819D75CA896AF15F99185F87AF40A85A0FA6941B9E08974C6569123B601DCC8E043BE1C0F5C154E37A351A046B57D5196002B16FA7102761E3C0961D92CAC8D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/fabric/assets/icons/fabricmdl2icons.woff
                                                                                                                                                                                                                                                                          Preview:wOFF......Qt................................OS/2...X...H...`JZ}.VDMX.............^.qcmap................cvt ...\... ...*....fpgm...|.......Y...gasp...l............glyf...x..$...0.{.yyhead..7`...6...6%.d.hhea..7........$7.5.hmtx..7....M... .N..loca..<....q...D...maxp..K|... ... .|..name..K....8.......post..P........ .Q.wprep..P.........x...x.c`.`a......:....Q.B3_dHc..`e.bdb... .`@..`......os9.|...V...)00......x...S......._..m.m.m.m.m;e..y.~.......<p..a.0t.&...a.pa.0B.1..F...Q.ha.0F.3.....q.xa.0A.0L.&...I.da.0E.2L....i.ta.0C.1..f...Y.la.0G.3.....y.|a..@X0,.....E.ba.DX2,....e.ra..BX1..V...U.ja..FX3.....u.za..A.0l.6...M.fa.E.2l....m.va..C.1..v...].na..G.3......}.~a.p@80......C.a..pD82.....c.q..pB81..N...S.i..pF83.....s.y..pA.0\.....K.e..pE.2\....k.u..pC.1..n...[.m..pG.3......{.}...@x0<.....G.c...Dx2<....g.s...Bx1..^...W.k...Fx3.....w.{...A.0|.>...O.g...E.2|....o.w...C.1..~..._.o..08........?..0$........x...wx.....;..j..fwf....R. %.....4......"<.w..A.<..H.C'.E.E..
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 222 x 204, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):6336
                                                                                                                                                                                                                                                                          Entropy (8bit):7.887073484659419
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:wx46x27I7L8lRcTx3HCHBDA3B6VHj6V+Jcj:Ktv8lROx34ZA3B6VH+kO
                                                                                                                                                                                                                                                                          MD5:5D71229F6CA9EBFF5F7972F01B547C7C
                                                                                                                                                                                                                                                                          SHA1:4D71B33506E6F0EBA1C783DE37E36480F2E392BE
                                                                                                                                                                                                                                                                          SHA-256:ABC0FA95B72F082CF4FBB18267CDBD282F2909B65B1B479D7F339DB41769946E
                                                                                                                                                                                                                                                                          SHA-512:31915EB859D432D714CAA2DFF74B7E760DFFE3A672CD872EB8CF07EDDC3B544578640C315CD47802B34F4BF06B31D290C9CBEAB228BC1FA64BDAF36DC523273A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR..............y.'....IDATx^.....y.....)...5..MT....6./..f.m,@*......W.A...o&..$.Q."7............ 0k.VdI..VL.`...w.k|;...u....=.sf.~....s.9g/w..9.<.93..".H$]]..ttt..*....7g.ys.0}zg..3u....E.$C...G....|'N...jk.f.....i..X0....X8....C....^;v..:..:.a.m....rz.x<..c..q..>..S...t.s....<...o..Cw.y......<x...*....6e........3.._..9H.f..}.._......m.F.#.Wd...(.J........|yB....|...+."O+.B.=..^.6-cK...|./.t..m .f._...F.E.oum\..>.7l..l.<.f..[.H.mZFiC...-_..#....[.d..{........Z.~dd.......t.../`S.^.z...........-....Gm...n....m..2...#n!%..Ci.j..t....7..M...........8t.......^..h..d..]a.....K....L.....x6|6xM.s.M.../.]...=..........<4..l.......e......>J1.....D.;w.|..fY...x........m....W.+...9.Q>S.l..J.U.f0..._Z..Y....._s.O..!.2....u&..zo.z.-..>S..p....... .....x=u..2.M.jGb..G9.V.<;d."x@...@.......c.f.p......5....ZQ..8].<^.)c..f(.W....[...^.....gCW&.$i...I.&x.0.~8..!.x.t../>.c..:.(..cN..]XD..-...gk{.gCW9....<.'.l.... ..v.........<.....).
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:GIF image data, version 89a, 24 x 24
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):695
                                                                                                                                                                                                                                                                          Entropy (8bit):5.696679956038459
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12:HarRMs0pTestEsVEsl3Est3EshEsZ9NMzrI3TjEEofVcQ72TVkI3TjE:Har2nTeUEME23E+3EoEQ9NFj6kbjE
                                                                                                                                                                                                                                                                          MD5:648AD2F7EEA95A9B5491DCD2203B2F54
                                                                                                                                                                                                                                                                          SHA1:5FFA99938410AEBAB10B32308F242437B9432B53
                                                                                                                                                                                                                                                                          SHA-256:A3596C17DAD9A003D0BFBE0B7BA6765F51391B5C3943660316F01C8E77B323DB
                                                                                                                                                                                                                                                                          SHA-512:F7984FFEAEC122EFCBE36218979BB4C35E27007CC091BA5A8829BA5088999A3F9F7A7D5E11D90A05904D58644EC0B4E5EE1D57C68DD5270B7F456A762D8D699A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:GIF89a.............!..NETSCAPE2.0.....!.......,.................0.+......H.....V..!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,..............z...cr...!.......,.................dp.,.....H.....;..!.......,..........2......dp.,...QP.Td......F.[...v..?y...."......!.......,..........0......dp.,...QP.Td..........gO:.......Q..!.......,..........*......dp.,...QP.Td..........g.|.}.)..!.......,..........&......dp.,...QP.Td............>..!.......,..........#......dp.,...QP.Td........L.6V..!.......,.................dp.,.....H.....;..;
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):10290
                                                                                                                                                                                                                                                                          Entropy (8bit):4.837717444305284
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:iAY/Yye00RR2WxnYkSSWmcrKnmuV2UmHPRmCHpoRqiKaUVIv4DLhBA:w0RR2WxnYk5Wmw8ipo0Hu
                                                                                                                                                                                                                                                                          MD5:4DF9B0011F8AE623E26116BC635CFB36
                                                                                                                                                                                                                                                                          SHA1:0D68BBCB58D190F6E2803043A1823A3826325F33
                                                                                                                                                                                                                                                                          SHA-256:47D6DBDB766BD7EA675F68A5CE5A22654554001EFC7007A0B8C484069D9E2638
                                                                                                                                                                                                                                                                          SHA-512:3BD8C4FDCC43199DB8D4EA1E668495837AF3931EAD7EA4AC16D775D3FBDF3BC35833CF2DF86BE8492EDC82090A1ED2B79A4DC3233BC3FD064F7C46424B403745
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/moeerrorux.css
                                                                                                                                                                                                                                                                          Preview:.moe-infobar-body {.. background-color:#FCF7B6;.. border:1px solid #D9D98B;.. position:relative;.. max-height:110px;.. overflow:hidden;.. white-space: normal;..}.....moe-infobar-body:hover {.. background-color:#FEF294;..}.....moe-hovered {.. background-color:#FEF294;..}.....moe-infobar-infotable {.. width:100%;.. height:100%;.. max-height:110px;..}.....moe-infobar-top-left-cell {.. width:30px;.. min-width:30px;.. max-width:30px;.. vertical-align:top;.. padding:1px; ..}.....moe-infobar-message-cell {.. padding:7px 7px 3px 0px;.. vertical-align:top;..}.....moe-infobar-top-right-cell {.. width:20px;.. min-width:20px;.. max-width:20px;.. vertical-align:top;..}.....moe-infobar-button-cell {.. padding:0px 10px 6px 0px;..}.....moe-status-warning-icon{.. position:absolute;.. clip:rect(0px 42px 41px 0px);.. top:0px;.. left:0px;.. .. .. .. .. .. ..}.....moe-status-warning-icon_ie{.. position:ab
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):2
                                                                                                                                                                                                                                                                          Entropy (8bit):1.0
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:H:H
                                                                                                                                                                                                                                                                          MD5:99914B932BD37A50B983C5E7C90AE93B
                                                                                                                                                                                                                                                                          SHA1:BF21A9E8FBC5A3846FB05B4FA0859E0917B2202F
                                                                                                                                                                                                                                                                          SHA-256:44136FA355B3678A1146AD16F7E8649E94FB4FC21FE77E8310C060F61CAAFF8A
                                                                                                                                                                                                                                                                          SHA-512:27C74670ADB75075FAD058D5CEAF7B20C4E7786C83BAE8A32F626F9782AF34C9A33C2046EF60FD2A7878D378E29FEC851806BBD9A67878F3A9F1CDA4830763FD
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):101803
                                                                                                                                                                                                                                                                          Entropy (8bit):5.333052740426743
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:uRJ1IIdEgIamTvRJSRk9UUezt4C34zcsSClhev:uRRYamTvRJsUezt4w4ztlhev
                                                                                                                                                                                                                                                                          MD5:2F1D74149F052D3354358E9856375219
                                                                                                                                                                                                                                                                          SHA1:8019F7A2EA824930F91C3EC375D926B650FB1CFF
                                                                                                                                                                                                                                                                          SHA-256:66C70312DE6CA4E1D7EF1E858307764C241A80E7411CEE686EA2FC2D74152749
                                                                                                                                                                                                                                                                          SHA-512:2B1C4E057DBF59E89C3AA9C5DAB1FE8F512ED400088B13592E493B3D48AA334544A7999CA2DDEFA34C23D2F96A2F98B93DD0AAC80C3CF7C37D85B49C5A85A6E6
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/otel.worker.min.js
                                                                                                                                                                                                                                                                          Preview:var otelWorker=function(e){var n={};function t(r){if(n[r])return n[r].exports;var i=n[r]={i:r,l:!1,exports:{}};return e[r].call(i.exports,i,i.exports,t),i.l=!0,i.exports}return t.m=e,t.c=n,t.d=function(e,n,r){t.o(e,n)||Object.defineProperty(e,n,{enumerable:!0,get:r})},t.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},t.t=function(e,n){if(1&n&&(e=t(e)),8&n)return e;if(4&n&&"object"==typeof e&&e&&e.__esModule)return e;var r=Object.create(null);if(t.r(r),Object.defineProperty(r,"default",{enumerable:!0,value:e}),2&n&&"string"!=typeof e)for(var i in e)t.d(r,i,function(n){return e[n]}.bind(null,i));return r},t.n=function(e){var n=e&&e.__esModule?function(){return e.default}:function(){return e};return t.d(n,"a",n),n},t.o=function(e,n){return Object.prototype.hasOwnProperty.call(e,n)},t.p="",t(t.s=7)}([function(e,n,t){"use strict";t.d(n,"h",(function(){return r})),t.d(
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (14905)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):174776
                                                                                                                                                                                                                                                                          Entropy (8bit):5.310985694728771
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:OIqExHzNuCNmH/xk6TP3K5m6z9nn/pdyIbBf39VaJB:zPxHzNuumHrQ/pdcB
                                                                                                                                                                                                                                                                          MD5:0527379AFEBDAFDF75ADC3B21A97E1EF
                                                                                                                                                                                                                                                                          SHA1:C43E4BCD1C780886A6CB967B46A977A00B0A962B
                                                                                                                                                                                                                                                                          SHA-256:507ACDE11DB546DE1F68A841C16A9175A901DED72BDFD98F1AA83F755919746C
                                                                                                                                                                                                                                                                          SHA-512:63B7F8E95D525A252C466FB487F7E34D27981EA3117EDA61B59F8620A65D053A7D833791DC4F9E575A3C9FF6248A65B825DD0D3DE93CC56AC6664747E06611D3
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/10.js
                                                                                                                                                                                                                                                                          Preview:(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([[10,15,5],{292:function(e,t,n){var a;!function(i,r){"use strict";var o=function(e){if("object"!=typeof e.document)throw new Error("Cookies.js requires a `window` with a `document` object");var t=function(e,n,a){return 1===arguments.length?t.get(e):t.set(e,n,a)};return t._document=e.document,t._cacheKeyPrefix="cookey.",t._maxExpireDate=new Date("Fri, 31 Dec 9999 23:59:59 UTC"),t.defaults={path:"/",secure:!1},t.get=function(e){return t._cachedDocumentCookie!==t._document.cookie&&t._renewCache(),t._cache[t._cacheKeyPrefix+e]},t.set=function(e,n,a){return(a=t._getExtendedOptions(a)).expires=t._getExpiresDate(n===r?-1:a.expires),t._document.cookie=t._generateCookieString(e,n,a),t},t.expire=function(e,n){return t.set(e,r,n)},t._getExtendedOptions=function(e){return{path:e&&e.path||t.defaults.path,domain:e&&e.domain||t.defaults.domain,expires:e&&e.expires||t.defaults.expires,secure:e&&e.secure!==r?e.secure:t.defaults.secure}},t._
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (59425)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):64758
                                                                                                                                                                                                                                                                          Entropy (8bit):5.27301523819275
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:2EWErup6kmqRFVEk2JVZMNO8TJBZG76PmRux7ykk8Zld:2Kq6QRIkBH/x7CCld
                                                                                                                                                                                                                                                                          MD5:5238C6C5C1CBD7F3EB1095E46AD72D30
                                                                                                                                                                                                                                                                          SHA1:DAD44C1B0E5F936A92771EFD231A20D0D9C79D41
                                                                                                                                                                                                                                                                          SHA-256:73AF98C00BFBC6937101E8E207DCDD7F7564FAB05F844FBE31011C9913B17284
                                                                                                                                                                                                                                                                          SHA-512:BEA24037905D288064C85922CF2D347C4174BD7AC85A49BB3D997284B7D9D0F56CC0BA723D2C56EB40A304A6210F67042432F9F353E024C01D13514DAA13158B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/sp-client/odsp.knockout/odsp.knockout.lib-447adea9.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see odsp.knockout.lib-447adea9.js.LICENSE.txt */.(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([["odsp.knockout.lib"],{"knockout-projections-lib":function(e,t,n){var a,i,r;!function(o){"use strict";function s(e,t,n,a,i,r,o){this.inputItem=t,this.stateArrayIndex=n,this.mappingOptions=i,this.arrayOfState=r,this.outputObservableArray=o,this.outputArray=this.outputObservableArray.peek(),this.isIncluded=null,this.suppressNotification=!1,this.outputArrayIndex=e.observable(a),this.disposeFuncFromMostRecentMapping=null,this.mappedValueComputed=e.computed(this.mappingEvaluator,this),this.mappedValueComputed.subscribe(this.onMappingResultChanged,this),this.previousMappedValue=this.mappedValueComputed.peek()}function c(e,t){if(!e)return null;switch(e.status){case"added":return e.index;case"deleted":return e.index+t;default:throw new Error("Unknown diff status: "+e.status)}}function d(e,t,n,a,i,r,o,c,d){var l="number"==typeof t.moved,u=l?n[t.move
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):9258
                                                                                                                                                                                                                                                                          Entropy (8bit):5.806838074326134
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:yA0JNQoxbu9xsW4guOCrae6aakWLAnHx4FbqdyjeBR56o8ykHVPAI5em1LQxhcA3:vCJ3xnWLiR4kcS56oW1PAI5eVtPh
                                                                                                                                                                                                                                                                          MD5:5FBC6BB137EA2316DEFE300913A950DF
                                                                                                                                                                                                                                                                          SHA1:29464B148AE54621A4AAD4F7742A2A05BE6517E3
                                                                                                                                                                                                                                                                          SHA-256:82553839D3ECC08D5F9DDF58F9F466B88BFC614F9613DB9525B0E7037BF6843C
                                                                                                                                                                                                                                                                          SHA-512:D0E0EB529A240E5ED9F24E7F34AA86AB60734285596B531B36623D56867375523F6BB4CD32D4FE906572EBED129A0595DE315B5B6DD9F46AEE5342048352C5E7
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8" standalone="yes"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">.. <Id>54fe4e50-e89c-412b-a034-143b547f9c5d</Id>.. <Version>1.0.0.0</Version>.. <ProviderName>Microsoft</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. <DisplayName DefaultValue="Meeting Details">.. <Override Locale="af-ZA" Value="Vergaderingbesonderhede" />.. <Override Locale="am-ET" Value="..... ....." />.. <Override Locale="ar-SA" Value="...... ........" />.. <Override Locale="as-IN" Value="...... ....-....." />.. <Override Locale="az-Latn-AZ" Value="Toplant. T.f.rr.atlar." />.. <Override Locale="be-BY" Value="..........
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):969
                                                                                                                                                                                                                                                                          Entropy (8bit):5.171349633572766
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:2dQ4+A88T+Uy8+QQIWZdgIQAEJAoImLFJ1o02ev+Es:cWA886hPtIWkIQlJwUFJ1o05v+d
                                                                                                                                                                                                                                                                          MD5:5E6EDC73470FF3E746BC8BDAC6FB38B2
                                                                                                                                                                                                                                                                          SHA1:7DFA441D001FE0B50A5F6ED6102479662D2497DF
                                                                                                                                                                                                                                                                          SHA-256:71344C4AACBC26401DD2CFDCDB7C16625B423B4E710A0030A65D90B7E16F602D
                                                                                                                                                                                                                                                                          SHA-512:F3186C5204BAE1523433CDB852732390E02864AE37CF0E39175A369E712D6101D6486C1B3B0BE031D1A3072963C251BC7F251048D172FF71081DF92A79C8132D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>bf3a711e-f669-4fd5-8d73-100223695f2a</Id>.. <Version>1.0.0.4</Version>.. <ProviderName>lijia</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="Office first party apps" />.. <Description DefaultValue="Office first party apps" />.... <Hosts>.. <Host Name="Document"/>.. </Hosts>.... <DefaultSettings>.. <SourceLocation DefaultValue="index.html" />.. </DefaultSettings>.... <Permissions>ReadWriteDocument</Permissions>..</OfficeApp>
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1626
                                                                                                                                                                                                                                                                          Entropy (8bit):5.220736522823314
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:cWA886hPtIWyTCQuwUFJ1sq4AC0Qvk2tFtYDYKo:bA0hP2yQuwQObd1f
                                                                                                                                                                                                                                                                          MD5:BCB0C4305749B10C7E9F428F8199CAF5
                                                                                                                                                                                                                                                                          SHA1:B0AFC5BE5ABE6F91286C5F15784EC25FB318BADF
                                                                                                                                                                                                                                                                          SHA-256:996A3022BDB1C69A264B5E164E4596169D81A91DC6114F7B971FBCD2A218E69C
                                                                                                                                                                                                                                                                          SHA-512:B2D3DD04BB38314E91A20C0C67C7DD8B01F72EEF52464EECD5C876C7F932527AEF65E9FF434B8CC7E7B61CB8CD25DD8228C3B38FA895E289CB70717B1842419E
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>9202f6f9-8fe3-4cf8-9cbd-384c940fe419</Id>.. <Version>1.0.0.0</Version>.. <ProviderName>kotai</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="SDX SSO Web App" />.. <Description DefaultValue="SDX SSO Web App" />.. Icon for your add-in. Used on installation screens and the add-ins dialog -->.. <IconUrl DefaultValue="assets/icon-32.png"/>.... <Hosts>.. <Host Name="Document"/>.. <Host Name="Notebook"/>.. <Host Name="Presentation"/>.. <Host Name="Workb
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:GIF image data, version 89a, 24 x 24
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):695
                                                                                                                                                                                                                                                                          Entropy (8bit):5.696679956038459
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12:HarRMs0pTestEsVEsl3Est3EshEsZ9NMzrI3TjEEofVcQ72TVkI3TjE:Har2nTeUEME23E+3EoEQ9NFj6kbjE
                                                                                                                                                                                                                                                                          MD5:648AD2F7EEA95A9B5491DCD2203B2F54
                                                                                                                                                                                                                                                                          SHA1:5FFA99938410AEBAB10B32308F242437B9432B53
                                                                                                                                                                                                                                                                          SHA-256:A3596C17DAD9A003D0BFBE0B7BA6765F51391B5C3943660316F01C8E77B323DB
                                                                                                                                                                                                                                                                          SHA-512:F7984FFEAEC122EFCBE36218979BB4C35E27007CC091BA5A8829BA5088999A3F9F7A7D5E11D90A05904D58644EC0B4E5EE1D57C68DD5270B7F456A762D8D699A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/progress.gif
                                                                                                                                                                                                                                                                          Preview:GIF89a.............!..NETSCAPE2.0.....!.......,.................0.+......H.....V..!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,............`..Q.!.......,..............z...cr...!.......,.................dp.,.....H.....;..!.......,..........2......dp.,...QP.Td......F.[...v..?y...."......!.......,..........0......dp.,...QP.Td..........gO:.......Q..!.......,..........*......dp.,...QP.Td..........g.|.}.)..!.......,..........&......dp.,...QP.Td............>..!.......,..........#......dp.,...QP.Td........L.6V..!.......,.................dp.,.....H.....;..;
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (65530), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):126733
                                                                                                                                                                                                                                                                          Entropy (8bit):5.304212072235981
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:7izDWurKobziFSDZOw5uE2qg9cFwRVF1TA0Qo4RNRdu9MgIEdk4u0xGR5hlHpw:OzqurKobww5dg9XW0wRNRducNhvw
                                                                                                                                                                                                                                                                          MD5:C2B667FBEFF6336DA2E747BF2F788F18
                                                                                                                                                                                                                                                                          SHA1:63BB4104688FF75E227E142BB6EF7B2BA33EF3D5
                                                                                                                                                                                                                                                                          SHA-256:7555C33169FC111CF165D3D73693254F75FB2CFACBFF57990BF32AA882D0FF3A
                                                                                                                                                                                                                                                                          SHA-512:C5E22D97242C846A5819FAB8247F5342BBEFA8318E95EC0FF6B405DA11DC58382CA8ED5DEF05AD5F96932D598AE53077644365C7F6F899AC7861B08CBEA4AF70
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h7555C33169FC111C_App_Scripts/MicrosoftAjaxDS.js
                                                                                                                                                                                                                                                                          Preview:(function(){function getAugmentedNamespace(e){if(e.__esModule)return e;var t=e.default;if("function"==typeof t){var r=function e(){if(this instanceof e){var r=[null];return r.push.apply(r,arguments),new(Function.bind.apply(t,r))}return t.apply(this,arguments)};r.prototype=t.prototype}else r={};return Object.defineProperty(r,"__esModule",{value:!0}),Object.keys(e).forEach((function(t){var n=Object.getOwnPropertyDescriptor(e,t);Object.defineProperty(r,t,n.get?n:{enumerable:!0,get:function(){return e[t]}})})),r}var lib={},extendStatics=function(e,t){return extendStatics=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var r in t)Object.prototype.hasOwnProperty.call(t,r)&&(e[r]=t[r])},extendStatics(e,t)};function __extends(e,t){if("function"!=typeof t&&null!==t)throw new TypeError("Class extends value "+String(t)+" is not a constructor or null");function r(){this.constructor=e}extendStatics(e,t),e.prototype=null===t?Object.create(t):(r.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (64762), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):822074
                                                                                                                                                                                                                                                                          Entropy (8bit):5.250519458305633
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:Z19A7kRztNCFkKh8YHe6QEkZJMFiNNHOIN6ws+eE:p4FkKh9Vt2
                                                                                                                                                                                                                                                                          MD5:6F1ACDD9D2EC619017BC4A136EC18F90
                                                                                                                                                                                                                                                                          SHA1:754EC8255FD35D29DF2A7C0CB77E8EB1B2474975
                                                                                                                                                                                                                                                                          SHA-256:A3FC144B9124F0A897A3582B939A08B230FCEDC02523149023A21D3210AC63DC
                                                                                                                                                                                                                                                                          SHA-512:2C9FB326A025C2A6335D30A0A6731030D4CC0FDB1A9DB836ABCD73977404F91537B9FDEF6C9E6303A5489C32B3155BC3EF6171AD8B7DB05F6C3EB49DF6EC227F
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://appsforoffice.microsoft.com/lib/1.1/hosted/onenote-web-16.00.js
                                                                                                                                                                                                                                                                          Preview:/*...Copyright (c) Microsoft Corporation. All rights reserved...*/..../*...Your use of this file is governed by the license terms for the Microsoft Office JavaScript (Office.js) API library: https://github.com/OfficeDev/office-js/blob/release/LICENSE.md..*/..../*..* @overview es6-promise - a tiny implementation of Promises/A+...* @copyright Copyright (c) 2014 Yehuda Katz, Tom Dale, Stefan Penner and contributors (Conversion to ES6 API by Jake Archibald)..* @license Licensed under MIT license..* See https://raw.githubusercontent.com/jakearchibald/es6-promise/master/LICENSE..* @version 2.3.0..*/......// Sources:..// osfweb: 16.0\16.0.18709.15010..// runtime: 16.0\16.0.18709.15010..// core: 16.0\16.0.18709.15010..// host: 16.0\16.0.18709.15010........var OfficeExt,__extends=this&&this.__extends||function(){var e=function(t,n){return(e=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var n in t)t.hasOwnProperty(n)&&(e[n]
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):399
                                                                                                                                                                                                                                                                          Entropy (8bit):5.4514095509303475
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12:Yq033PfmtiSFH41jDEpjh9Q3arpHuS3SXR:Yq033Pe7FH49eC0Huos
                                                                                                                                                                                                                                                                          MD5:BF01F0D8C9B335148C478CB5BD5D1CE8
                                                                                                                                                                                                                                                                          SHA1:201B8087753EEAD945CF66F0FF62F4C97963B410
                                                                                                                                                                                                                                                                          SHA-256:D4B822B7F5942817185CAFAFE7E8243686F050E980939A8A69C40E8BFB0B9B0C
                                                                                                                                                                                                                                                                          SHA-512:5116CF8CAF9A0F8B7E69A1280AACFD3922A2CB406FDB724213F7345D8504769799E38A64D2AA72EDA00F833F157CCFD77F37E22C1A9F72CF0344F946E6F86CF3
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://ecs.office.com/config/v1/OneShell/1.0.0.0?agents=OneShell&IsConsumer=true&WorkloadId=OneNoteOnline&TenantId=84df9e7f-e9f6-40af-b435-aaaaaaaaaaaa&UserId=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&UPN=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a
                                                                                                                                                                                                                                                                          Preview:{"OneShell":{"M365CopilotRebrandingEnabled":true,"UpdatedConsumerAppList":true,"M365StartEnabled":true,"DisableM365StartIntentsModule":false,"default":true},"Headers":{"ETag":"\"9btqTzDiElwLNfZkRp7wFewLNoXKAK6cxU5RSHQIYfE=\"","Expires":"Wed, 26 Mar 2025 13:54:10 GMT","CountryCode":"US","StatusCode":"200"},"ConfigIDs":{"OneShell":"P-R-1535312-4-8,P-R-1157040-4-8,P-R-1131228-4-17,P-D-1117449-1-4"}}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (32011), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):53853
                                                                                                                                                                                                                                                                          Entropy (8bit):5.500009921962495
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:WFBlHId5vh+HExEP0HLVwU+megaBJpLGgVI3g6BifcqJMBSWDv6:WpHId5W0HLEagVIw6QXb
                                                                                                                                                                                                                                                                          MD5:5A8ED3646A340A247CD48F5732BAEA69
                                                                                                                                                                                                                                                                          SHA1:8A961A2C1461EB5CD8A9009911970824602F8B79
                                                                                                                                                                                                                                                                          SHA-256:C459EC1608D98A847AB4C83723E1C4B2DC6E58A7006D5566C529A93113C2EE62
                                                                                                                                                                                                                                                                          SHA-512:5421BC6C0EA27EE75F7B5633AA5757C62EE16C84E94099D301EEA9944131F8A26CE941711ACE5EFB66AD62FBD16460B31403A2B016E8CF72D1F025868CA838D8
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/aria-web-telemetry-2.9.0.min.js
                                                                                                                                                                                                                                                                          Preview:var clienttelemetry_build;!function(e){e.version="2.9.0"}(clienttelemetry_build||(clienttelemetry_build={}));var Microsoft;!function(e){var t;!function(e){var t;!function(e){e[e.BT_STOP=0]="BT_STOP",e[e.BT_STOP_BASE=1]="BT_STOP_BASE",e[e.BT_BOOL=2]="BT_BOOL",e[e.BT_UINT8=3]="BT_UINT8",e[e.BT_UINT16=4]="BT_UINT16",e[e.BT_UINT32=5]="BT_UINT32",e[e.BT_UINT64=6]="BT_UINT64",e[e.BT_FLOAT=7]="BT_FLOAT",e[e.BT_DOUBLE=8]="BT_DOUBLE",e[e.BT_STRING=9]="BT_STRING",e[e.BT_STRUCT=10]="BT_STRUCT",e[e.BT_LIST=11]="BT_LIST",e[e.BT_SET=12]="BT_SET",e[e.BT_MAP=13]="BT_MAP",e[e.BT_INT8=14]="BT_INT8",e[e.BT_INT16=15]="BT_INT16",e[e.BT_INT32=16]="BT_INT32",e[e.BT_INT64=17]="BT_INT64",e[e.BT_WSTRING=18]="BT_WSTRING",e[e.BT_UNAVAILABLE=127]="BT_UNAVAILABLE"}(t=e.BondDataType||(e.BondDataType={}));var n;!function(e){e[e.MARSHALED_PROTOCOL=0]="MARSHALED_PROTOCOL",e[e.MAFIA_PROTOCOL=17997]="MAFIA_PROTOCOL",e[e.COMPACT_PROTOCOL=16963]="COMPACT_PROTOCOL",e[e.JSON_PROTOCOL=21322]="JSON_PROTOCOL",e[e.PRETTY_JSON_PR
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (61584), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):127321
                                                                                                                                                                                                                                                                          Entropy (8bit):3.8975903207588436
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:zwgDAXsHQxmPHmLZyb92FcFxSYJVBp0HoU:DA8HQxaG0AExSYJVGN
                                                                                                                                                                                                                                                                          MD5:05BCBE9C49AF407D54E87692B8293F6E
                                                                                                                                                                                                                                                                          SHA1:8D896D4E850BE2971E3DD3B6A1DC5F5C350A3CF5
                                                                                                                                                                                                                                                                          SHA-256:82999491951A67F59BE49ABC0F8CE2BA48FB6C982807C929EBC522B8348C8D75
                                                                                                                                                                                                                                                                          SHA-512:69122C3F7EFC180B44578C7B7DC1A06BF3CB0B3811AE572A7426FF64845D2D78F44FAFEBB9FD19D547E70498B39A212E852AB718EA8FDF00623E7292CBCFB515
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/OneNoteSimplified.Wac.TellMeSuggestionModel.js
                                                                                                                                                                                                                                                                          Preview:var CoefficientModelIdMap= {15:'GetHelpFromTellMe',68:'InsertSymbolGallery',6:'HideAllNavCommand',94:'InsertEmojiGallery',79:'ToggleAuthorInfoVisibility',123:'floatiefseaOutdent',98:'InsertTable',72:'TextDirLTR',153:'DeleteColumn',49:'MenuBullet',161:'SmartLookupFromTellMe',178:'NT5',138:'floatiebtnImageGrow',30:'FormatPainter',174:'ClearPageColor',154:'NT10',188:'InsertInTableMenu',40:'AutoCorrectOptions',26:'StandardFontColorPicker',9:'FileMenuLauncher',170:'jbtnHelp',18:'NavigateToCoauthor',27:'Underline',39:'InsertPrintoutDialog',50:'AlignLeft',185:'Table',103:'ShowOnlyPagesCommand',35:'DecreaseIndent',120:'floatiefseaFormatPainter',169:'PlayMedia',56:'ToggleRibbonUXDialog',41:'EnterMarqueeSelectMode',59:'floatiebtnImageCropDialog',81:'floatiesbBullets',131:'floatiebtnImageShrink',124:'EnterInkingHighlighterMode',156:'NT3',176:'MenuCellShading',78:'InsertLink',119:'SelectTable',44:'Print',105:'mnuConflictPageLauncher',64:'ReadingView',22:'TabSwitch',55:'InsertBelow',158:'ChangeToIn
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1626
                                                                                                                                                                                                                                                                          Entropy (8bit):5.220736522823314
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:cWA886hPtIWyTCQuwUFJ1sq4AC0Qvk2tFtYDYKo:bA0hP2yQuwQObd1f
                                                                                                                                                                                                                                                                          MD5:BCB0C4305749B10C7E9F428F8199CAF5
                                                                                                                                                                                                                                                                          SHA1:B0AFC5BE5ABE6F91286C5F15784EC25FB318BADF
                                                                                                                                                                                                                                                                          SHA-256:996A3022BDB1C69A264B5E164E4596169D81A91DC6114F7B971FBCD2A218E69C
                                                                                                                                                                                                                                                                          SHA-512:B2D3DD04BB38314E91A20C0C67C7DD8B01F72EEF52464EECD5C876C7F932527AEF65E9FF434B8CC7E7B61CB8CD25DD8228C3B38FA895E289CB70717B1842419E
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000096.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2404.23003/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>9202f6f9-8fe3-4cf8-9cbd-384c940fe419</Id>.. <Version>1.0.0.0</Version>.. <ProviderName>kotai</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="SDX SSO Web App" />.. <Description DefaultValue="SDX SSO Web App" />.. Icon for your add-in. Used on installation screens and the add-ins dialog -->.. <IconUrl DefaultValue="assets/icon-32.png"/>.... <Hosts>.. <Host Name="Document"/>.. <Host Name="Notebook"/>.. <Host Name="Presentation"/>.. <Host Name="Workb
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (41569), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):41569
                                                                                                                                                                                                                                                                          Entropy (8bit):5.349246096567034
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:wwstGDociKcWpWS8neDvci6hR5fZ2tF3t97D0QeIHcTzeC:wBlneDvci6hR5fZyt97QLIUz
                                                                                                                                                                                                                                                                          MD5:345BFF8D2E34511694D9D12A008F5F5D
                                                                                                                                                                                                                                                                          SHA1:B3F35302052C26C285C43B935BCE972904E62E28
                                                                                                                                                                                                                                                                          SHA-256:DD4039F8AFAC6FD76B462C4FD4F90374B18DB762719108491AC2E365196D71AC
                                                                                                                                                                                                                                                                          SHA-512:5B6A9EB510BFBD7198D00BA674FEB6D04B6E95A7E359A0C9B1C17086FACA1859AE4FE126985812C0AB1E87FEA963FA9B169C3A21A7DA534EC79B972D0935A692
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wacairspaceanimationlibrary.js
                                                                                                                                                                                                                                                                          Preview:function WacCurve(n,t,i,r,u,f){this.ID=n;this.type=t;this.x1=i;this.y1=r;this.x2=u;this.y2=f}function WacIntWrapper(n,t){this.value=n;this.contextId=t}function WacKeyFrame(n,t,i,r,u,f,e,o){this.type=n;this.curveID=t;this.startTime=i==null||i.value==undefined?new WacIntWrapper(i,null):i;this.endTime=r==null||r.value==undefined?new WacIntWrapper(r,null):r;this.startValue=u==null||u.value==undefined?new WacIntWrapper(u,null):u;this.endValue=f==null||f.value==undefined?new WacIntWrapper(f,null):f;this.relativeTo=e;this.operationType=o}function WacAnimation_ContextVariableManager(){}function WacAnim(n,t){this.ID=n;this.keyFrames=t}function WacAnimationEngine(){this.AnimationQueue=new Array(0);this.sharedTimer=null;this.sharedCancelTimer=null;this.resetInterval=5e3;this.sharedTimerRefs=0;this.conflictTable=new Array(0);this.currentAnimationIndex=-1;this.temporaryIDGenerator=0}function WacAnimation_State(){this.Index=0;this.Data=new Array(0);this.AnimateRight=!1}function WacAnimation_Object(n
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):472882
                                                                                                                                                                                                                                                                          Entropy (8bit):5.395376524575518
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:12288:ww8JjHqc4zxn+9xVpkJ59tJjsPY0S37B+e+r:R+r
                                                                                                                                                                                                                                                                          MD5:BDB53E35942C1755B77C9C94E6D9AC22
                                                                                                                                                                                                                                                                          SHA1:90D56EAA0D60D60BCE69E3D9304207CD8698C30A
                                                                                                                                                                                                                                                                          SHA-256:5368D884C4219D58A239AEE7939A9D324CA03EE1F0EC4E1062E7929432E737C2
                                                                                                                                                                                                                                                                          SHA-512:95AF6DA909CB34402BE572B1C25E5093F3AA9201B8C8952647AAA79897436F548D3154CDAAA895C88003B9A2D239E56615260B9E76C4B532244499015E7610D0
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h5368D884C4219D58_resources/1033/OneNote.Refresh.css
                                                                                                                                                                                                                                                                          Preview:.headBrand{cursor:default;line-height:48px;font-size:22px;margin-left:20px;margin-right:20px;font-family:'SegoeUI-SemiLight-final','Segoe UI SemiLight','Segoe UI WPC Semilight','Segoe UI',Segoe,Tahoma,Helvetica,Arial,sans-serif;}.cui-topBar1-transistionalHeaderUI .headBrand{width:auto !important;height:24px !important;line-height:normal !important;padding-bottom:12px;padding-top:12px;display:inline-block;font-size:17px;font-family:inherit;margin-left:17px;margin-right:17px;font-family:'Segoe UI','Segoe UI Web',Arial,Verdana,sans-serif;}.cui-topBar1-transitionalReactHeaderUI .headBrand{width:auto !important;line-height:48px !important;padding:0 6px;display:inline-block;font-size:16px;font-weight:600;font-family:"Segoe UI","Segoe UI Web (West European)","Segoe UI",-apple-system,BlinkMacSystemFont,Roboto,"Helvetica Neue",sans-serif;}@font-face{font-family:"Segoe UI Web Light";font-style:normal;font-weight:normal;src:local("Segoe UI Light"),url('./segoeuil.woff') format('woff'),url('./sego
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/production/50/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):3844
                                                                                                                                                                                                                                                                          Entropy (8bit):5.135338065935734
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:7AMyhQoDXbNLGs2sY5Q4zy9c+EkhG6mADEA0SVP+c5QVy+/:F4MMDE4DEA0SV2c5QVyI
                                                                                                                                                                                                                                                                          MD5:096BC064579D6CB8343FAD87F4348DDC
                                                                                                                                                                                                                                                                          SHA1:6A434AF3631E26E9AAE70F0A69061F5C6A464978
                                                                                                                                                                                                                                                                          SHA-256:6E0313D7151FBB318B4B1EB6C05946901980EFFEC2CCD6C870472CAD285DDDDB
                                                                                                                                                                                                                                                                          SHA-512:137339F3DFD451BACEAD31CD960BC2907B7B6E4B1A76247753FBE0B645FDCAC12AF4633DC5AEC1B2DD44505CE6F3B102FDBD431103D24D7CDA938E22C9CE8599
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">.. <Id>93155735-fd84-4d6f-9433-305bdb6cb523</Id>.. <Version>2.0.0.0</Version>.. <ProviderName>Microsoft Corporation</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. <DisplayName DefaultValue="Help" />.. <Description DefaultValue="In-App Help provided by support.office.com" />.. <IconUrl DefaultValue="https://support.office.com/icon32.png" />.. <HighResolutionIconUrl DefaultValue="https://support.office.com/icon80.png" />.. <SupportUrl DefaultValue="https://support.microsoft.com" />.. <AppDomains>.. <AppDomain>https://login.live.com</AppDomain>.. <AppDomain>https://login.live-int.com</AppDomain>.. <AppDomain>https://login.windows.ne
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):27
                                                                                                                                                                                                                                                                          Entropy (8bit):3.708048150071232
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:HyjJTzMKHJu:HyjNz5pu
                                                                                                                                                                                                                                                                          MD5:435B48C70ACA2DC80F8B34B5FDEB2789
                                                                                                                                                                                                                                                                          SHA1:FFE2C8567607568F939FA1A6F9888639B98B400C
                                                                                                                                                                                                                                                                          SHA-256:6468AC9F9BCA964F3910FC967B80781C1C8634300E36F95AE49056D91A2734BF
                                                                                                                                                                                                                                                                          SHA-512:5C73531F908067B986F4F7F1BB423DC6FC4B1CDC9A6C65205658BD2A2499CB53F0F1C4EB928B8B87B189D969C3769F9D97EA5AB1CEA97FE6F18D2DD4AD583C60
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:The service is unavailable.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):3831
                                                                                                                                                                                                                                                                          Entropy (8bit):5.120639874211328
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:itGurLtJwqfjH6CIuRxs0gPhtxq+jLqXnvZQQ2:itGu3t+yb6CBUHN
                                                                                                                                                                                                                                                                          MD5:72D9A825554620C51BF0018A457E7F2E
                                                                                                                                                                                                                                                                          SHA1:23400E26C69A1F8A47236FFAD4BC80FC80BA773E
                                                                                                                                                                                                                                                                          SHA-256:365009220D893F07B356C7F253CECD5A9F7E06D6207A3DD7A148FC73812B4FE6
                                                                                                                                                                                                                                                                          SHA-512:9212035EFC74AD61A74FA806229E4A97BB9FB50698B0B15BD7296AD53B6A2C9A43D0A3E2082286F4AC60167E129E07CB511638A103C510DB3B5ADA6A383165A6
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/ExternalResources/js-cookie.js
                                                                                                                                                                                                                                                                          Preview:/*!.. * JavaScript Cookie v2.1.3.. * https://github.com/js-cookie/js-cookie.. *.. * Copyright 2006, 2015 Klaus Hartl & Fagner Brack.. * Released under the MIT license.. */..;(function (factory) {...var registeredInModuleLoader = false;...if (typeof define === 'function' && define.amd) {....define(factory);....registeredInModuleLoader = true;...}...if (typeof exports === 'object') {....module.exports = factory();....registeredInModuleLoader = true;...}...if (!registeredInModuleLoader) {....var OldCookies = window.Cookies;....var api = window.Cookies = factory();....api.noConflict = function () {.....window.Cookies = OldCookies;.....return api;....};...}..}(function () {...function extend () {....var i = 0;....var result = {};....for (; i < arguments.length; i++) {.....var attributes = arguments[ i ];.....for (var key in attributes) {......result[key] = attributes[key];.....}....}....return result;...}.....function init (converter) {....function api (key, value, attributes) {.....var res
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/msit/10/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):146203
                                                                                                                                                                                                                                                                          Entropy (8bit):5.279551144474864
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:491pfLcEiSvqN5wbuplzgS2PUKF3EipjAoi:491pfLcEiHlplzgS2PUKF3EipjAoi
                                                                                                                                                                                                                                                                          MD5:F73D41CD810D3F153A9CD9134F72E1B4
                                                                                                                                                                                                                                                                          SHA1:A3DF3F80D3E7A532012A660795657086D781392F
                                                                                                                                                                                                                                                                          SHA-256:10B7463897E95B574D0711176DA059BCE30FA292109B6E96B423275F60C29907
                                                                                                                                                                                                                                                                          SHA-512:D58901B6510973F32B6EA7840AC971CF9CB6E50413C0CE26363A5996EF1A2C8DAB088E5236DECE77A9CB5E912089E9E680ECB5FC43768F58CE04C291024BC917
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h10B7463897E95B57_App_Scripts/wp5/onenoteSyncNew.min.js
                                                                                                                                                                                                                                                                          Preview:var onenoteSync;!function(){var t={992:function(t,n,e){t.exports=function(){"use strict";var t=function(){return t=Object.assign||function(t){for(var n,e=1,r=arguments.length;e<r;e++)for(var i in n=arguments[e])Object.prototype.hasOwnProperty.call(n,i)&&(t[i]=n[i]);return t},t.apply(this,arguments)};function n(t,n,e){if(e||2===arguments.length)for(var r,i=0,s=n.length;i<s;i++)!r&&i in n||(r||(r=Array.prototype.slice.call(n,0,i)),r[i]=n[i]);return t.concat(r||Array.prototype.slice.call(n))}var r="undefined"!=typeof globalThis?globalThis:"undefined"!=typeof self?self:"undefined"!=typeof window?window:e.g,i=Object.keys,s=Array.isArray;function o(t,n){return"object"!=typeof n||i(n).forEach((function(e){t[e]=n[e]})),t}"undefined"==typeof Promise||r.Promise||(r.Promise=Promise);var u=Object.getPrototypeOf,a={}.hasOwnProperty;function c(t,n){return a.call(t,n)}function h(t,n){"function"==typeof n&&(n=n(u(t))),("undefined"==typeof Reflect?i:Reflect.ownKeys)(n).forEach((function(e){l(t,e,n[e])}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (41340)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):41364
                                                                                                                                                                                                                                                                          Entropy (8bit):5.512836756279594
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:mDM/kYhNJMtSqYtlMw750kBQ216XHKkHzyUNwRuPXei3:mokYhoslp1vs3TyUNwRuPOW
                                                                                                                                                                                                                                                                          MD5:293ED5006295F218FA8EEC316FB5DEDD
                                                                                                                                                                                                                                                                          SHA1:04CA371B2820A0672A599E3DF0F1C071A84154A8
                                                                                                                                                                                                                                                                          SHA-256:9D7242D5AEB64B749B6F59937AFC72B40C4FDDF7606BB01EAEBDBD0BA2C053F3
                                                                                                                                                                                                                                                                          SHA-512:6E5B5BE722BCDE36AA683259F566E046FE64EAAC59681FB81F5296B8239D2FBE0ED0BBB62D02BD31B97395B57489565F50009918D8383A09E56F6494F1C831B8
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/CommonDiagnostics.js
                                                                                                                                                                                                                                                                          Preview:/*! Version=16.0.0.0 */.if(!window)window=this;var Type=Function;window.Type=Type;Array.$F=function(a,b){a.push(b)};Array.clear=function(a){a.length=0};Array.$1p=function(a,b){return Array.$1O(a,b)>=0};Array.$1O=function(c,e,a){if(c.indexOf)return c.indexOf(e,a);a=a;if(isNaN(a))a=0;var d=c.length;if(isFinite(a))a=a|0;if(a<0)a=Math.max(0,d+a);for(var b=a;b<d;b++)if(c[b]===e)return b;return-1};Array.dequeue=function(a){return a.shift()};Array.enqueue=function(a,b){Array.$F(a,b)};Array.$2O=function(b,c){var a=Array.$1O(b,c);a>=0&&Array.$1z(b,a);return a>=0};Array.$1z=function(a,b){a.splice(b,1)};Array.__typeName="Array";Array.$1e=true;Boolean.__typeName="Boolean";Boolean.$1e=true;Date.$27=function(f,c){for(var d=0,a=false,b=0,g=f.length;b<g;b++){var e=f.charAt(b);switch(e){case"'":if(a)c.$0("'");else d++;a=false;break;case"\\":a&&c.$0("\\");a=!a;break;default:c.$0(e.toString());a=false}}return d};Date.$2E=function(a,b){if(!b)b="F";if(b.length===1)switch(b){case"d":return a.ShortDatePatter
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (65526), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):266754
                                                                                                                                                                                                                                                                          Entropy (8bit):5.856212273981159
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:fHuKUcIuUFveAqMfJVHpOPaXD9NSt1SxfowHZTiv281ug3a:fHuKURuUBMkMt1lp3a
                                                                                                                                                                                                                                                                          MD5:6863F0E5CB6D79ACBDF2D0470F73AAAD
                                                                                                                                                                                                                                                                          SHA1:E93893DC08444DC2865AB9E0FD08072DDDA833A6
                                                                                                                                                                                                                                                                          SHA-256:6E8A617FE6B5839BA52530EF00D9EA2BDAB1F8C67C6010B6EC60BD6128615C3B
                                                                                                                                                                                                                                                                          SHA-512:DAAFDBF2D35D8CBB999B91CC258C835DF25F197FBBCC3684C11B978ADFAF2E19CF287B9D73141E980521BEC444AA450B1332FA30171658426CE660A790C0B836
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/oreonavpane.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[613],{78744:function(e,n,t){var i=t(94329),o=t(36706)(i);o.push([e.id,".menu__menu___J9EM_ {\n overflow: hidden;\n}\n\n.menu__menu___J9EM_ .ms-FocusZone.ms-ContextualMenu.is-open {\n font-family: 'Segoe UI', Arial, Verdana, Sans-serif;\n font-size: 12px;\n color: #444;\n z-index: 1001;\n min-width: auto;\n background-color: white;\n overflow: hidden;\n}\n\n.ms-ContextualMenu-item.menu__item___HMPdI .ms-ContextualMenu-link[disabled]:hover {\n background-color: transparent;\n border-color: transparent;\n transition: none;\n}\n\n.ms-ContextualMenu-item.menu__item___HMPdI .ms-ContextualMenu-link.is-expanded,\n.ms-ContextualMenu-item.menu__item___HMPdI .ms-ContextualMenu-link:hover {\n background-color: #f0daee;\n border-color: #f0daee;\n color: inherit;\n font-weight: inherit;\n}\n\n.menu__menu___J9EM_ .ms-ContextualMenu-divider {\n height: 1px;\n margin-left: 20px;\n margin-right: 5px;\n display:
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, Unicode text, UTF-8 (with BOM) text, with very long lines (4207), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):4212
                                                                                                                                                                                                                                                                          Entropy (8bit):5.732834657954366
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:Rm/hpTwpHpypYYqeQkpYYFNtjEYtDE0kypOKeklKVuAmM3oVKCM3j++j+xUJo8/q:iyzh0QYtD5o6Im+n36+jLXYKMVp/
                                                                                                                                                                                                                                                                          MD5:5780200B7FE28C3F2C46864A012246E5
                                                                                                                                                                                                                                                                          SHA1:03A13FDC8A8CC7DBECE15E23105EA6E870105133
                                                                                                                                                                                                                                                                          SHA-256:0EF96689F29280B58D5024539DFE352EC9DD520CA1EDA5E24F0AEBD31DE0A560
                                                                                                                                                                                                                                                                          SHA-512:4FCC868D4E3401728FE4AEBB2AF8D2DB937309EA98EB916E02CF85E61504170C5B7B62C3169D4BE130363552063B1232575CDD9863026CAB2816DA96BD03AD26
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://onenote.officeapps.live.com/o/error/error.html?aspxerrorpath=/o/null&DataUrlEnabled=true
                                                                                                                                                                                                                                                                          Preview:.<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml" ><head><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title></title><script type="text/javascript"> var l_ErrorImageAlt_Text = "The service is unavailable"; var l_ErrorHeader_Text = "Service Unavailable"; var l_ErrorLine1_Text = "We are currently experiencing technical difficulties."; var l_ErrorLine2_Text = "Please try again later."; var l_ErrorHeaderStyle_Text = "font-family: calibri, tahoma, verdana, arial, sans serif; font-size: 18pt; color: #444444; line-height: 150%"; var l_ErrorTextStyle_Text = "font-family: calibri, tahoma, verdana, arial, sans serif; font-size: 10pt; color: #444444"; var language = "en-us"; function writeLocalizedErrorMessage() { getBrowserLanguage(); loadScript(); try{ if(window.parent.g_enableFramePageErrorReporting) { const message = { MessageId: "Wac_AppFailed", SendTim
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):123
                                                                                                                                                                                                                                                                          Entropy (8bit):4.739264532220853
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:qLdFqDmJS4RKYPQMHzAGGFivYM2NAEto5HXMd2HacWWGb:qp4mc4sVezAGSKYFAEyXMeXfGb
                                                                                                                                                                                                                                                                          MD5:110868F9EC11E396D97ED9289064D046
                                                                                                                                                                                                                                                                          SHA1:3E5FF538A088C9D06F1ADC9F0E82E30FB9D6E3A1
                                                                                                                                                                                                                                                                          SHA-256:C1DC3E248A3C0494BBF760B8E2A6B3E38A3507043FCC4CCBEB533B90EAE45F50
                                                                                                                                                                                                                                                                          SHA-512:01A891D5B8C14BF7845F4AE51A01AD34F68F9583A4EEA4C07AC265FAA06BD5D6B01DB18F54A3DFCD11A4BFAAA33114264CE650567D65E6A1554E81E00001E377
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://oauth.officeapps.live.com/oa/OAuth.html
                                                                                                                                                                                                                                                                          Preview:<html xmlns="http://www.w3.org/1999/xhtml" >.. <head>.. <meta charset="UTF-8">.. </head>.. <body>.. </body>..</html>
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (1813)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1858
                                                                                                                                                                                                                                                                          Entropy (8bit):5.233514255984669
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:Tx2l7uZhPMpirdUSbLuhGLxS3IH9sWRhCt:ThBvuhGL4IH9sWRhCt
                                                                                                                                                                                                                                                                          MD5:C15499F1B81749DA1FF06394D4C06D7D
                                                                                                                                                                                                                                                                          SHA1:2393E589949E6EEBF4808FB761EAAED491F2AAB2
                                                                                                                                                                                                                                                                          SHA-256:B8625245F8D03ACCECDFE6666788534D0ACAD879B1791E185002DEEC5023E34E
                                                                                                                                                                                                                                                                          SHA-512:F2F7CC32DFA044EC692E8E79B8C81F3507C31E74419A83B12E3840708D5E7A200212E5DECB010747A28E6D50F2A41BBCBFF3F8B191692D1C8DDF790C7BBB898D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/uiFabricLazy.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[288],{71574:function(e,n,t){t.r(n),t.d(n,{Callout:function(){return l}});var o=t(32932),r=t(26101),a=t(12295),u=t(53314),l=r.forwardRef((function(e,n){var t=e.layerProps,l=e.doNotLayer,i=(0,o.Tt)(e,["layerProps","doNotLayer"]),s=r.createElement(a.s,(0,o.Cl)({},i,{doNotLayer:l,ref:n}));return l?s:r.createElement(u.W,(0,o.Cl)({},t),s)}));l.displayName="Callout"},25061:function(e,n,t){t.r(n),t.d(n,{ContextualMenu:function(){return p}});var o=t(32932),r=t(26101),a=t(3857),u=t(27733),l=t(78129),i=t(7069),s=t(15523),d={root:"ms-ContextualMenu",container:"ms-ContextualMenu-container",list:"ms-ContextualMenu-list",header:"ms-ContextualMenu-header",title:"ms-ContextualMenu-title",isopen:"is-open"};function c(e){return r.createElement(m,(0,o.Cl)({},e))}var m=(0,a.I)(l.wb,(function(e){var n=e.className,t=e.theme,o=(0,i.Km)(d,t),r=t.fonts,a=t.semanticColors,u=t.effects;return{root:[t.fonts.medium,o.root,o.isope
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (1922), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1922
                                                                                                                                                                                                                                                                          Entropy (8bit):5.006174566262526
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:yThd/YIWeETNQuFNJMgBVAGzeFWOUutFRVoZjskBWs:U0IWYuPuG3yov
                                                                                                                                                                                                                                                                          MD5:3E3CD75B07B521BC61C01450E2C7873A
                                                                                                                                                                                                                                                                          SHA1:57D7881E0E878CABE74B1021CF86126148928DE7
                                                                                                                                                                                                                                                                          SHA-256:2882BF4B22D0AD63E6F8877EB5C22353921E8C87B197911462933B7D1A7A44B8
                                                                                                                                                                                                                                                                          SHA-512:3B1D53CB1F49B2CF8648CEF8EDEB526B924430F2FC622421DF6AB3F61E49449CD5EB8BCCC7E6A019575A4843B0D3C50A69C4B0BF1D1133F960E92969CAC37BE7
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/BrowserUls.js
                                                                                                                                                                                                                                                                          Preview:function InitializeUls(){TheUlsHost=new Diag.ConsoleUlsHost;Diag.ULS.setUlsHost(TheUlsHost)}function FlushBrowserUls(){TheUlsHost&&TheUlsHost.dispose();InitializeUls()}var __extends=this.__extends||function(n,t){function r(){this.constructor=n}for(var i in t)t.hasOwnProperty(i)&&(n[i]=t[i]);r.prototype=t.prototype;n.prototype=new r},Diag,TheUlsHost;(function(n){var t=function(){function n(){}return n.prototype.isEnabled=function(){var n=!1;try{typeof Storage!="undefined"&&(n=localStorage.getItem("EnableConsoleLogging")==="true")}catch(t){}return n&&window.console&&window.console.log},n.prototype.error=function(n){window.console.error(n)},n.prototype.warning=function(n){window.console.warn(n)},n.prototype.info=function(n){window.console.info(n)},n.prototype.log=function(n){window.console.log(n)},n}(),i=function(i){function r(r,u){r===void 0&&(r=new t);i.call(this,SessionId,BrowserUlsUploadPath,new n.UlsUploadConfiguration(null,null,null,null,null,null,!0));this._console=r;this._suppress
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):184541
                                                                                                                                                                                                                                                                          Entropy (8bit):5.525066298238319
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:eQJgEeDNMzE2w0mRmQsXhrbrYYcHZDFNwP3AWx1BomKbT7SiPRu/8vRKBMS:SLDNao7mVXhrbr1YZDFNw/9omKbcBp
                                                                                                                                                                                                                                                                          MD5:181554C4C481FEF68BA5338CF9848C91
                                                                                                                                                                                                                                                                          SHA1:AF5414B1FDA1A8D1878C8645C6B3ED97ADC8BA50
                                                                                                                                                                                                                                                                          SHA-256:45740FC235801D70B653F80DE6B729F9455E1763B7389C9968D7CE09617366AC
                                                                                                                                                                                                                                                                          SHA-512:8ECB98FB672C40C97D1FBDC2230E5A3656BCE96A8B92437F926C5EC843418B54991E5FA3762A86F4949BA797967CD478D350C61C8BB2AC03D64E52F1CC5DB0B4
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/wise/owl/owl.slim.ab837f2adcf05cbb8e21.js
                                                                                                                                                                                                                                                                          Preview:var Microsoft;!function(){"use strict";var t,e,n,o,i={3045:function(t,e,n){n.d(e,{h:function(){return s}});var o=n(72379),i=n(14521),r=n(39292),s=function(t){function e(){var e=null!==t&&t.apply(this,arguments)||this;return e.value=null,e.hasNext=!1,e.hasCompleted=!1,e}return o.C6(e,t),e.prototype.U=function(e){return this.hasError?(e.error(this.thrownError),r.y.EMPTY):this.hasCompleted&&this.hasNext?(e.next(this.value),e.complete(),r.y.EMPTY):t.prototype.U.call(this,e)},e.prototype.next=function(t){this.hasCompleted||(this.value=t,this.hasNext=!0)},e.prototype.error=function(e){this.hasCompleted||t.prototype.error.call(this,e)},e.prototype.complete=function(){this.hasCompleted=!0,this.hasNext&&t.prototype.next.call(this,this.value),t.prototype.complete.call(this)},e}(i.B7)},44739:function(t,e,n){n.d(e,{t:function(){return s}});var o=n(72379),i=n(14521),r=n(46624),s=function(t){function e(e){var n=t.call(this)||this;return n.N=e,n}return o.C6(e,t),Object.defineProperty(e.prototype,"val
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):72
                                                                                                                                                                                                                                                                          Entropy (8bit):4.241202481433726
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YozDD/RNgQJzRWWlKFiFD3e4xCzY:YovtNgmzR/wYFDxkY
                                                                                                                                                                                                                                                                          MD5:9E576E34B18E986347909C29AE6A82C6
                                                                                                                                                                                                                                                                          SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                                                                                                                                                                                                                                          SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                                                                                                                                                                                                                                          SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:MS Windows cursor resource - 1 icon, 32x32, hotspot @16x16
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):4286
                                                                                                                                                                                                                                                                          Entropy (8bit):0.3626382302432769
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:GlFFHvDllfl/t+lVsu/jXpRq/uXJRi/uXZRi/uXJRq/uX3XXRLtutpaKsx67YTsD:Gl/qlOeTjq2Di2Ti2Dq2nBL4OxhG5
                                                                                                                                                                                                                                                                          MD5:04D59A1FFDA7020CBDA1BB9FCBF0BCA0
                                                                                                                                                                                                                                                                          SHA1:E0CACE5751F02AF9E12B3C066FFD542F3D12A279
                                                                                                                                                                                                                                                                          SHA-256:EDC250E23E06AE7D15C1C19FDF9C6759129796B0A2F76DC82DF665C823C7B495
                                                                                                                                                                                                                                                                          SHA-512:A997D4384DA8D401321C497F49F73F0C79C1815DFD8B679458385D4E4A8ED2F645DDCF940A9347EA35F2D7AD3EE710F06784E8E1B1461AB7E8633BFF0FE0A691
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:...... ..............(... ...@..... ...................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):38738
                                                                                                                                                                                                                                                                          Entropy (8bit):4.783870045608254
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:81W1v1X1w1v1a1p1+1R1v151X1x1b1R1B18I1EGF1ES1F1L1U1G1A1D1K1f1W1pD:81W1v1X1w1v1a1p1+1R1v151X1x1b1Rw
                                                                                                                                                                                                                                                                          MD5:0419425E871311248E8C940BF4836442
                                                                                                                                                                                                                                                                          SHA1:7B627CA4EF22E38E5431F16083099BD15155361F
                                                                                                                                                                                                                                                                          SHA-256:B12C558DA6F060D5845365221862604E642D4A58A8558E51FBB1784107E53338
                                                                                                                                                                                                                                                                          SHA-512:A19F736CE2B82E6588F81F9F10464EF6C2236428790F9B11C07018EF5F6079FFCEB67EEFD265E83495D74B0C182E2FA49A71C3451DDA919D8571451DBC66CA57
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"dashboard":{"cdnUrl":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/","loaderSpec":{"type":"scriptUrl","content":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/dashboard.en.bundle.js"},"version":"2025.3.20.2"},"groups":{"cdnUrl":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/","loaderSpec":{"type":"scriptUrl","content":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/groups.en.bundle.js"},"version":"2025.3.20.2"},"app-mgmt":{"cdnUrl":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/","loaderSpec":{"type":"scriptUrl","content":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/app-mgmt.en.bundle.js"},"version":"2025.3.20.2"},"esign":{"cdnUrl":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/","loaderSpec":{"type":"scriptUrl","content":"https://res.cdn.office.net/admincenter/admin-main/2025.3.20.2/esign.en.bundle.js"},"version":"2025.3.20.2"},"viva-goals-organization-views":{"cdnUrl":"
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):109
                                                                                                                                                                                                                                                                          Entropy (8bit):4.66560738606782
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YmEoEMCL2RH2hAcBQMh0wVWu+xJs/FEH2MmRJBUn:YmEoYL2HuAJW0m+sNb2n
                                                                                                                                                                                                                                                                          MD5:B22CAC36842DCB642F5BFF86C0FF2FB9
                                                                                                                                                                                                                                                                          SHA1:7F0557D5258453F55C1DB5DD40AB7F1C31932655
                                                                                                                                                                                                                                                                          SHA-256:E25ABD11267B28557444D53A9A3BF52A796DF20A14205FDE0B19C6B8287976B3
                                                                                                                                                                                                                                                                          SHA-512:D991A7C2B5552EF795F01450BEB8FE91785FAB87DD53361AD4048972BADB46180966120B0EF42B647654DE6CB8E8DF6D13EFDC2C170CB498FD8DBAC63629ADAC
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"CampaignContent":{"campaigns":[]},"DynamicSettings":{"TmsLoadTimeout":3000,"TeachingMessageCooldown":3600}}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/production/1/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1115
                                                                                                                                                                                                                                                                          Entropy (8bit):7.474905425501729
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:OQkGe2gKOcQO9S80Axzhkzc7iFTZkqeNblj5ILlN0EFgFahPKN7FqP8:OQkRrTCbxzwSiZLCN52TFgM5KN7Fp
                                                                                                                                                                                                                                                                          MD5:084E7612635DFCF69A16255B41E70CAA
                                                                                                                                                                                                                                                                          SHA1:0D9721AA70B01487D3340B864C0BD49FB1D95206
                                                                                                                                                                                                                                                                          SHA-256:7B389747818635BCA6FE76F5E3226EDA36AF53D8F27526796BC975EBD440A395
                                                                                                                                                                                                                                                                          SHA-512:A0104DBB40429BCA5F54061CE6D36A695283D883CE1B732CA87A30743234D29BEBA07A0100DE0DE0B274A70C8C7C289574F6343DF16C3E4C7B6453F60E8737B9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/agavedefaulticon96x96.png
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...`...`......w8....sRGB.........gAMA......a.....pHYs..........o.d....IDATx^.k.A.....@ .6.* ..H...R....V....l.! X..Z..Z..... X... .. .{.^fw...{.fv..70.~..|........ .. .. .. .. .. .. .. .. .. .. ..3.8.1q....(.&.....B.o.."w..Y.....]......~0N0....]..z....|.n.*......._..O...9..8@..K./..%..[..LQ.rm:.H.>...-..;,...9.G.n....`.{..-.F...'.?...y..]H..o{y..#.....]..x|...K.(x|p~.....r..R..~\.2.Y...f.Q..i...o...r.........Gc..Bp.Ol..\(...~.T...,....j.O.(e......j(e. ...Z....Rf......j(e. ...Z....Rf......j(e.....D.,Y.....~..n.[.........PA....]....0.mK...sE.........J~}z[.!n...RV|.#.......7s.......)B.e;j2.........tX..k.....o.V....j.k3*A........9..?R....Z....5t..j....f.Z.....E.L....J..7.}Uk.......H..i.Z...1...x$....]<I.......#ixw..h.h.h.a.4....9.&.v.....2i..D..l...'.-.+.._...eLZ...M..x..1%.g....'A..X.....jkK.^W.}.m...T....|...._.^.[..~u'...mco.8...nT....d.m.I.b..M.4...s.U.;Yu...k.1|..93a..(M..2..U......B..S..O...........c.......?)....iz.D...T.D!....R
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (7902), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):8587
                                                                                                                                                                                                                                                                          Entropy (8bit):5.419456577525882
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:TJLex2qJHOn2ziq5j3NwXGyyQJDzGyMSwUGy6yqAtozpD:sN+y+WyPzGyMSwXy6EWpD
                                                                                                                                                                                                                                                                          MD5:2609EBBB1B0E0C33AFDC3257084C6FA4
                                                                                                                                                                                                                                                                          SHA1:4F863D05F4FE6970124CC13E9D31B0984EB3C60E
                                                                                                                                                                                                                                                                          SHA-256:448B9B8A99FC68723AEA87B4F3719DCDA329A7E8E5CF20F9D656B98690842C1E
                                                                                                                                                                                                                                                                          SHA-512:36C5187CC8789C947D38E3701A10B5418EBD245F049A020493AC06810B79E3076814EDB0DAA34F7D36FF95A0B81528B362DF220AE45ACD301DE572C4A1944BD0
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/mathjax/extensions/MathZoom.js?rev=2.5.3
                                                                                                                                                                                                                                                                          Preview:/*.. * /MathJax/extensions/MathZoom.js.. *.. * Copyright (c) 2009-2015 The MathJax Consortium.. *.. * Licensed under the Apache License, Version 2.0 (the "License");.. * you may not use this file except in compliance with the License... * You may obtain a copy of the License at.. *.. * http://www.apache.org/licenses/LICENSE-2.0.. *.. * Unless required by applicable law or agreed to in writing, software.. * distributed under the License is distributed on an "AS IS" BASIS,.. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied... * See the License for the specific language governing permissions and.. * limitations under the License... */....(function(a,d,f,c,j){var k="2.5.0";var i=a.CombineConfig("MathZoom",{styles:{"#MathJax_Zoom":{position:"absolute","background-color":"#F0F0F0",overflow:"auto",display:"block","z-index":301,padding:".5em",border:"1px solid black",margin:0,"font-weight":"normal","font-style":"normal","text-align":"left","text-indent":
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):220858
                                                                                                                                                                                                                                                                          Entropy (8bit):5.627514521924271
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:pPtUzlV8et03/a5ppR9e1h722VtnNRaAOsyjcrM6SkPV:56zfPt03y519e1FVtbaIOkt
                                                                                                                                                                                                                                                                          MD5:3502B3547A094AF841F569608ECC7B81
                                                                                                                                                                                                                                                                          SHA1:5C531000F40CE6CDC9CB12286E4B5F38AD8B8D04
                                                                                                                                                                                                                                                                          SHA-256:20288FE8706FDC199D5C3832CAA55B69B64C7C811018F5F1273831FE078978A8
                                                                                                                                                                                                                                                                          SHA-512:F0D1E837B1FA52AB58D2967B739DC5D91A4292F40AC253349F09BA2C461A16E84AD92409BCB0D78CC28F373C2377C7F6D312BFAE82B6A9F2E685C715A7AFF1EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/OneNoteSimplified.Wac.TellMeModel.js
                                                                                                                                                                                                                                                                          Preview:var TellMeModel={"m":{"":76},"t":[0,7,7,7,7,7,7,7,7,7,7,7,7,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,5,6,6,6,6,6,6,6,7,2,10,10,10,7,4,4,4,4,4,4,4,4,4,4,7,7,7,7,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,7,7,7],"n":[338,425,428,431,434,437,440,444,447,450,453,456,459,462,483,512,521,530,539,552,565,574,583,592,601,614,627,640,653,666,679,688,701,714,727,736,749,762,775,788,801,814,827,843,861,885,909,930,959,980,993,1006,1026,1047,1057,1067,1088,1097,1107,1116,1126,1136,1157,1191,1196,1201,12
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (14666), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):14666
                                                                                                                                                                                                                                                                          Entropy (8bit):5.192998441009612
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:9dbIGOqZ05GyaKzhRCwqyf/q2E+Rh99TzlfVNyv83+LBoaWLNwGfiC8O5PPM:9BiUQhRVfye99Pl9483+LBoaWLqv
                                                                                                                                                                                                                                                                          MD5:8880E957219B056B26B67D88CB7FFFF5
                                                                                                                                                                                                                                                                          SHA1:BE024ABFE99C2DC447191E2C59DD96FD9352E2C4
                                                                                                                                                                                                                                                                          SHA-256:4BBB0DBB03A136E993BB2FB363455E7DCABF84CBB17DE37AD6168B9326E56909
                                                                                                                                                                                                                                                                          SHA-512:1E611B1C8D3B7DE4CEE215C989885A6F8256B89A51621B77598A9A363AAF2897FC439DD73860234BA77AB682B84D05437CE0DBBDA59C3C1B5CC9D16662897EC5
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h4BBB0DBB03A136E9_App_Scripts/jsanity.js
                                                                                                                                                                                                                                                                          Preview:if("undefined"!=typeof jSanity)throw"jSanity has been defined, please check if there's any duplicate reference.";jSanity={},function(e){"use strict";var t={inputString:"",maxWidth:"600px",maxHeight:"200px",overflow:"hidden",allowLinks:!0,linkClickCallback:null,customProtocols:{},allowRelativeURLs:!1,allowAudioVideo:!1,unsupportedContentCallback:null,externalContentCallback:function(e,t,r,o){var i;if("attribute"===e&&"src"===t)for(var n in o)if(o.hasOwnProperty(n)&&r.substring(0,n.length)===n){i=!0;break}return i||(r="CSSURL"===e?'url("about:blank")':"about:blank"),r},isolatedTargetDOM:!1,directModifySource:!0,attributePrefix:"jSanity",dataAttributeCallback:null,debugLevel:0,onFinishedCallback:null},r=function(){this.sync=!0,this.jobs=[],this.id=r.globalId++,this.listnerPosfix=0,this.onCompletedListners={},this.onNewJobAddedListners={},this.useSync=function(){this.sync=!0},this.useAsync=function(){this.sync=!1},this.addNewJob=function(e){for(var t in this.jobs.push(e),this.onNewJobAdded
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (29474), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):30159
                                                                                                                                                                                                                                                                          Entropy (8bit):5.459333343534631
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:sn7cw53mOPtvp1v2MyAWrNIO+rBFeYoG0+EXicE51iK:s7cw5JgduEYwK
                                                                                                                                                                                                                                                                          MD5:C57F975317624020109F3EA96AAD7B74
                                                                                                                                                                                                                                                                          SHA1:E96654CAC6C8F1C7A88B06FFB4E2E3B671201C59
                                                                                                                                                                                                                                                                          SHA-256:6721ED04B49C8165D534E720CAC4CFB58350EA559B27B19A3B4E3B61D63BB902
                                                                                                                                                                                                                                                                          SHA-512:FF86522CB7E471BBAF9C62D6F6687708F75BC54426A227308A8BD0568E780B17B0B22602F8E67D89BF0EEA34DEE298C403542B07DEF02D1CE86F0D0337312184
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/mathjax/extensions/MathMenu.js?rev=2.5.3
                                                                                                                                                                                                                                                                          Preview:/*.. * /MathJax/extensions/MathMenu.js.. *.. * Copyright (c) 2009-2015 The MathJax Consortium.. *.. * Licensed under the Apache License, Version 2.0 (the "License");.. * you may not use this file except in compliance with the License... * You may obtain a copy of the License at.. *.. * http://www.apache.org/licenses/LICENSE-2.0.. *.. * Unless required by applicable law or agreed to in writing, software.. * distributed under the License is distributed on an "AS IS" BASIS,.. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied... * See the License for the specific language governing permissions and.. * limitations under the License... */....(function(c,g,k,f,b){var q="2.5.0";var j=MathJax.Callback.Signal("menu");MathJax.Extension.MathMenu={version:q,signal:j};var o=function(r){return MathJax.Localization._.apply(MathJax.Localization,[["MathMenu",r]].concat([].slice.call(arguments,1)))};var n=c.Browser.isPC,l=c.Browser.isMSIE,e=((document.documentMode||
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):72
                                                                                                                                                                                                                                                                          Entropy (8bit):4.241202481433726
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YozDD/RNgQJzRWWlKFiFD3e4xCzY:YovtNgmzR/wYFDxkY
                                                                                                                                                                                                                                                                          MD5:9E576E34B18E986347909C29AE6A82C6
                                                                                                                                                                                                                                                                          SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                                                                                                                                                                                                                                          SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                                                                                                                                                                                                                                          SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):72
                                                                                                                                                                                                                                                                          Entropy (8bit):4.241202481433726
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:YozDD/RNgQJzRWWlKFiFD3e4xCzY:YovtNgmzR/wYFDxkY
                                                                                                                                                                                                                                                                          MD5:9E576E34B18E986347909C29AE6A82C6
                                                                                                                                                                                                                                                                          SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                                                                                                                                                                                                                                          SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                                                                                                                                                                                                                                          SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):985
                                                                                                                                                                                                                                                                          Entropy (8bit):5.175336884396651
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:2dQ4+A88T+Uy8+QQIWZdLIQAEJAoImLFJ1002ev+Es:cWA886hPtIWPIQlJwUFJ1005v+d
                                                                                                                                                                                                                                                                          MD5:605C6BD48B2AB0262C0113445494FF4C
                                                                                                                                                                                                                                                                          SHA1:00CC6621252EB4930486F4837638A0524E5C77E9
                                                                                                                                                                                                                                                                          SHA-256:405497AC72ADA72A30277E2493A9B00B999DF6CE1B425167B8C405AF45EF0338
                                                                                                                                                                                                                                                                          SHA-512:53993F9A6359C167302F14F272BF9D8897C2508DF9EFEC38DE1754F9B8737A621C482177981DE9702BEEAC54ACC2EEB1AB166A24533AC2A6FEA7E7C6244AD4F9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000111.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>bf3a711e-f669-4fd5-8d73-100223695f2b</Id>.. <Version>1.0.0.4</Version>.. <ProviderName>lijia</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="Office first party apps sandbox" />.. <Description DefaultValue="Office first party apps sandbox" />.... <Hosts>.. <Host Name="Document"/>.. </Hosts>.... <DefaultSettings>.. <SourceLocation DefaultValue="index.html" />.. </DefaultSettings>.... <Permissions>ReadWriteDocument</Permissions>..</OfficeApp>
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):89749
                                                                                                                                                                                                                                                                          Entropy (8bit):5.907896932868388
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:TF7qkDiiBSPqAYXUJqc9a/qc9aJyXUEUx:J7j7B4S6RaVC
                                                                                                                                                                                                                                                                          MD5:1BF11FC2DBDB5C48B7D60F5005583417
                                                                                                                                                                                                                                                                          SHA1:DF52B131F6B151E674204CBA77082EFAEFBC3F8C
                                                                                                                                                                                                                                                                          SHA-256:172E218E70CC419328B7AAB580615DA2A562E1508EAC9AC3014C52C51F2F50EC
                                                                                                                                                                                                                                                                          SHA-512:A40545B0B88AAF5EC4D28015B72451CE6F19073FC7E1CF6A8B08EEAB6D173CCE9E62553CACFDA7FE0FB4DDECB2E09E8B966C6466AE50AC31193481D82898ECB6
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.<?xml version="1.0" encoding="UTF-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">...<Id>90da59be-5361-4260-9218-2262af1dc334</Id>...<Version>1.0.0.0</Version>...<ProviderName>Microsoft Corporation</ProviderName>...<DefaultLocale>en-US</DefaultLocale>...<DisplayName DefaultValue="Add Meeting Details">.... START STRING LOCALIZATION REPLACEMENT (StringID: OfficeAddIns.Meetings.ManifestDisplayName -->......<Override Locale="af-ZA" Value="Voeg vergaderingbesonderhede by" />....<Override Locale="en-US" Value="Add Meeting Details" />....<Override Locale="am-ET" Value="..... ...... ...." />....<Override Locale="ar-SA" Value="..... ...... ........" />....<Override Locale="as-IN" Value="..
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (20116), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):20116
                                                                                                                                                                                                                                                                          Entropy (8bit):5.265227006593126
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:uCYdXBag5QAdRLxUSkgRfku5ro+PZCewau6Y:K5Z7LKocu5ro+PZCdau6Y
                                                                                                                                                                                                                                                                          MD5:EDF023B23DC08C7C90BA27A3BDE7480B
                                                                                                                                                                                                                                                                          SHA1:0F03EDBE6BDA20C20251EFF9DB86359EB5155F66
                                                                                                                                                                                                                                                                          SHA-256:7337ED6220111758E61F3BE5060AE9A807D83EDF05D5F7CC92B0B85E34A5FEF3
                                                                                                                                                                                                                                                                          SHA-512:93450345EE48033238467EF1BA3550F3C2FACA5C07178B1E7AAB989A4C845D7D87FC25FC33AAF431CBF1AEA5B9C3FE6619A8045B066DB5B239197072029E0740
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/pickadate.min.js
                                                                                                                                                                                                                                                                          Preview:!function(a){"function"==typeof define&&define.amd?define("picker",["jquery"],a):"object"==typeof exports?module.exports=a(require("jquery")):this.Picker=a(jQuery)}(function(a){function b(f,g,h,k){function l(){return b._.node("div",b._.node("div",b._.node("div",b._.node("div",w.component.nodes(r.open),t.box),t.wrap),t.frame),t.holder)}function m(){u.data(g,w).addClass(t.input).val(u.data("value")?w.get("select",s.format):f.value).on("focus."+r.id+" click."+r.id,p),s.editable||u.on("keydown."+r.id,function(a){var b=a.keyCode,c=/^(8|46)$/.test(b);return 27==b?(w.close(),!1):void((32==b||c||!r.open&&w.component.key[b])&&(a.preventDefault(),a.stopPropagation(),c?w.clear().close():w.open()))}),e(f,{haspopup:!0,expanded:!1,readonly:!1,owns:f.id+"_root"+(w._hidden?" "+w._hidden.id:"")})}function n(){w.$root.on({focusin:function(a){w.$root.removeClass(t.focused),a.stopPropagation()},"mousedown click":function(b){var c=b.target;c!=w.$root.children()[0]&&(b.stopPropagation(),"mousedown"!=b.type|
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (8369), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):8369
                                                                                                                                                                                                                                                                          Entropy (8bit):4.930901216062528
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:LwKI3zZc4ys873IJ7kx3HPcYaV2klI70JboeVPhHaAtZI88f+L+17XN8GdpF/w6z:LZI3zmjLaMkho1lGJK8h/2
                                                                                                                                                                                                                                                                          MD5:671CEB0F4B575CD7682275DB5265265C
                                                                                                                                                                                                                                                                          SHA1:41FB5CCD6CEE0A06BDB5E62050A23451994FC17D
                                                                                                                                                                                                                                                                          SHA-256:34EB0E98FBB508CBFFFCEBD9B265EA11E7BE0715B923F4A4016ED81B4D481B17
                                                                                                                                                                                                                                                                          SHA-512:68A716236AF277A2AB62B6D9D78B5ACC01E8540181807DC56FB83691E51E9D4C9C38BBAD46D236490B4F58B91970D2F2DD4708BFF47BC8392FA2FA6C8B919C35
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/onenote-navpane-strings.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";var OnenoteNavpaneStrings={AddPage:"Add page",AriaAddPage:"Add page",AddSection:"Add section",AriaAddSection:"Add section",AriaCollapseNotebookLabel:"Select to go back to the section and page navigation.",AriaPageLabel:"Page. Select to open page contents.",AriaSelectedPageLabel:"Page. Selected. Press Ctrl + F6 to navigate to page contents.",AriaSectionLabel:"Section. Select to switch to this section.",AriaSelectedSectionLabel:"Section. Selected. Press Ctrl + F6 to navigate to page list of the section.",AriaSectionGroupLabel:"Section Group. Select to expand and display inner sections.",AriaVersionLabel:"Version. Select to open version contents.",AriaSelectedVersionLabel:"Version. Selected. Press Ctrl + F6 to navigate to version contents.",AriaConflictLabel:"Conflict. Select to open conflict page contents.",AriaSelectedConflictLabel:"Conflict. Selected. Press Ctrl + F6 to navigate to conflict page contents.",AriaNotebookLabel:"Notebook. Select to switch to this notebook.",Ar
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):7886
                                                                                                                                                                                                                                                                          Entropy (8bit):3.675002721266739
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:HOmS/+CtmE8mmmmm08mmmmmtf8mmmmmO8mmmmm+8mmmmmo8mmmmmo8mmmmmSC3on:AGHFk
                                                                                                                                                                                                                                                                          MD5:7A7A4890CAAA77025E1B33A6D6E474EE
                                                                                                                                                                                                                                                                          SHA1:DC735B99D9EF0C76B4A7AEAE8BAA4CBD9551BA77
                                                                                                                                                                                                                                                                          SHA-256:9E1DA5BF715135491519A188CAD977DB6CBA414071E2407B69D63221379D8802
                                                                                                                                                                                                                                                                          SHA-512:291692981A555857F95A3378B511E27B60154B95EA0BA0452B3A5536D9A63A16B00518066E4F4B60E6A73CBD2A7C46B99A18102EA5970989B9736E57A6474D30
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/h9E1DA5BF71513549_resources/1033/FavIcon_OneNote.ico
                                                                                                                                                                                                                                                                          Preview:...... .... .....6......... ............... .h...f...(... ...@..... ..........................................................................................................................................................................................................................................................................................................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................P...P...P...P...P...P...P...P...T...d...d...d...d...d...d...d...d....w...w...w...w...w...w...w..................................H...H...H...H...H...H...H...H...H...\...d...d...d...d...d...d...d....w...w...w...w...w...w...w...........
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (21076), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):21309
                                                                                                                                                                                                                                                                          Entropy (8bit):4.946854396302788
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:OZKKcZ2dMMj+hS6rLg4dHg15dR7tV6NvQLsljReJT:OZ7j+w6rLg3HtsNvLhRe1
                                                                                                                                                                                                                                                                          MD5:7B902FC00863632ECE920229A0596F17
                                                                                                                                                                                                                                                                          SHA1:A63A03C1C20CCC0FFB80413579509AFD05722C92
                                                                                                                                                                                                                                                                          SHA-256:F2B14C882CF294D93BF532F074BDA4D76B55966AF3CD3E16F2456EF40C30275A
                                                                                                                                                                                                                                                                          SHA-512:724FDE4B7B6AB1DFAA9D9B795AD727B89DEC4C026E813D9F959A49BAC17A1997BF2D911F9ADFC78E5C22EBCD7547D5F6F981597A6337879A1EC6B7DC3D7BA01B
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://appsforoffice.microsoft.com/lib/1.1/hosted/en-us/office_strings.js
                                                                                                                                                                                                                                                                          Preview:if (window.Type && window.Type.registerNamespace) {..Type.registerNamespace("Strings");} else {..if(typeof(window['"Strings"']) == 'undefined') {..window['"Strings"'] = new Object(); window['"Strings"']. __namespace = true;..}....}..Strings.OfficeOM=function(){};if (Strings.OfficeOM.registerClass) Strings.OfficeOM.registerClass("Strings.OfficeOM");Strings.OfficeOM.L_APICallFailed="API Call Failed";Strings.OfficeOM.L_APINotSupported="API Not Supported";Strings.OfficeOM.L_ActivityLimitReached="Activity limit has been reached.";Strings.OfficeOM.L_AddBindingFromPromptDefaultText="Please make a selection.";Strings.OfficeOM.L_AddinIsAlreadyRequestingToken="Add-in is already requesting an access token.";Strings.OfficeOM.L_AddinIsAlreadyRequestingTokenMessage="The operation failed because this add-in is already requesting an access token.";Strings.OfficeOM.L_ApiNotFoundDetails="The method or property {0} is part of the {1} requirement set, which is not available in your version of {2}.";String
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (29173), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):29173
                                                                                                                                                                                                                                                                          Entropy (8bit):5.201883067368051
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:Buh4zsotX8wWwnEDbdnkAKBg3HnzJ9Non/e+hjOF:Bo2BT2Dl3TJ9NonW
                                                                                                                                                                                                                                                                          MD5:F6228139447C795F72C09114F8289A8C
                                                                                                                                                                                                                                                                          SHA1:0D0499DC74723111C0B78792B40BF5B8D04A2FB2
                                                                                                                                                                                                                                                                          SHA-256:E6108C2F14C08CE48EB243728C24011A8E70E60DCA21BFA51FFFC6B1B8A999C7
                                                                                                                                                                                                                                                                          SHA-512:F3087F1B24B65AA4F2007B168A8F5A1D0ACFA8BB6677FF156CE6A4B4A76234820B390F2DC444DE2EEFC4F58FB35BF3E1F866481A92383C914D20BBD44EDBC0A2
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/require-f6228139.js
                                                                                                                                                                                                                                                                          Preview:!(function(){if("PerformanceLongTaskTiming"in window){var e=window.__tti={e:[]};e.o=new PerformanceObserver((function(t){e.e=e.e.concat(t.getEntries())}));e.o.observe({entryTypes:["longtask"]})}})();!(function(e,t){"object"==typeof exports&&"object"==typeof module?module.exports=t():"function"==typeof define&&define.amd?define([],t):"object"==typeof exports?exports["es6-symbol"]=t():(e["es6-symbol"]=t(),e.Symbol=e.Symbol||e["es6-symbol"])})(window,(function(){return(function(e){var t={};function n(r){if(t[r])return t[r].exports;var i=t[r]={i:r,l:!1,exports:{}};return e[r].call(i.exports,i,i.exports,n),i.l=!0,i.exports}return n.m=e,n.c=t,n.d=function(e,t,r){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:r})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):11
                                                                                                                                                                                                                                                                          Entropy (8bit):3.2776134368191165
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:LUQ9:LUA
                                                                                                                                                                                                                                                                          MD5:825644F747BAAB2C00E420DBBC39E4B3
                                                                                                                                                                                                                                                                          SHA1:10588307553E766AB3C7D328D948DC6754893CEF
                                                                                                                                                                                                                                                                          SHA-256:7C41B898C5DA0CFA4AA049B65EF50248BCE9A72D24BEF4C723786431921B75AA
                                                                                                                                                                                                                                                                          SHA-512:BFE6E8DF36C78CBFD17BA9270C86860EE9B051B82594FB8F34A0ADF6A14E1596D2A9DCDC7EB6857101E1502AFF6FF515A36E8BA6C80DA327BC11831624A5DAEA
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:Bad Request
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):40
                                                                                                                                                                                                                                                                          Entropy (8bit):4.277567157116929
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:mS/SJhnjiCkj7Y:mS/SJhjhw7Y
                                                                                                                                                                                                                                                                          MD5:8C9CF03439D618C4C5090FD5258AE02F
                                                                                                                                                                                                                                                                          SHA1:F459A4118D4F0A8B8A6B4DB472D48A843E80778C
                                                                                                                                                                                                                                                                          SHA-256:489FD5491522F89A71C66B192CDC5D4585DED31ACE8FB81AF02D34393B3340E4
                                                                                                                                                                                                                                                                          SHA-512:4277427E622E763F1D60A0336AA3D564CA1B2FE9EA19A08DD42821366C59D23E91454F90F2EEA46E6508FF95FD87CF8EA3E1345DA0BE249E44038F621F9AAEAA
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTM0LjAuNjk5OC4zNhInCVmkfESbsDGsEgUNibJV5RIFDdjY4LISBQ11LGDrIbM93PBdkgWk?alt=proto
                                                                                                                                                                                                                                                                          Preview:ChsKBw2JslXlGgAKBw3Y2OCyGgAKBw11LGDrGgA=
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):75533
                                                                                                                                                                                                                                                                          Entropy (8bit):5.519851177516132
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:RtzN2h6bcjwEiTrG1Kd1n+gRozWqXLDoHZ8doJIu3PHijEkPZ1rkteQNfiYDE3wF:7c9C+gREQKsIuf5jk/vhsnQeJNyUjQ+p
                                                                                                                                                                                                                                                                          MD5:A2D6C29B06E3B8E998DEF33DB481EFD6
                                                                                                                                                                                                                                                                          SHA1:371407416DF18524CA27E13260AD7DA0D47F89AA
                                                                                                                                                                                                                                                                          SHA-256:BF07E1A40A7A2AC0B227955CE0A091C195882B74FD4EE54287316A9EF288FBAD
                                                                                                                                                                                                                                                                          SHA-512:43AD9199F73ACA18FB501F0A09FA89173B9F534C42083F5453A6D03B8FC8C5710783CFF40BF1DE2C1909CEB025018C58C86E01019BEA96660201486425B38B33
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/wise/owl/owl.handlers.c97687575b2eedfdde40.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.webpackChunkMicrosoft_Office_OWL=globalThis.webpackChunkMicrosoft_Office_OWL||[]).push([[6720],{72545:function(e,n,t){"use strict";t.d(n,{A:function(){return a}});var o=t(59250),r=t.n(o),i=t(12434),s=t.n(i)()(r());s.push([e.id,".lLFji2JIIWB51LkuYBKM{width:75%;height:75%;position:fixed;top:50%;left:50%;transform:translateY(-50%) translateX(-50%);background-color:#fff;box-sizing:border-box;outline:1px solid transparent;z-index:5;box-shadow:0 0 5px 0 rgba(0,0,0,.4);border:none}","",{version:3,sources:["webpack://./../owl-service/lib/filePicker/filePickerStyles.module.scss"],names:[],mappings:"AAAA,sBACE,SAAA,CACA,UAAA,CACA,cAAA,CACA,OAAA,CACA,QAAA,CACA,2CAAA,CACA,qBAAA,CACA,qBAAA,CACA,6BAAA,CACA,SAAA,CACA,mCAAA,CACA,WAAA",sourcesContent:[".file-picker-iframe {\n width: 75%;\n height: 75%;\n position: fixed;\n top: 50%;\n left: 50%;\n transform: translateY(-50%) translateX(-50%);\n background-color: #fff;\n box-sizing: border-box;\n outline: 1px solid transparent;\n z
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (58562)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):264504
                                                                                                                                                                                                                                                                          Entropy (8bit):5.329452468780914
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:kbEnBDWAeZEQB9efnuOowwvjrsigODb+RpSl8w/ixE3DTHWiV9k3k02y/NJNQU35:djKEQP4powwEDODqRv7VJ2Y
                                                                                                                                                                                                                                                                          MD5:38F5BEE49802D5E35F5351D7B432929C
                                                                                                                                                                                                                                                                          SHA1:A0954732BBAB206DD2B13DC08C4B2FFA60290E4B
                                                                                                                                                                                                                                                                          SHA-256:B7D76A8B669933E2CDD72F0F8721A449BBBC7DD2A3ACA0170696F1E0E38D7E7C
                                                                                                                                                                                                                                                                          SHA-512:39F480EDD40096BEC877806D4F80ADBA4BB3CEDA820BC370839D13B32EE0AC6F3E60F149EC09C23B8D31090DF83970500EED064C6C3178E3DC057CF7F96B9538
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/odsp-web-prod_2025-03-14.006/wacowlhostwebpack/17.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see 17.js.LICENSE.txt */.(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([[17],{729:(e,t,n)=>{"use strict";var a;n.d(t,{a:()=>a,b:()=>i}),function(e){e[e.CRITICAL=1]="CRITICAL",e[e.WARNING=2]="WARNING"}(a||(a={}));var i={BrowserDoesNotSupportLocalStorage:0,BrowserCannotReadLocalStorage:1,BrowserCannotReadSessionStorage:2,BrowserCannotWriteLocalStorage:3,BrowserCannotWriteSessionStorage:4,BrowserFailedRemovalFromLocalStorage:5,BrowserFailedRemovalFromSessionStorage:6,CannotSendEmptyTelemetry:7,ClientPerformanceMathError:8,ErrorParsingAISessionCookie:9,ErrorPVCalc:10,ExceptionWhileLoggingError:11,FailedAddingTelemetryToBuffer:12,FailedMonitorAjaxAbort:13,FailedMonitorAjaxDur:14,FailedMonitorAjaxOpen:15,FailedMonitorAjaxRSC:16,FailedMonitorAjaxSend:17,FailedMonitorAjaxGetCorrelationHeader:18,FailedToAddHandlerForOnBeforeUnload:19,FailedToSendQueuedTelemetry:20,FailedToReportDataLoss:21,FlushFailed:22,MessageLimitPerPVExceeded:23,MissingReq
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):563383
                                                                                                                                                                                                                                                                          Entropy (8bit):4.477502075392285
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:kR4D+Nfr+FScNi0IVE5Z1wKcjbyoWz4Z2tdtUNabyoWz4C5RTMp:dD+NfrA
                                                                                                                                                                                                                                                                          MD5:27F2487B2D79441FAD8B27CB5233564A
                                                                                                                                                                                                                                                                          SHA1:F1F0017E94E39ED54F36FDD6BC3395C115C23782
                                                                                                                                                                                                                                                                          SHA-256:C85605B4CAC8FBAE82E1100C8BFC06E7B754A8721307E5F479BB9CD18B240A36
                                                                                                                                                                                                                                                                          SHA-512:FFC91989C7B539EFED9E2E353651A6E037F14D01838F521C395FA9EAA1620F8CE3800A1AD58DDDC5B5B339B07A2FEFDE1D1B26E3C0203741E4BB49715F3CD3D7
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/onenote-ribbon-sprite-lazy.min.js
                                                                                                                                                                                                                                                                          Preview:window.onenoteRibbonSpriteLazy={icons:[{type:"svg",id:"newdocument_20",children:[{type:"path",className:"OfficeIconColors_HighContrast",d:"M 1741 614 v 1332 h -1434 v -1844 h 922 m 0 512 h 367 l -367 -373 m 409 476 h -512 v -512 h -716 v 1638 h 1228 z"},{type:"path",className:"OfficeIconColors_m20",d:"M 1685 1903 h -1320 v -1735 h 868 l 452 451 z"},{type:"path",className:"OfficeIconColors_m22",d:"M 1741 614 v 1332 h -1434 v -1844 h 922 m 0 512 h 367 l -367 -373 m 409 476 h -512 v -512 h -716 v 1638 h 1228 z"}],viewBox:"0,0,2048,2048"},{type:"svg",id:"SectionTab_20",children:[{type:"path",className:"OfficeIconColors_HighContrast",d:"M 1229 307 v -205 h 102 v 1844 h -102 v -205 h -615 v -1434 z"},{type:"path",className:"OfficeIconColors_DynamicColor",d:"M 1229 307 v -205 h 102 v 1844 h -102 v -205 h -615 v -1434 z"}],viewBox:"0,0,2048,2048"},{type:"svg",id:"Table_20",children:[{type:"path",className:"OfficeIconColors_HighContrast",d:"M 102 102 h 1844 v 1844 h -1844 m 103 -1741 v 205 h 16
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (24306), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):24452
                                                                                                                                                                                                                                                                          Entropy (8bit):5.328428296210481
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:9CT9tmaKmjfU6/pyX98SRCRrXeFxf/biyMFRwV6ApqVblbtA69E/YNwwOIUAttmU:9CT9tmaXU6/pyN8SRCRrXeFxf/biyMF9
                                                                                                                                                                                                                                                                          MD5:AC459993971D136B5C420665B272E101
                                                                                                                                                                                                                                                                          SHA1:3C84797F6C43434519212E1AE74E84C4BC9E133A
                                                                                                                                                                                                                                                                          SHA-256:883922A710E857E94B35FD6748792782280A859E154E4DB2E4C0B4876DFA61AE
                                                                                                                                                                                                                                                                          SHA-512:35DDE4930521684FC51EB5E521D23259DB9A17455F572CCE8BF3E319BE1D69B0571D6E38AB9C72F5801E8777F567AED9742970E6409C0C77C255E995362B5477
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/hammer.min.js
                                                                                                                                                                                                                                                                          Preview:/*! Hammer.JS - v2.0.8 - 2019-03-19.. * http://hammerjs.github.io/.. *.. * Copyright (c) Jorik Tangelder;.. * Licensed under the MIT license */..(function(window,document,exportName,undefined){"use strict";function ifUndefined(val1,val2){return val1===undefined?val2:val1}var STATE_POSSIBLE=1;var STATE_BEGAN=2;var STATE_CHANGED=4;var STATE_ENDED=8;var STATE_RECOGNIZED=STATE_ENDED;var STATE_CANCELLED=16;var STATE_FAILED=32;var assign=void 0;if(typeof Object.assign!=="function"){assign=function assign(target){if(target===undefined||target===null){throw new TypeError("Cannot convert undefined or null to object")}var output=Object(target);for(var index=1;index<arguments.length;index++){var source=arguments[index];if(source!==undefined&&source!==null){for(var nextKey in source){if(source.hasOwnProperty(nextKey)){output[nextKey]=source[nextKey]}}}}return output}}else{assign=Object.assign}var assign$1=assign;var _uniqueId=1;function uniqueId(){return _uniqueId++}function each(obj,iterator,con
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):31697
                                                                                                                                                                                                                                                                          Entropy (8bit):5.170379053857505
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:p/cdq+3tbkU+jWu2gxhXWNKltKPtDVkDPwDxpb6ofYft6ZmL0A0iAYyKZ+D1EfV1:H+36v1gil6RVY/62zw14QGdn/h
                                                                                                                                                                                                                                                                          MD5:9BAE2967CC03DE6F6C486461920ADF9B
                                                                                                                                                                                                                                                                          SHA1:E253B3EBE397A05BCB1B9FDB48DBCD22DAE89A5A
                                                                                                                                                                                                                                                                          SHA-256:B60CDCC4224FE94C138B4BFA56A0433FFB5E10DCC10A89D82233ABA87610BBC5
                                                                                                                                                                                                                                                                          SHA-512:0D991DC74C3879C1A6B0841543BA8D5EE67ADD50234A25B690C8739ADD72E4ADB8940470C06DBAED99C0D5DB38C30167759E8AD40222FDABE69016D2143234A9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/shellux/api/ShellBootInfo/consumer/OneShell/en-us
                                                                                                                                                                                                                                                                          Preview:{"Architecture":1,"Audience":0,"Resources":{"Version":"1.20250317.1.0","CatalogXml":"<ResourceCatalog>\r\n <Resources>\r\n <Resource Key=\"_store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d\" Type=\"LTRRTLPath\">\r\n <RTLPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d.21872e03b6d693d5a73d.rtl.js</RTLPath>\r\n <LTRPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-832c5d.21872e03b6d693d5a73d.js</LTRPath>\r\n </Resource>\r\n <Resource Key=\"_store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-bcf27c\" Type=\"LTRRTLPath\">\r\n <RTLPath>suiteux.shell._store_mecontrol-fluent-web_3_28_4-preview_4-866506a6b134071e054e_node_modules_mecontrol_flue-bcf27c.abaea5ac1a02d546a7db.rtl.js</RTLPath>\r\n <LTRPath>suiteux.shell._store_mecontrol-fluent-we
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, Unicode text, UTF-8 text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):9258
                                                                                                                                                                                                                                                                          Entropy (8bit):5.806838074326134
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:yA0JNQoxbu9xsW4guOCrae6aakWLAnHx4FbqdyjeBR56o8ykHVPAI5em1LQxhcA3:vCJ3xnWLiR4kcS56oW1PAI5eVtPh
                                                                                                                                                                                                                                                                          MD5:5FBC6BB137EA2316DEFE300913A950DF
                                                                                                                                                                                                                                                                          SHA1:29464B148AE54621A4AAD4F7742A2A05BE6517E3
                                                                                                                                                                                                                                                                          SHA-256:82553839D3ECC08D5F9DDF58F9F466B88BFC614F9613DB9525B0E7037BF6843C
                                                                                                                                                                                                                                                                          SHA-512:D0E0EB529A240E5ED9F24E7F34AA86AB60734285596B531B36623D56867375523F6BB4CD32D4FE906572EBED129A0595DE315B5B6DD9F46AEE5342048352C5E7
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000138.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2409.12011/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8" standalone="yes"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">.. <Id>54fe4e50-e89c-412b-a034-143b547f9c5d</Id>.. <Version>1.0.0.0</Version>.. <ProviderName>Microsoft</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. <DisplayName DefaultValue="Meeting Details">.. <Override Locale="af-ZA" Value="Vergaderingbesonderhede" />.. <Override Locale="am-ET" Value="..... ....." />.. <Override Locale="ar-SA" Value="...... ........" />.. <Override Locale="as-IN" Value="...... ....-....." />.. <Override Locale="az-Latn-AZ" Value="Toplant. T.f.rr.atlar." />.. <Override Locale="be-BY" Value="..........
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 102 x 102, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1922
                                                                                                                                                                                                                                                                          Entropy (8bit):7.799930090275787
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:cENciM7PxxsRcCzKzVT0waLFE8ASYXamdHN:cENIgiCSVT0EJSYXamdt
                                                                                                                                                                                                                                                                          MD5:D212459353E8FD1D2514C77703D44F1F
                                                                                                                                                                                                                                                                          SHA1:A0CABB548A218E87FBCB4D4ADDEA47068A4288D3
                                                                                                                                                                                                                                                                          SHA-256:7AD89A907BFE47019D905B92D0C203082AA75852D39B480E6FBE1718A8EA3647
                                                                                                                                                                                                                                                                          SHA-512:8AA0C6904EFE31A38B2A52F05F79153D933BC48C028D18C110F59089D0EB7EAF2D97E84A42F81BAA8906AFD2BBD8C895FE53D8E998A4417422B97497556E1B7D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...f...f.....9..b...IIDATx^.ml.E..o.E..........B....'_$..&.&.....h....A..4......[..........]iC..h1.HjE.......K&......>....<3;{._......X$..T\\(.o..#..2K....g.....Oe...C..`..p..ee%...g`.e.8....b.k.c.P.:B.tv^W..2RW.,.g.j.........y..i....2.P.....T.G...Z..5.......5H..?.H...P...9..(.h.....p}..9.tS0.......q}..`pWFK..9..(....8.......L..]O..z<.%.".4..Lj:F....4.............@..s$../bux.N.%.`..$IN...%'{#.....<..]|....0..AYt..CDI..$...=....H)..W>.>.+G>....1b........(..1?R.A...Q...C`...X...C..q]..&.........."~.o~0.P....~(|`..^Ph......"....P.]._U0.....k.t....e.%.y3......C`.{...._$..'....k.5..J.`R........'.A....0..P(4......g...m...Z.d.I...Q.QbA..f._.nm...".....K...Cw4...k..F.e..=~..d....|s.....`.V.*..`....j..ww....-..V....f.......C...6v...p.9Y..h..Wj]..._`......Z..G.m.?..*..w)...~...(.....=a=.]a.+R...5.`.H$..D..ehW...@..2..#..j..T.w...c..T.w...#~....e........e.k.....C.c..e.F.2.`..j..1._:....o_,.j:.!0...%....9..c.......OY0.;....0|.U>.@`...
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):11
                                                                                                                                                                                                                                                                          Entropy (8bit):3.2776134368191165
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3:LUQ9:LUA
                                                                                                                                                                                                                                                                          MD5:825644F747BAAB2C00E420DBBC39E4B3
                                                                                                                                                                                                                                                                          SHA1:10588307553E766AB3C7D328D948DC6754893CEF
                                                                                                                                                                                                                                                                          SHA-256:7C41B898C5DA0CFA4AA049B65EF50248BCE9A72D24BEF4C723786431921B75AA
                                                                                                                                                                                                                                                                          SHA-512:BFE6E8DF36C78CBFD17BA9270C86860EE9B051B82594FB8F34A0ADF6A14E1596D2A9DCDC7EB6857101E1502AFF6FF515A36E8BA6C80DA327BC11831624A5DAEA
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:Bad Request
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):969
                                                                                                                                                                                                                                                                          Entropy (8bit):5.171349633572766
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:2dQ4+A88T+Uy8+QQIWZdgIQAEJAoImLFJ1o02ev+Es:cWA886hPtIWkIQlJwUFJ1o05v+d
                                                                                                                                                                                                                                                                          MD5:5E6EDC73470FF3E746BC8BDAC6FB38B2
                                                                                                                                                                                                                                                                          SHA1:7DFA441D001FE0B50A5F6ED6102479662D2497DF
                                                                                                                                                                                                                                                                          SHA-256:71344C4AACBC26401DD2CFDCDB7C16625B423B4E710A0030A65D90B7E16F602D
                                                                                                                                                                                                                                                                          SHA-512:F3186C5204BAE1523433CDB852732390E02864AE37CF0E39175A369E712D6101D6486C1B3B0BE031D1A3072963C251BC7F251048D172FF71081DF92A79C8132D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000110.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="utf-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1".. xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance".. xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0".. xmlns:contentappor="http://schemas.microsoft.com/office/contentappversionoverrides".. xsi:type="ContentApp">.... <Id>bf3a711e-f669-4fd5-8d73-100223695f2a</Id>.. <Version>1.0.0.4</Version>.. <ProviderName>lijia</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. The display name of your add-in. Used on the store and various placed of the Office UI such as the add-ins dialog -->.. <DisplayName DefaultValue="Office first party apps" />.. <Description DefaultValue="Office first party apps" />.... <Hosts>.. <Host Name="Document"/>.. </Hosts>.... <DefaultSettings>.. <SourceLocation DefaultValue="index.html" />.. </DefaultSettings>.... <Permissions>ReadWriteDocument</Permissions>..</OfficeApp>
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65443)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):740809
                                                                                                                                                                                                                                                                          Entropy (8bit):5.520286431771011
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:qonR5XGgcDpTutBVw8chtFDQfV+n7F+n7AfVXs3MVkPrEvSnM4YxEY/U9RCZt+mo:qonR54D6Vs4GgrEZM
                                                                                                                                                                                                                                                                          MD5:70351ADEA310DDF9A747BA02C36D904A
                                                                                                                                                                                                                                                                          SHA1:6B0D4FCA92359A5ABE206F2B42F6D25C3A1ABE2E
                                                                                                                                                                                                                                                                          SHA-256:5CA5B2C08613AECED724A7AEF28EBE35D93340D7E2500968922148FE56083DEF
                                                                                                                                                                                                                                                                          SHA-512:603105D9573C748ADC37BCF4D3AB341BC1DDECC7AAF33EE6EEE3CF73DEF44CA0137938135FA63B780DCB025BA8589BE1BBC6D6B29270467D6122913ABA9476DA
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/Feedback/latest/officebrowserfeedback_floodgate.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see officebrowserfeedback_floodgate.min.js.LICENSE.txt */.!function(e){var t={};function A(n){if(t[n])return t[n].exports;var r=t[n]={i:n,l:!1,exports:{}};return e[n].call(r.exports,r,r.exports,A),r.l=!0,r.exports}A.m=e,A.c=t,A.d=function(e,t,n){A.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:n})},A.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},A.t=function(e,t){if(1&t&&(e=A(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var n=Object.create(null);if(A.r(n),Object.defineProperty(n,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var r in e)A.d(n,r,function(t){return e[t]}.bind(null,r));return n},A.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return A.d(t,"a",t),t},A.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},A.p="",A(A.s=
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65451)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):89493
                                                                                                                                                                                                                                                                          Entropy (8bit):5.289599913770796
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:YjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h5cApwEjOPrBeU6QLiTFbc0QlQvakF:YYh8eip3hXuf6IidlrvakdtQ47GK1
                                                                                                                                                                                                                                                                          MD5:12108007906290015100837A6A61E9F4
                                                                                                                                                                                                                                                                          SHA1:1D6AE46F2FFA213DEDE37A521B011EC1CD8D1AD3
                                                                                                                                                                                                                                                                          SHA-256:C4DCCDD9AE25B64078E0C73F273DE94F8894D5C99E4741645ECE29AEEFC9C5A4
                                                                                                                                                                                                                                                                          SHA-512:93658F3EB4A044523A7136871E125D73C9005DA44CE09045103A35A4F18695888ECAFE2F9C0D0FA741B95CC618C6000F9AD9AFFC821A400EA7E5F2C0C8968530
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://ajax.aspnetcdn.com/ajax/jQuery/jquery-3.5.0.min.js
                                                                                                                                                                                                                                                                          Preview:/*! jQuery v3.5.0 | (c) JS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}function w(e){return null==e?e+"":"o
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 222 x 204, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):6336
                                                                                                                                                                                                                                                                          Entropy (8bit):7.887073484659419
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:wx46x27I7L8lRcTx3HCHBDA3B6VHj6V+Jcj:Ktv8lROx34ZA3B6VH+kO
                                                                                                                                                                                                                                                                          MD5:5D71229F6CA9EBFF5F7972F01B547C7C
                                                                                                                                                                                                                                                                          SHA1:4D71B33506E6F0EBA1C783DE37E36480F2E392BE
                                                                                                                                                                                                                                                                          SHA-256:ABC0FA95B72F082CF4FBB18267CDBD282F2909B65B1B479D7F339DB41769946E
                                                                                                                                                                                                                                                                          SHA-512:31915EB859D432D714CAA2DFF74B7E760DFFE3A672CD872EB8CF07EDDC3B544578640C315CD47802B34F4BF06B31D290C9CBEAB228BC1FA64BDAF36DC523273A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/m2/box42.png
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR..............y.'....IDATx^.....y.....)...5..MT....6./..f.m,@*......W.A...o&..$.Q."7............ 0k.VdI..VL.`...w.k|;...u....=.sf.~....s.9g/w..9.<.93..".H$]]..ttt..*....7g.ys.0}zg..3u....E.$C...G....|'N...jk.f.....i..X0....X8....C....^;v..:..:.a.m....rz.x<..c..q..>..S...t.s....<...o..Cw.y......<x...*....6e........3.._..9H.f..}.._......m.F.#.Wd...(.J........|yB....|...+."O+.B.=..^.6-cK...|./.t..m .f._...F.E.oum\..>.7l..l.<.f..[.H.mZFiC...-_..#....[.d..{........Z.~dd.......t.../`S.^.z...........-....Gm...n....m..2...#n!%..Ci.j..t....7..M...........8t.......^..h..d..]a.....K....L.....x6|6xM.s.M.../.]...=..........<4..l.......e......>J1.....D.;w.|..fY...x........m....W.+...9.Q>S.l..J.U.f0..._Z..Y....._s.O..!.2....u&..zo.z.-..>S..p....... .....x=u..2.M.jGb..G9.V.<;d."x@...@.......c.f.p......5....ZQ..8].<^.)c..f(.W....[...^.....gCW&.$i...I.&x.0.~8..!.x.t../>.c..:.(..cN..]XD..-...gk{.gCW9....<.'.l.... ..v.........<.....).
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):18407
                                                                                                                                                                                                                                                                          Entropy (8bit):4.935379864718282
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:r0GcH6oaGwSaPQsPq3QfQ3/U/8vFwoHbr2wKodV15vzJ9YaikHcL2BkQk5:rUZwSkQWCU/8HVOaikMSvk
                                                                                                                                                                                                                                                                          MD5:D021B25C84E7615BC3CAB4D4B7C31652
                                                                                                                                                                                                                                                                          SHA1:9C7E4B622D7AE42553781FEF1DA0227CC58F3916
                                                                                                                                                                                                                                                                          SHA-256:3474C955EC1CD6CB5FAC1F3511A826277BB68E88C595EE90F91AF336282C7568
                                                                                                                                                                                                                                                                          SHA-512:39FD996A5836D65BB2E5C76F467806BBC5C5D8787AF30301623EEA38EBB733C1A850B11C1219D6C7BBE6703570E2D73ACCDB6E3A384960FFEF733774FE6C8A08
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{. "Microsoft": "Microsoft",. "FlexpaneCloseButton": "Close pane",. "Me_Header": "My account",. "MePhotoAriaLabel": "{0} {1} Current account's user photo",. "ChangePhotoAriaLabel": "{0} {1} Change the photo that appears in IM. This may open a new window.",. "MePhotoTitle": "Current account's user photo",. "ChangePhotoTitle": "Change the photo that appears in IM. This may open a new window.",. "AppLauncherAriaLabel": "App launcher opened",. "AppLauncherCloseAriaLabel": "Close the app launcher",. "AppLauncherHomeAriaLabel": "Microsoft 365, will be open in new tab",. "AppLauncherHomeAriaLabelM365Copilot": "Microsoft 365 Copilot, will be open in new tab",. "AppsModuleHeading": "Apps",. "Microsoft365": "Microsoft 365",. "Microsoft365Copilot": "Microsoft 365 Copilot",. "AppsModuleAllApps": "All apps",. "AppsModuleAllAppsTooltip": "Open all apps",. "AllViewGroupShowMore": "Show More",. "AllViewGroupShowLess": "Show Less",. "AllViewBack": "Back",. "AllViewNewGroupHeading":
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65457)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):151144
                                                                                                                                                                                                                                                                          Entropy (8bit):5.3268604144317635
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:yrekafzVM8v4ZvE3DUJ/N0SoY+2d2j6Cha18suGEYE4yH/OqYcVGgDr:yekl8v4ZvEQUSov2dqha1JefOngf
                                                                                                                                                                                                                                                                          MD5:50E2EFDDAFC0BEA09AC0CC8481A93FB5
                                                                                                                                                                                                                                                                          SHA1:8E7B9A2465DF00D901BA8B931B49ADEBA8FAAB44
                                                                                                                                                                                                                                                                          SHA-256:7763B315B8A98F4B0C6A695A1DA559100014718B045FDA8139B9A3E7746CB374
                                                                                                                                                                                                                                                                          SHA-512:C687FE71086EBB75F1864D1043C9323A94BD48DF5ED3A7B48EE23621ED95A61BF4F10655670325DE5AEEE7F53E83631A19813D42599192DAFE5DEE118C93F835
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/files/sp-client/odsp.1ds/odsp.1ds.lib-6996f8ab.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see odsp.1ds.lib-6996f8ab.js.LICENSE.txt */."use strict";(self.odspNextWebpackJsonp=self.odspNextWebpackJsonp||[]).push([["odsp.1ds.lib"],{"1ds-lib":function(e,t,n){n.r(t),n.d(t,{_DebugPlugin:function(){return ec},_InMemoryPropertyStorage:function(){return dc},_OneDSLogger:function(){return cc},_ScrubDataPlugin:function(){return $s},_StrictContextPlugin:function(){return ac},_StringifyDataPlugin:function(){return ms},_getDefaultScrubberConfig:function(){return ic}});var a={};n.r(a),n.d(a,{optionalDiagnostic:function(){return rs},requiredDiagnostic:function(){return is},requiredService:function(){return os}});var i=function(e,t){return i=Object.setPrototypeOf||{__proto__:[]}instanceof Array&&function(e,t){e.__proto__=t}||function(e,t){for(var n in t)Object.prototype.hasOwnProperty.call(t,n)&&(e[n]=t[n])},i(e,t)};function r(e,t){if("function"!=typeof t&&null!==t)throw new TypeError("Class extends value "+String(t)+" is not a constructor or null");functi
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):81825
                                                                                                                                                                                                                                                                          Entropy (8bit):5.0548817842526965
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:+pCmHr0AOKTnbhCxm6Ml33bb0zBSWuEn047nNXcb7GLLWZWxWG6sS6bxiXG:+pCydxgxmXj8NXcb7GLLCmWsSExsG
                                                                                                                                                                                                                                                                          MD5:E1D3AAAF752ACE97882BD9CD55E28516
                                                                                                                                                                                                                                                                          SHA1:44DCF580CAE83CF561D2E0694D2E0EEA197AB457
                                                                                                                                                                                                                                                                          SHA-256:AFB4B1942657D688956E4A87AC04351717DC49960C384DCB806C11D166A05281
                                                                                                                                                                                                                                                                          SHA-512:E57A74C34977A515F048069039D019A610CBAECBE2CE940D0D0477E9E8866C930FDB875C69360917D2AEEAB97CC1073FCD369B2F1F15E572C94D9352FB653886
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hAFB4B1942657D688_App_Scripts/1033/Box4Intl.js
                                                                                                                                                                                                                                                                          Preview:Type.registerNamespace("Box4Intl");Box4Intl.Box4Strings=function(){};Box4Intl.Box4Strings.registerClass("Box4Intl.Box4Strings");Box4Intl.Box4Strings.l_OutlineResizeAlt="Resize the Outline";Box4Intl.Box4Strings.l_NavigationPaneContentsLabel="Notebook Contents";Box4Intl.Box4Strings.l_UntitledPageText="Untitled Page";Box4Intl.Box4Strings.l_UntitledSection="Untitled Section";Box4Intl.Box4Strings.l_NotebookPagesSection="General Pages";Box4Intl.Box4Strings.l_ProtoButtonText="New Page";Box4Intl.Box4Strings.l_SectionGroupAltText="Section Group";Box4Intl.Box4Strings.l_SectionGroupArrowAltText="Navigate Up";Box4Intl.Box4Strings.l_DefaultUserName="Unknown User";Box4Intl.Box4Strings.l_UserInitialsDelimeter="; ";Box4Intl.Box4Strings.l_PageLoadingText="Loading...";Box4Intl.Box4Strings.l_OreoSpinnerText="Loading Page...";Box4Intl.Box4Strings.l_ConflictPage="Conflict Page";Box4Intl.Box4Strings.l_PageAccessibilityContext="Page {0}";Box4Intl.Box4Strings.l_PageWithSearchResultsAccessibilityContext="Page
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):3844
                                                                                                                                                                                                                                                                          Entropy (8bit):5.135338065935734
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:7AMyhQoDXbNLGs2sY5Q4zy9c+EkhG6mADEA0SVP+c5QVy+/:F4MMDE4DEA0SV2c5QVyI
                                                                                                                                                                                                                                                                          MD5:096BC064579D6CB8343FAD87F4348DDC
                                                                                                                                                                                                                                                                          SHA1:6A434AF3631E26E9AAE70F0A69061F5C6A464978
                                                                                                                                                                                                                                                                          SHA-256:6E0313D7151FBB318B4B1EB6C05946901980EFFEC2CCD6C870472CAD285DDDDB
                                                                                                                                                                                                                                                                          SHA-512:137339F3DFD451BACEAD31CD960BC2907B7B6E4B1A76247753FBE0B645FDCAC12AF4633DC5AEC1B2DD44505CE6F3B102FDBD431103D24D7CDA938E22C9CE8599
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://fa000000012.resources.office.net/033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2503.17004/en-us_web/manifest_web.xml
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">.. <Id>93155735-fd84-4d6f-9433-305bdb6cb523</Id>.. <Version>2.0.0.0</Version>.. <ProviderName>Microsoft Corporation</ProviderName>.. <DefaultLocale>en-US</DefaultLocale>.. <DisplayName DefaultValue="Help" />.. <Description DefaultValue="In-App Help provided by support.office.com" />.. <IconUrl DefaultValue="https://support.office.com/icon32.png" />.. <HighResolutionIconUrl DefaultValue="https://support.office.com/icon80.png" />.. <SupportUrl DefaultValue="https://support.microsoft.com" />.. <AppDomains>.. <AppDomain>https://login.live.com</AppDomain>.. <AppDomain>https://login.live-int.com</AppDomain>.. <AppDomain>https://login.windows.ne
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (30663)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):30715
                                                                                                                                                                                                                                                                          Entropy (8bit):5.275678268616621
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:768:ztetk0SMB/2ZsJIjrAWJdvgmfQFc6mjVqMP62A86uIz3yR:zIu0S0/ks2JdImYFcw662A86vzyR
                                                                                                                                                                                                                                                                          MD5:71706C53165D6963A26E07A5EE5000C9
                                                                                                                                                                                                                                                                          SHA1:2BF85692F91FF746721404B132433D98D9E948B1
                                                                                                                                                                                                                                                                          SHA-256:B282E5C08BEF5CD85B0017EDA2CAC50C6AE4BA63AF205F889CA3DD21075A4789
                                                                                                                                                                                                                                                                          SHA-512:154A50C328D57CBB76CC9DFB60B1BC20B50789E5BA101B3B6BC597C3548714F3166E2213495ADD7211B533D63AA31EB2662CFD9B20B3128D3D7F305E70B5CEB3
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://amcdn.msftauth.net/me?partner=OneNoteOnline&version=latest&market=EN-US&wrapperId=suiteshell
                                                                                                                                                                                                                                                                          Preview:window.MSA=window.MSA||{};window.MSA.MeControl=window.MSA.MeControl||{};window.MSA.MeControl.Config={"ver":"10.24228.4","mkt":"en-US","ptn":"onenoteonline","gfx":"https://amcdn.msftauth.net","dbg":false,"aad":true,"int":false,"pxy":true,"msTxt":false,"rwd":true,"telEvs":"PageAction, PageView, ContentUpdate, OutgoingRequest, ClientError, PartnerApiCall, TrackedScenario","instKey":"b8ffe739c47a401190627519795ca4d2-044a8309-9d4b-430b-9d47-6e87775cbab6-6888","oneDSUrl":"https://js.monitor.azure.com/scripts/c/ms.shared.analytics.mectrl-3.gbl.min.js","remAcc":true,"main":"meBoot","wrapperId":"suiteshell","cdnRegex":"^(?:https?:\\/\\/)?(mem\\.gfx\\.ms(?!\\.)|controls\\.account.microsoft?(?:-int|-dev)?(\\.com)?(:[0-9]{1,6})|amcdn\\.ms(?:ft)?auth\\.net(?!\\.))","timeoutMs":30000,"graphv2":true,"graphinfo":{"graphclientid":"7eadcef8-456d-4611-9480-4fff72b8b9e2","graphscope":"user.read","graphcodeurl":"https://login.microsoftonline.com/common/oauth2/v2.0/authorize","graphredirecturi":"https://amc
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (619)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2665549
                                                                                                                                                                                                                                                                          Entropy (8bit):5.693260035460923
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:49152:6/SscCZzHuYMH/eeMqXZK+bF/B4RYUPgv2+Uz7Ajavl6IN7Ka8RDzGTNFEWBN6Nf:c1N+
                                                                                                                                                                                                                                                                          MD5:D6DE50C2D81CF7CBB057C4A715CFA2FE
                                                                                                                                                                                                                                                                          SHA1:9D5B3645F418FC6439C4BE128EACCC248F508858
                                                                                                                                                                                                                                                                          SHA-256:17C0B76F13E4C692EAC385AA6E6D6D6C1ACC162961EDA5C2C9498F53956CBF96
                                                                                                                                                                                                                                                                          SHA-512:A1A3EFAB2C39773A4EDE87856E69789EFADE8EB51533326E6BBE25628FA639A45AFBFFDD7337555912F96CB5557BD7DF4F018ED28A784CDD3B324B8085208BC3
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hE0C50EAA85571CEA_App_Scripts/OneNoteDS.box4.dll2.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.dullscriptWebpackJsonp=globalThis.dullscriptWebpackJsonp||[]).push([[2],{44412:function(Fa,Ya,J){function Ca(X){var Z={costPriority:1,samplingPolicy:1,persistencePriority:1,dataCategories:0,diagnosticLevel:100};X.eventFlags&&X.eventFlags.dataCategories||(0,K.b)(0,0,function(){return"DataCategories"});if(!X.eventFlags)return Z;X.eventFlags.costPriority&&(Z.costPriority=X.eventFlags.costPriority);X.eventFlags.samplingPolicy&&(Z.samplingPolicy=X.eventFlags.samplingPolicy);X.eventFlags.persistencePriority&&.(Z.persistencePriority=X.eventFlags.persistencePriority);X.eventFlags.dataCategories&&(Z.dataCategories=X.eventFlags.dataCategories);X.eventFlags.diagnosticLevel&&(Z.diagnosticLevel=X.eventFlags.diagnosticLevel);return Z}function Ja(X,Z,aa,ta,ja,ca,fa,P,ba,ia,pa){ta.forEach(function(ha){X.sendTelemetryEvent({eventName:Z.name+".Qos.Error."+aa,eventFlags:{diagnosticLevel:110},dataFields:(0,T.c)((0,T.c)([],C.g.Qy({rkg:ha,pUf:ja,isIntentional:ca,isInternal:fa,alertOnPillar:P,isS
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1115
                                                                                                                                                                                                                                                                          Entropy (8bit):7.474905425501729
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:OQkGe2gKOcQO9S80Axzhkzc7iFTZkqeNblj5ILlN0EFgFahPKN7FqP8:OQkRrTCbxzwSiZLCN52TFgM5KN7Fp
                                                                                                                                                                                                                                                                          MD5:084E7612635DFCF69A16255B41E70CAA
                                                                                                                                                                                                                                                                          SHA1:0D9721AA70B01487D3340B864C0BD49FB1D95206
                                                                                                                                                                                                                                                                          SHA-256:7B389747818635BCA6FE76F5E3226EDA36AF53D8F27526796BC975EBD440A395
                                                                                                                                                                                                                                                                          SHA-512:A0104DBB40429BCA5F54061CE6D36A695283D883CE1B732CA87A30743234D29BEBA07A0100DE0DE0B274A70C8C7C289574F6343DF16C3E4C7B6453F60E8737B9
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...`...`......w8....sRGB.........gAMA......a.....pHYs..........o.d....IDATx^.k.A.....@ .6.* ..H...R....V....l.! X..Z..Z..... X... .. .{.^fw...{.fv..70.~..|........ .. .. .. .. .. .. .. .. .. .. ..3.8.1q....(.&.....B.o.."w..Y.....]......~0N0....]..z....|.n.*......._..O...9..8@..K./..%..[..LQ.rm:.H.>...-..;,...9.G.n....`.{..-.F...'.?...y..]H..o{y..#.....]..x|...K.(x|p~.....r..R..~\.2.Y...f.Q..i...o...r.........Gc..Bp.Ol..\(...~.T...,....j.O.(e......j(e. ...Z....Rf......j(e. ...Z....Rf......j(e.....D.,Y.....~..n.[.........PA....]....0.mK...sE.........J~}z[.!n...RV|.#.......7s.......)B.e;j2.........tX..k.....o.V....j.k3*A........9..?R....Z....5t..j....f.Z.....E.L....J..7.}Uk.......H..i.Z...1...x$....]<I.......#ixw..h.h.h.a.4....9.&.v.....2i..D..l...'.-.+.._...eLZ...M..x..1%.g....'A..X.....jkK.^W.}.m...T....|...._.^.[..~u'...mco.8...nT....d.m.I.b..M.4...s.U.;Yu...k.1|..93a..(M..2..U......B..S..O...........c.......?)....iz.D...T.D!....R
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (2224), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2224
                                                                                                                                                                                                                                                                          Entropy (8bit):5.029670917384203
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:iYyhna6311NDG9e1ctrSmz6usES0da3RhRDh79nFzFnpR4RYhQyYSI:iYenaUG0aB+qahhRDh79nFzFn/cYhQy4
                                                                                                                                                                                                                                                                          MD5:96EC242EA2E25558F7EC13FA88D9D793
                                                                                                                                                                                                                                                                          SHA1:B0BB7F6BD5206CC1FFB572CBD4A6AD2F88D42433
                                                                                                                                                                                                                                                                          SHA-256:850C54CE960E710757379C19601C65C00CF7D485063115F34AA30AE193CCEA43
                                                                                                                                                                                                                                                                          SHA-512:8C732012F96C7A9B4434F1BC27262A07080F05FCDF54E64B9CB4F37C20D3D8A85FAC2387C934798056D137B03F918D5CE4847C835CC013EDD4485686993D5F4F
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/Feedback/latest/Intl/en/officebrowserfeedbackstrings.js
                                                                                                                                                                                                                                                                          Preview:OfficeBrowserFeedback.setUiStrings({FeedbackSubtitle:"Send Feedback to Microsoft",PrivacyStatement:"Privacy Statement",Form:{CommentPlaceholder:"Please do not include any confidential or personal information in your comment",CategoryPlaceholder:"Select a category (optional)",EmailPlaceholder:"Email (optional)",RatingLabel:"Rating",ScreenshotLabel:"Include screenshot",Submit:"Submit",Cancel:"Cancel",EmailCheckBoxLabel:"You can contact me about this feedback",PrivacyConsent:"IT admins for your organization will be able to view and manage your feedback data.",PrivacyLabel:"By pressing submit, your feedback will be used to improve Microsoft products and services. ",ScreenshotImgAltText:"Screenshot Preview"},SingleForm:{Title:"Please provide feedback"},SmileForm:{Anchor:"I like something",Title:"What did you like?"},FrownForm:{Anchor:"I don't like something",Title:"What did you not like?"},IdeaForm:{Anchor:"I have a suggestion",Title:"What do you suggest?"},BugForm:{Anchor:"File a bug",Titl
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (2939)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):2988
                                                                                                                                                                                                                                                                          Entropy (8bit):5.442749958298734
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:mYi97JKN7ihDeBLlLh+bfPKQRG+8DVKX+6Q9fru1+6Q9agZO7+OcmwQ9vQ91R5AI:mYgcakLh+rPKQo+8w+Da1+DagZO+wpu3
                                                                                                                                                                                                                                                                          MD5:71ACB35037B249ECD6A8DCD266290D24
                                                                                                                                                                                                                                                                          SHA1:B6C6A73758AB54EFEB24BC1BF9523BAAB6F517FA
                                                                                                                                                                                                                                                                          SHA-256:A6571C6F845C2FD3D2B9B716F5E27E7E4C0BE7F0EE0B12FC300095751A88F95A
                                                                                                                                                                                                                                                                          SHA-512:7A10A083A6E1D6298E255649E1C2E37C4EF2D7A6DDCF36620C79321280C4CD37B45B472AD372433AEDB01D779BD65FF5A9E3F420990FD6542CCC7D6B92F6E147
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/oreonotebookpane.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[977],{1934:function(e,t,n){var o=n(94329),a=n(36706)(o);a.push([e.id,".wacCanvasOverlay__overlay___DpHwX {\n bottom: 0;\n left: -50px;\n position: absolute;\n right: 0;\n top: 0;\n z-index: 90;\n background: rgba(0, 0, 0, 0);\n -ms-high-contrast-adjust: none;\n}\n",""]),a.locals={overlay:"wacCanvasOverlay__overlay___DpHwX"},e.exports=a},68956:function(e,t,n){"use strict";var o=n(90842),a=n(26101),s=n(94265);const l=n(82145),r=(0,o.connect)((e=>({showOverlay:e.isVisible,navSelection:e.navSelection})))((e=>{const t=e.showOverlay&&!e.navSelection[s.C.SHOW_ALL]?a.createElement("div",{className:l.overlay}):null;return a.createElement("div",null,t)}));var c=n(15073),i=n(57464),d=n(76288),m=n(56972),u=n(76045),A=n(54627);let y=(0,i.I)();const S=(e,t)=>{let n={};return n[t]=!0,e((0,m.QI)(n)),c.Ay.ActionResponse.Succeeded};var v=n(7859),g=n(5140),h=n(40334),p=n(60495);const C=n(24382);if(b=A.A.dispatch,c.Ay.Regis
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):89749
                                                                                                                                                                                                                                                                          Entropy (8bit):5.907896932868388
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:TF7qkDiiBSPqAYXUJqc9a/qc9aJyXUEUx:J7j7B4S6RaVC
                                                                                                                                                                                                                                                                          MD5:1BF11FC2DBDB5C48B7D60F5005583417
                                                                                                                                                                                                                                                                          SHA1:DF52B131F6B151E674204CBA77082EFAEFBC3F8C
                                                                                                                                                                                                                                                                          SHA-256:172E218E70CC419328B7AAB580615DA2A562E1508EAC9AC3014C52C51F2F50EC
                                                                                                                                                                                                                                                                          SHA-512:A40545B0B88AAF5EC4D28015B72451CE6F19073FC7E1CF6A8B08EEAB6D173CCE9E62553CACFDA7FE0FB4DDECB2E09E8B966C6466AE50AC31193481D82898ECB6
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/Meetings_manifest.xml
                                                                                                                                                                                                                                                                          Preview:.<?xml version="1.0" encoding="UTF-8"?>..<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">...<Id>90da59be-5361-4260-9218-2262af1dc334</Id>...<Version>1.0.0.0</Version>...<ProviderName>Microsoft Corporation</ProviderName>...<DefaultLocale>en-US</DefaultLocale>...<DisplayName DefaultValue="Add Meeting Details">.... START STRING LOCALIZATION REPLACEMENT (StringID: OfficeAddIns.Meetings.ManifestDisplayName -->......<Override Locale="af-ZA" Value="Voeg vergaderingbesonderhede by" />....<Override Locale="en-US" Value="Add Meeting Details" />....<Override Locale="am-ET" Value="..... ...... ...." />....<Override Locale="ar-SA" Value="..... ...... ........" />....<Override Locale="as-IN" Value="..
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (30301)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):106053
                                                                                                                                                                                                                                                                          Entropy (8bit):5.390879864953868
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:Kne1mh5cQrTN1rdolu2hOcDDaonC7AZ9GUKwjm:+0mh5cQr51r/2hTaoCs9ny
                                                                                                                                                                                                                                                                          MD5:F414F907C14F2C9C25A3EB364052DA61
                                                                                                                                                                                                                                                                          SHA1:A19E8B82EB7A1F62FAD1527C1FB041EE307D6500
                                                                                                                                                                                                                                                                          SHA-256:12BFC340A249C168FC13DD749584D1316A5C174AD9AABE79ABDE4BFA9A3AEA70
                                                                                                                                                                                                                                                                          SHA-512:AD94A348675AC6D49B6E7929067D7BEEC3AE69506951B2F3FA3A45FCFE3209424776B08DEB3594C696E3279265BD9F027132D3CB1FC0597431376348F1079120
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/js/suiteux.shell.otellogging.js
                                                                                                                                                                                                                                                                          Preview:var shellPerformance=window.performance,HighResolutionTimingSupported=!!shellPerformance&&"function"==typeof shellPerformance.mark;HighResolutionTimingSupported&&shellPerformance.mark("shell_otellogging_start"),(self["suiteux_shell_webpackJsonp_suiteux-main"]=self["suiteux_shell_webpackJsonp_suiteux-main"]||[]).push([["otellogging"],{57679:function(n,t,e){var r=e(92855),i=e(41230),o=e(53810),u=e(71399),a=e(53350),c=e(36141),s=e(32590),f=e(46800),l=e(78035),d=function(n){function t(){var e=n.call(this)||this;return e.pluginVersionStringArr=[],(0,i.A)(t,e,(function(n,t){n.logger&&n.logger.queue||(n.logger=new o.wq({loggingLevelConsole:1})),n.initialize=function(e,r,i,s){(0,u.r2)(n,(function(){return"AppInsightsCore.initialize"}),(function(){var u=n.pluginVersionStringArr;if(e){e.endpointUrl||(e.endpointUrl=f.S);var l=e.propertyStorageOverride;!l||l.getProperty&&l.setProperty||(0,a.$8)("Invalid property storage override passed."),e.channels&&(0,a.Iu)(e.channels,(function(n){n&&(0,a.Iu)(n,
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Web Open Font Format, TrueType, length 3148, version 4.-22282
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):3148
                                                                                                                                                                                                                                                                          Entropy (8bit):7.734343585376445
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:UcsQ1n9B6elIuAjDbx7cWB1/SHVP7Y3mX/LaWvPOhaGPsXqAXIFXvss:UQ19BLlIuAjp7q1T3XbWwQE4FXks
                                                                                                                                                                                                                                                                          MD5:FC6E4E67A40B43F280596646588E78AA
                                                                                                                                                                                                                                                                          SHA1:6726DC48C766723426F76D9A5CBFFC1F101CF698
                                                                                                                                                                                                                                                                          SHA-256:FA38AA63FBC816A1B5D4848185BBB1ACB5410A2EE9BB1966DEE80682E460FDA8
                                                                                                                                                                                                                                                                          SHA-512:2616DB52B04D347E793A5B050B510F2781665CAA8AD2A8825ED3FE2EF78C33FD01128186F71F12514951D46FAA3C5484FCDE39403F0FDDECE7D310DEFD0F186C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/hFA38AA63FBC816A1_App_Scripts/fonts/sharedheaderplaceholder-icons.woff
                                                                                                                                                                                                                                                                          Preview:wOFF.......L.......<........................OS/2...D...H...`1Y{.cmap.......V...z.m..cvt ....... ...*....fpgm...........Y...gasp................glyf...........H....head... ...2...6.P.@hhea...T.......$....hmtx...l............loca...............\maxp........... .'..name...............Upost........... .Q..prep............x...x.c`a_.8.....u..1...4.f...$..........@ ...........<...!$.X......... ..x.c```f.`..F..(....|... -. ..az..\....../.^..y..?.....;.'..$6Ht.M...........,...|....x.c.b.e(`h`X.......x............x.]..N.@..s$..'@:!.u*C....K$.%%...J.......n..b.........|.s...|v..G*)V.7........!O.6eaL.yV.e.j..kN..M.h....Lm....-b....p.N.m.v.....U<..#...O.}.K..,V..&...^...L.c.x.....?ug..l9e..Ns.D....D...K........m..A.M....a.....g.P..`....d.............x..T_H[W...{..5.X.M..!.5.&.[...>..$.Nc.b.*X,...a....XQ......B...B_Z...a/+}*.{.[.Z)...c.....+......9....w~.;..*...p.....Cq....J..nq... ....2......6qK...>.9....U...%..M..Rg..^.T?5E.h$..IBL..P,....*.'a...... .%..Do.M.R9.>Q.G.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (20082), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):20082
                                                                                                                                                                                                                                                                          Entropy (8bit):5.3785189328644485
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:384:Tt1CTbGLeulh4MQOCS9AKBINrXNlQihhST3iT00XazfPTZsn:p1GTuli2gKBkrPTpqrTZs
                                                                                                                                                                                                                                                                          MD5:58A30E58FBE0165292F0425B04256E46
                                                                                                                                                                                                                                                                          SHA1:420050FE7E6034D52094B2F769FDB12A3591A748
                                                                                                                                                                                                                                                                          SHA-256:534ECF698946529FF99C868DA810DAB8E1E9C7491EBDC873BDF95D34ABF75C4E
                                                                                                                                                                                                                                                                          SHA-512:6127E32FC185C33353C75180F2B54DFE28E471558FF2478B23C8AB64511BFBAC0AA6200740F94186F0CC56F5D6137C9BD7F16BA3580F4E994A064B7E5AE67D44
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/LearningTools/LearningTools.js
                                                                                                                                                                                                                                                                          Preview:function getLanguageParameter(n){var t,i;if(UseApiForUILanguage&&Office.context.displayLanguage)return""+n+"="+Office.context.displayLanguage;var f=window.location.search.substr(1),r=f.split("&"),u="";for(t=0;t<r.length;t++)if(i=r[t].split("=",2),i.length==2&&i[0]=="ui"){u=""+n+"="+i[1];break}return u}function getEdgeMajorVersion(){var t=navigator.userAgent,n=t.match(/Edge\/([0-9]+)/i);return n&&n.length>=2?parseInt(n[1]):-1}function getQueryParameter(n){var u,r,t,i;if(window.location.search&&window.location.search.length>1)for(u=window.location.search.substring(1),r=u.split("&"),t=0;t<r.length;t++)if(i=r[t].split("="),decodeURIComponent(i[0])==n)return i.length>1?decodeURIComponent(i[1]):"";return null}function now(){return(new Date).getTime()}function generateGuid(){return"xxxxxxxx-xxxx-4xxx-yxxx-xxxxxxxxxxxx".replace(/[xy]/g,function(n){var t=Math.random()*16|0,i=n==="x"?t:t&3|8;return i.toString(16)})}function createSimpleHtml(n,t,i){i===void 0&&(i=null);var r=document.createElemen
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/msit/100/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:JSON data
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1217
                                                                                                                                                                                                                                                                          Entropy (8bit):5.88208580067204
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:24:YgUvW8iS+9Io9ZcYsjumc0nO+bTrj6oktRLHUU42GWnJKqI16Y1U55S4ZKj:YDvW8iS+9IOZcljvnOETfktRDRNJNINH
                                                                                                                                                                                                                                                                          MD5:6A3BABAD234AE7D0B06CADF7D40E057B
                                                                                                                                                                                                                                                                          SHA1:AA09CD5DDD0C75076BB5CD689BF7E21498A6062E
                                                                                                                                                                                                                                                                          SHA-256:2BE680DEA035DBFD61D91CE9E9CFBE543E807A10220AE99EE6BE9353898658E4
                                                                                                                                                                                                                                                                          SHA-512:9064FF53B650EC68D94620D70A15F038AE354C8AD2FB178EBB19243F596DF4B75E5F9D2C538EE1BC95301C7120D7AD16EEDB6ACD55045D12F99AB48F9D6ED8EE
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise-m.public.cdn.office.net/wise-m/owl/5mttl/production/100/manifest.json
                                                                                                                                                                                                                                                                          Preview:{"clientVersion":"20250320.5","files":{"owl.js":["owl.3e038441fedc18b6dd03.js","sha384-1tDQAFrslg0SiJ3qGWEBxpTzTaC+9nfeuJlqZVc8H485dvcssF4QOvmd0HH28NzB"],"owl.slim.js":["owl.slim.ab837f2adcf05cbb8e21.js","sha384-x/3D0VlPt7dPTqyq6SCVg4JHtRTxayGTMbJ9r8wIwy/o6935SOMSH5Gwkg36E4FF"],"owlnest.js":["owlnest.335d4164a2dfe6fb2b11.js","sha384-B7y+TtH+aNWDWryj58OqESzbHocauBs7Fbe9m+R/soaTuN/5/5yeZKNu6c4YKirV"],"sharedauthclientmsal.js":["sharedauthclientmsal.6b11c4094d365aa3ee90.js","sha384-h7P0pqVXq1PleVVfjH/ZuO3FPFxeCy6Mq726yzENTFWdML6/5iRSAdaiC3Mu7g57"],"word.boot.js":["word.boot.bc7ae34cd450e5c92a6d.js","sha384-r4EL2u/EycHS5UVLe05IHgbOGiFAgfQK/AcrYIl/AH6erMdYfrSyu0SdOpmag5OL"],"onenote-boot.js":["onenote-boot.4cd6acc29a3780b31c8a.js","sha384-jsiF5OtaNZdK74MvijspgE7nww4NJGVJ20KIklFIFtK3etpGOo0WDvGu1gmhXQn0"],"visio.boot.js":["visio.boot.ecbc6c377ba30a4072f7.js","sha384-HwSQUTYQEl5zoTRRX3WrblgWt0lKN+F3uzd2Qy/sky9BDu6NDZkh+ki2BLTN+gSG"],"excel-boot.js":["excel-boot.a7ca8fdf9437414566b1.js","sha38
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65394)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):91802
                                                                                                                                                                                                                                                                          Entropy (8bit):5.3603423050848615
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:1536:C4F18VDgLMcb+0XbPN1xlJGFqCN3tcULcUoHfe:C4F18VDgLN9LN1mTn
                                                                                                                                                                                                                                                                          MD5:CF5CC7F4B57526CC37893DCB83DED031
                                                                                                                                                                                                                                                                          SHA1:E953783BE0A7894585778455AAE3D0DF094D6F29
                                                                                                                                                                                                                                                                          SHA-256:3A790B6C0D26D7A4D292CB27F992EAFAFF42C37E9318B2AB704207039127FCB8
                                                                                                                                                                                                                                                                          SHA-512:2320F9D7811CD773C1E5C2E95A31B39E9FF62A2FA7CA431975873DAB57AE42A75BA720D15AEB47FA2EA127D0766EB5AA15040CFFD04BF7A8CB8BCD7236069C40
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://js.monitor.azure.com/scripts/c/ms.shared.analytics.mectrl-3.gbl.min.js
                                                                                                                                                                                                                                                                          Preview:/*!. * 1DS JS SDK Shared Analytics, 3.2.18. * Copyright (c) Microsoft and contributors. All rights reserved.. * (Microsoft Internal Only). */.!function(e,n){var t,r={},i="__ms$mod__",o={},a=o.esm_ms_shared_analytics_mectrl_3_2_18={},u="3.2.18",c="oneDsMeControl3",s=(s=e)[c]=s[c]||{},l=(l=e)[c="oneDsMeControl"]=l[c]||{},e=s[i]=s[i]||{},f=e.v=e.v||[],c=l[i]=l[i]||{},d=c.v=c.v||[];for(t in(c.o=c.o||[]).push(o),n(r),r)s[t]=r[t],f[t]=u,l[t]=r[t],d[t]=u,(a.n=a.n||[]).push(t)}(this,function(e){"use strict";!function(e,n,t){var r=Object.defineProperty;if(r)try{return r(e,n,t)}catch(i){}typeof t.value!==undefined&&(e[n]=t.value)}(e,"__esModule",{value:!0});var y="function",m="object",se="undefined",C="prototype",I="hasOwnProperty",b=Object,S=b[C],x=b.assign,w=b.create,n=b.defineProperty,_=S[I],T=null;function O(e){e=!1===(e=void 0===e||e)?null:T;return e||((e=(e=(e=typeof globalThis!==se?globalThis:e)||typeof self===se?e:self)||typeof window===se?e:window)||typeof global===se||(e=global),T=e),e
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):605251
                                                                                                                                                                                                                                                                          Entropy (8bit):5.298920101607988
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:QsUuFGuLfLvlPe6X/qOLe9+I3cP3wk/3r6nh13xbSfMDpx50Pm5I3m9v7p+Fcur3:QsUusuLfLJsLa3wk/3rqCGyvm9v7S
                                                                                                                                                                                                                                                                          MD5:5D2E1B3A65FDDD47697E6CAAFF983CD2
                                                                                                                                                                                                                                                                          SHA1:1BF8D5F6C4FCE4DB562EDD55327B53B04312B17F
                                                                                                                                                                                                                                                                          SHA-256:2DE722B55026E55961B703884044904420D7ED820A93099E19820334CA13EF51
                                                                                                                                                                                                                                                                          SHA-512:35C502C1D087EC46CF91499D800BAA4BAF5474E3D429A65B05AE2DB74BB85FFC7C50D7EBE3228D935C123B97366CB40A91B3A649C033A9D0C1ADB6BAC63DF82C
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/al.min.js
                                                                                                                                                                                                                                                                          Preview:!function(e){if("object"==typeof exports&&"undefined"!=typeof module)module.exports=e();else if("function"==typeof define&&define.amd)define([],e);else{("undefined"!=typeof window?window:"undefined"!=typeof global?global:"undefined"!=typeof self?self:this).augLoop=e()}}((function(){return function e(t,n,o){function r(a,s){if(!n[a]){if(!t[a]){var u="function"==typeof require&&require;if(!s&&u)return u(a,!0);if(i)return i(a,!0);var c=new Error("Cannot find module '"+a+"'");throw c.code="MODULE_NOT_FOUND",c}var l=n[a]={exports:{}};t[a][0].call(l.exports,(function(e){return r(t[a][1][e]||e)}),l,l.exports,e,t,n,o)}return n[a].exports}for(var i="function"==typeof require&&require,a=0;a<o.length;a++)r(o[a]);return r}({1:[function(e,t,n){"use strict";var o=e("exportStarHelper");Object.defineProperty(n,"__esModule",{value:!0}),o(e(2),n)},{2:2}],2:[function(e,t,n){"use strict";Object.defineProperty(n,"__esModule",{value:!0}),n.isStopWorkflowMessage=n.setStopAndFilterWorkflowMessage=n.setMessageE
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Unicode text, UTF-8 text, with very long lines (55712)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):206042
                                                                                                                                                                                                                                                                          Entropy (8bit):5.741192548619688
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:3072:VDWpkqZJHogp0l3eamKljpd1/0KjRDV3NcUNY7N:VyhZJHZp1fKljp30KjRDVdZY7N
                                                                                                                                                                                                                                                                          MD5:3C7448CF819F45A420415F23C4796347
                                                                                                                                                                                                                                                                          SHA1:938F787AE9D8AA10B7D06F2A75CD7EBA140FA1C3
                                                                                                                                                                                                                                                                          SHA-256:559F5D5CE98DCC1A1366F72A2949319DA2B97B501E145D223BC8EF224F922215
                                                                                                                                                                                                                                                                          SHA-512:462B4419B2FE8EA88B5B0A37B7770BFEB7E4A0F696232E87E228EC1C4371A3079EA78A74D420472DAE880168878EBA24137D16FB60E984A8D65D8FAAD30612FC
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/suiteux-shell/js/suiteux.shell.core.js
                                                                                                                                                                                                                                                                          Preview:var shellPerformance=window.performance,HighResolutionTimingSupported=!!shellPerformance&&"function"==typeof shellPerformance.mark;HighResolutionTimingSupported&&shellPerformance.mark("shell_core_start"),function(){var e,t,n,o,r,i={82595:function(e,t,n){"use strict";var o;n.d(t,{d:function(){return o}}),function(e){e.USGOV_DOD="https://pf.events.data.microsoft.com/OneCollector/1.0/",e.USGOV_DOJ="https://tb.events.data.microsoft.com/OneCollector/1.0/",e.PUBLIC="https://browser.events.data.microsoft.com/OneCollector/1.0/",e.CUSTOMER_CONTENT="",e.EUDB="https://eu-office.events.data.microsoft.com/OneCollector/1.0/"}(o||(o={}))},84184:function(e){e.exports="data:font/woff;charset=utf-8;base64,d09GRgABAAAAAEkgAA4AAAAAdUgABKj2AAAAAAAAAAAAAAAAAAAAAAAAAABPUy8yAAABRAAAAEgAAABgLuB/9WNtYXAAAAGMAAAB/wAABFqFlGebY3Z0IAAAA4wAAAAgAAAAKgnZCa9mcGdtAAADrAAAAPAAAAFZ/J7mjmdhc3AAAAScAAAADAAAAAwACAAbZ2x5ZgAABKgAAD3tAABgCCt0btFoZWFkAABCmAAAADYAAAA2LRkCQWhoZWEAAELQAAAAHQAAACQ3yjBmaG10eAAAQvAAAACNAAABsE2rJ4xsb2N
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, Unicode text, UTF-8 (with BOM) text, with very long lines (4207), with CRLF line terminators
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):4212
                                                                                                                                                                                                                                                                          Entropy (8bit):5.732834657954366
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:Rm/hpTwpHpypYYqeQkpYYFNtjEYtDE0kypOKeklKVuAmM3oVKCM3j++j+xUJo8/q:iyzh0QYtD5o6Im+n36+jLXYKMVp/
                                                                                                                                                                                                                                                                          MD5:5780200B7FE28C3F2C46864A012246E5
                                                                                                                                                                                                                                                                          SHA1:03A13FDC8A8CC7DBECE15E23105EA6E870105133
                                                                                                                                                                                                                                                                          SHA-256:0EF96689F29280B58D5024539DFE352EC9DD520CA1EDA5E24F0AEBD31DE0A560
                                                                                                                                                                                                                                                                          SHA-512:4FCC868D4E3401728FE4AEBB2AF8D2DB937309EA98EB916E02CF85E61504170C5B7B62C3169D4BE130363552063B1232575CDD9863026CAB2816DA96BD03AD26
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"><html xmlns="http://www.w3.org/1999/xhtml" ><head><meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><title></title><script type="text/javascript"> var l_ErrorImageAlt_Text = "The service is unavailable"; var l_ErrorHeader_Text = "Service Unavailable"; var l_ErrorLine1_Text = "We are currently experiencing technical difficulties."; var l_ErrorLine2_Text = "Please try again later."; var l_ErrorHeaderStyle_Text = "font-family: calibri, tahoma, verdana, arial, sans serif; font-size: 18pt; color: #444444; line-height: 150%"; var l_ErrorTextStyle_Text = "font-family: calibri, tahoma, verdana, arial, sans serif; font-size: 10pt; color: #444444"; var language = "en-us"; function writeLocalizedErrorMessage() { getBrowserLanguage(); loadScript(); try{ if(window.parent.g_enableFramePageErrorReporting) { const message = { MessageId: "Wac_AppFailed", SendTim
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):452074
                                                                                                                                                                                                                                                                          Entropy (8bit):5.616903184134907
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:/wpwMtCE+NX9bGtbLdrDx0muUPycNqppo/+xhnoqKUPp01D:/wqX9bGtPdrDx0mGcNGXpRp01D
                                                                                                                                                                                                                                                                          MD5:3C163EBA85F7AC29DD157AFAD9FCFA99
                                                                                                                                                                                                                                                                          SHA1:13116489A73012C1D26CBFC5BFCA6B73426A3C73
                                                                                                                                                                                                                                                                          SHA-256:823B3E877340724ED788F524A915B65249EC4EA7BC4A253456C7B7EDD132A60A
                                                                                                                                                                                                                                                                          SHA-512:3227E1498DB82EA71B4579F343D292ED79F8C54174BF4F2449C9E8D577D7F51840A0A9323AABFBFE396089055CE9C599E6F21293E9D07176242D90BD1EEF787F
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/appChrome.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[306],{66491:function(e,t,o){var n=o(53579),r=o(18812);"string"==typeof n&&(n=[[e.id,n]]);for(var i=0;i<n.length;i++)r.loadStyles(n[i][1],!1);n.locals&&(e.exports=n.locals)},53579:function(e,t,o){var n=o(94329),r=o(36706)(n);r.push([e.id,'svg>path.OfficeIconColors_m20 {\r\n fill: #FAFAFAFF;\r\n}\r\nsvg>path.OfficeIconColors_m21 {\r\n fill: #C8C6C4FF;\r\n}\r\nsvg>path.OfficeIconColors_m22 {\r\n fill: #3A3A38FF;\r\n}\r\nsvg>path.OfficeIconColors_m23 {\r\n fill: #797774FF;\r\n}\r\nsvg>path.OfficeIconColors_m24 {\r\n fill: #1E8BCDFF;\r\n}\r\nsvg>path.OfficeIconColors_m25 {\r\n fill: #0063B1FF;\r\n}\r\nsvg>path.OfficeIconColors_m26 {\r\n fill: #83BEECFF;\r\n}\r\nsvg>path.OfficeIconColors_m27 {\r\n fill: #379E4EFF;\r\n}\r\nsvg>path.OfficeIconColors_m28 {\r\n fill: #309048FF;\r\n}\r\nsvg>path.OfficeIconColors_m29 {\r\n fill: #A1DDAAFF;\r\n}\r\nsvg>path.OfficeIconColors_m210 {\r\n fill: #
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (3591), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):3591
                                                                                                                                                                                                                                                                          Entropy (8bit):5.239201941431302
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:bH7vNE6oKn0FmM8LOCvlocJZS1tJM3kL+4UT3LW0IwlQSoIQ90ESf4TmlSYmYBo:lyDWocHS3Wl4W3abOQS/CahlcYW
                                                                                                                                                                                                                                                                          MD5:5B51CD876EC5E8C80922CA73F8C89436
                                                                                                                                                                                                                                                                          SHA1:95C5EAA66806B8C985AE05F209F0314A7B7EBD4F
                                                                                                                                                                                                                                                                          SHA-256:E51000C190F1009368ACA0293D829C298D2796F45F9D7D8B0ECA664D5E4CEAF2
                                                                                                                                                                                                                                                                          SHA-512:1BF851EBC7D992178FF5DBB79176C8C6DA39E2025A2496C7FCCC796BF375ECD9D77E484ECBAC60C9AC422D3866B6F136A056D6AFB39563F869EF301558417F4A
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://cdn.onenote.net/officeaddins/161872540452_Scripts/Instrumentation.js
                                                                                                                                                                                                                                                                          Preview:function GetInstrumentationCategory(){return instrumentationCategory?instrumentationCategory:InstrumentationCategoryString?instrumentationCategory=Diag.ULSCat[InstrumentationCategoryString]:null}function InstrumentLinks(n){for(var t,r=0,i=0;i<n.length;i++)t=n[i],t.id||(t.id="un_"+r,r++),t.addEventListener("click",function(n){GenerateInstrumentationLink(t.id,n)}),t.addEventListener("dragstart",function(n){GenerateDragInstrumentationLink(t.id,n)}),t.addEventListener("contextmenu",function(n){GenerateContextMenuInstrumentationLink(t.id,n)})}function LogUserViewPortInfo(){var t=$(window).width(),n=$(window).height(),i=screen.width,r=screen.height,u=$(document).height(),f=n/u*100;Diag.ULS.sendTraceTag(6436628,GetInstrumentationCategory(),Diag.ULSTraceLevel.info,"User ViewPort Info;windowWidth={0};windowHeight={1};screenWidth={2};screenHeight={3};percentageOfPageVisible={4};",t,n,i,r,f.toFixed(3))}function UpdateFurthestScrollDepth(){var t=$(window).scrollTop(),i=$(window).height(),r=t+i,u=$
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (1917), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):1917
                                                                                                                                                                                                                                                                          Entropy (8bit):4.866147659440219
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:M9AK7E4h5qV5j9RXkIgj3oJzXz6WnzWgEAZAdAhATcY7A03LpA0AqAuAIA3UmcY7:T4WvkIC+TzFnbcXL61
                                                                                                                                                                                                                                                                          MD5:D735D21380443BDC0F0AB7AF903BE68C
                                                                                                                                                                                                                                                                          SHA1:E56B7A019CB46DE9A26ED642EE0457145B3E70C3
                                                                                                                                                                                                                                                                          SHA-256:1F373EA59CACA23C57878D178D5E0137B0F4B6AFB9F7A6C4052FA2F9EC81C538
                                                                                                                                                                                                                                                                          SHA-512:04C6EA013AE0E67509D6DFCA982707F3858E70F0F55DBD3DFAD18D6218046E493D3A5863444EF73046AFDC99CBB3AD151B39CDB14AF1E915EC12351E9E80EAC5
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/1033/onenote-whatsnew-strings.min.js
                                                                                                                                                                                                                                                                          Preview:"use strict";var OnenoteWhatsnewStrings={WhatsNewDialogTitle:"What's New",GotItButton:"Got it!",ImmersiveReader:"The new Immersive Reader provides students with advanced tools to boost reading skills.",Ink:"Handwrite your notes, annotate documents, or sketch out your next big idea with new drawing tools.",NewNotebook:"You can now create notebooks in OneNote Online.",DragHandles:"Use drag handles to easily move text, reorder a list, swap table rows, and re-position images.",SyncUX:"Click the Page Sync Status button for more information about the sync status of the current page.",NotesFeed:"Open the Feed pane for easy access to your OneNote pages, Samsung notes, and sticky notes.",TwoPaneNavigation:"You can hide the navigation pane to focus on the current page or show the navigation pane to switch between your pages, sections, and notebooks.",ReactMLR:"Expand the ribbon to easily find OneNote commands, or collapse it again to maximize your note-taking space.",LearnMoreLinkText:"Learn Mor
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:HTML document, Unicode text, UTF-8 text, with very long lines (65498), with no line terminators
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):622985
                                                                                                                                                                                                                                                                          Entropy (8bit):5.373139007692087
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:HvbQA0VvodVk10VQ8zCr9nXnW+kyO+ZjGOE0ybhuwPH5QySKoUPxp2lNyzxf/Lyx:kA0Vvode10VhC53SyhYySnLylGdo
                                                                                                                                                                                                                                                                          MD5:D70CF26C3CD8A3B10C131467F3FA81FD
                                                                                                                                                                                                                                                                          SHA1:081C7668313C4689BFA5470C9E7E59282DA07378
                                                                                                                                                                                                                                                                          SHA-256:BB6C66B9BEA270D2F244A50C3090D2966E11D279C6333672933EB185A11D4EDA
                                                                                                                                                                                                                                                                          SHA-512:B9E06220688AB7FC328A9353968E56F46FF497B10EE0FC5EEDD50C1C8240A96C55CE986A4A49DE17D0D83B03FAE63AB732523AB31949615CB0EF560B8D213BA0
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_App_Scripts/wp5/uiSlice20.min.js
                                                                                                                                                                                                                                                                          Preview:(globalThis.onenoteOnlineChunks=globalThis.onenoteOnlineChunks||[]).push([[227],{51438:function(e,t){var o,n,i=function(){var e=function(e,t){var o=e,n=a[t],i=null,r=0,l=null,f=[],b={},C=function(e,t){i=function(e){for(var t=new Array(e),o=0;o<e;o+=1){t[o]=new Array(e);for(var n=0;n<e;n+=1)t[o][n]=null}return t}(r=4*o+17),v(0,0),v(r-7,0),v(0,r-7),S(),x(),w(e,t),o>=7&&E(e),null==l&&(l=B(o,n,f)),k(l,t)},v=function(e,t){for(var o=-1;o<=7;o+=1)if(!(e+o<=-1||r<=e+o))for(var n=-1;n<=7;n+=1)t+n<=-1||r<=t+n||(i[e+o][t+n]=0<=o&&o<=6&&(0==n||6==n)||0<=n&&n<=6&&(0==o||6==o)||2<=o&&o<=4&&2<=n&&n<=4)},x=function(){for(var e=8;e<r-8;e+=1)null==i[e][6]&&(i[e][6]=e%2==0);for(var t=8;t<r-8;t+=1)null==i[6][t]&&(i[6][t]=t%2==0)},S=function(){for(var e=s.getPatternPosition(o),t=0;t<e.length;t+=1)for(var n=0;n<e.length;n+=1){var r=e[t],a=e[n];if(null==i[r][a])for(var l=-2;l<=2;l+=1)for(var c=-2;c<=2;c+=1)i[r+l][a+c]=-2==l||2==l||-2==c||2==c||0==l&&0==c}},E=function(e){for(var t=s.getBCHTypeNumber(o),n=0;n<
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 82 x 258, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):6140
                                                                                                                                                                                                                                                                          Entropy (8bit):7.86318803852975
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:JCXCuvaxrUZXtOVVLMtSqdyZ7x5rY4gby5cR+YBaB7W+Nf9XF5Qfhl4/t5K:MMr7AtaZ7fY4f5I/qRf9V6hSl5K
                                                                                                                                                                                                                                                                          MD5:2443F04DFD8CE58264835F7CD477799C
                                                                                                                                                                                                                                                                          SHA1:E798EF676A42AA8F723246C95FA6A918010223B2
                                                                                                                                                                                                                                                                          SHA-256:77DD1463FE34BE51528C6535C5AAF5590EE90BBD3B76AE8E362657C45E9F90FD
                                                                                                                                                                                                                                                                          SHA-512:2668E7EEFF653ECDEF04058FDC43328A80F297EE601839737F35A860737DAD438B03298C1A452E83DAED31DDDA540F7F065FE8F22FB05FC150A9FEAB08FFC91D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res-1.cdn.office.net/officeonline/o/s/161871841003_resources/1033/moe_status_icons.png
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...R.........m......tEXtSoftware.Adobe ImageReadyq.e<...fiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c061 64.140949, 2010/12/07-10:57:01 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:C714FB70438BE1119DF2F8ED1CCAF400" xmpMM:DocumentID="xmp.did:98155F5CD83911E1ACDEFDB8BE9BCEAA" xmpMM:InstanceID="xmp.iid:98155F5BD83911E1ACDEFDB8BE9BCEAA" xmp:CreatorTool="Adobe Photoshop CS5.1 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:09F73A8D39D8E111AE39EC2BD256A3F2" stRef:documentID="xmp.did:C714FB70438BE1119DF2F8ED1CCAF400"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>Y.[...,IDATx..........{....a.... .<c......3.....
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:PNG image data, 82 x 258, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):6140
                                                                                                                                                                                                                                                                          Entropy (8bit):7.86318803852975
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:96:JCXCuvaxrUZXtOVVLMtSqdyZ7x5rY4gby5cR+YBaB7W+Nf9XF5Qfhl4/t5K:MMr7AtaZ7fY4f5I/qRf9V6hSl5K
                                                                                                                                                                                                                                                                          MD5:2443F04DFD8CE58264835F7CD477799C
                                                                                                                                                                                                                                                                          SHA1:E798EF676A42AA8F723246C95FA6A918010223B2
                                                                                                                                                                                                                                                                          SHA-256:77DD1463FE34BE51528C6535C5AAF5590EE90BBD3B76AE8E362657C45E9F90FD
                                                                                                                                                                                                                                                                          SHA-512:2668E7EEFF653ECDEF04058FDC43328A80F297EE601839737F35A860737DAD438B03298C1A452E83DAED31DDDA540F7F065FE8F22FB05FC150A9FEAB08FFC91D
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:.PNG........IHDR...R.........m......tEXtSoftware.Adobe ImageReadyq.e<...fiTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c061 64.140949, 2010/12/07-10:57:01 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:C714FB70438BE1119DF2F8ED1CCAF400" xmpMM:DocumentID="xmp.did:98155F5CD83911E1ACDEFDB8BE9BCEAA" xmpMM:InstanceID="xmp.iid:98155F5BD83911E1ACDEFDB8BE9BCEAA" xmp:CreatorTool="Adobe Photoshop CS5.1 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:09F73A8D39D8E111AE39EC2BD256A3F2" stRef:documentID="xmp.did:C714FB70438BE1119DF2F8ED1CCAF400"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>Y.[...,IDATx..........{....a.... .<c......3.....
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:XML 1.0 document, ASCII text
                                                                                                                                                                                                                                                                          Category:dropped
                                                                                                                                                                                                                                                                          Size (bytes):2773
                                                                                                                                                                                                                                                                          Entropy (8bit):5.143437686705897
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:48:c8Ax81yL73bao2Q6tSJ1/2VaObOxMq9FBt82LFjnp412ImmU+J2QezcNVF:tAMy/Laox116q9FBtFNnp41aGD
                                                                                                                                                                                                                                                                          MD5:21F7CF83EC08DA474338BF2694C495A3
                                                                                                                                                                                                                                                                          SHA1:9CBC7B17A61C8F1D9081042F2AD9B90EF1C4B654
                                                                                                                                                                                                                                                                          SHA-256:A482759959D8481A843F01B34DF4DCABD1C0DDA2EDC2A1DF7F7CD9D9029DA1FC
                                                                                                                                                                                                                                                                          SHA-512:99CFEE306547AEDFD6878E948B472D46101D56B9072A73FC8E3E27275BD5116B3E18405590A49F7B5D34B83CCCF1054DCD9A6BB4C591865DCD0CA47F3CFB2B48
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Preview:<?xml version="1.0" encoding="UTF-8" standalone="yes"?>.<OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://schemas.microsoft.com/office/taskpaneappversionoverrides" xsi:type="TaskPaneApp">. <Id>8ef9aa39-de6e-4fb7-841a-f0f08546d398</Id>. <Version>1.0.0.0</Version>. <ProviderName>Microsoft Office Services</ProviderName>. <DefaultLocale>en-US</DefaultLocale>. <DisplayName DefaultValue="Copilot"/>. <Description DefaultValue="Copilot"/>. <IconUrl DefaultValue=""/>. <HighResolutionIconUrl DefaultValue=""/>. <AppDomains>. <AppDomain>https://fa000000128.resources.office.net</AppDomain>. <AppDomain>https://res.cdn.office.net</AppDomain>. <AppDomain>https://res.sdf.cdn.office.net</AppDomain>. <AppDomain>https://res-h3.sdf.cdn.office.net</AppDomain>. <AppDomain>https://res-h3.public.cdn.office.net</AppDomain>.
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:ASCII text, with very long lines (65437)
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):651610
                                                                                                                                                                                                                                                                          Entropy (8bit):5.326092300430062
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:6144:/DuhuQ1POrGkBS89UEfC1ZnHNLPC3TVhonnbriOYkjdnHvHX2U++xqbpVCmu4PmK:LuhuQ1PJkBSDKoHv3gHCmu4Pm3GRcal
                                                                                                                                                                                                                                                                          MD5:4F12465AF82DBA4F07951D2F507A1658
                                                                                                                                                                                                                                                                          SHA1:1EF8768B3C38431247A5F27BDFEC39D91B088F8C
                                                                                                                                                                                                                                                                          SHA-256:AD67C1DC3CD200B4838E31DAF8EC982B646455D84A2233F07287DD93CF9F79F3
                                                                                                                                                                                                                                                                          SHA-512:1EA3AA23653F34E15F6C45FAD129B71B4A8B92B3C71EF98BF05250928BE61D5A5E86344EB228E609C986AE6A80684541CBD9D815F7F295B879D7BEB11168FA8F
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://wise.public.cdn.office.net/wise/owl/sharedauthclientmsal.6b11c4094d365aa3ee90.js
                                                                                                                                                                                                                                                                          Preview:/*! For license information please see sharedauthclientmsal.6b11c4094d365aa3ee90.js.LICENSE.txt */.var Microsoft;!function(){var e,t,n,r,i,o,a={8063:function(e,t,n){"use strict";n.d(t,{nr:function(){return u}});var r,i=n(4565),o=n(9077),a="__stylesheet__",s="undefined"!=typeof navigator&&/rv:11.0/.test(navigator.userAgent),c={};try{c=window||{}}catch(e){}var u=function(){function e(e,t){var n,r,o,a,s,c;this._rules=[],this._preservedRules=[],this._counter=0,this._keyToClassName={},this._onInsertRuleCallbacks=[],this._onResetCallbacks=[],this._classNameToArgs={},this._config=(0,i.Cl)({injectionMode:"undefined"==typeof document?0:1,defaultPrefix:"css",namespace:void 0,cspSettings:void 0},e),this._classNameToArgs=null!==(n=null==t?void 0:t.classNameToArgs)&&void 0!==n?n:this._classNameToArgs,this._counter=null!==(r=null==t?void 0:t.counter)&&void 0!==r?r:this._counter,this._keyToClassName=null!==(a=null!==(o=this._config.classNameCache)&&void 0!==o?o:null==t?void 0:t.keyToClassName)&&void
                                                                                                                                                                                                                                                                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          File Type:Web Open Font Format, TrueType, length 6784, version 3.30147
                                                                                                                                                                                                                                                                          Category:downloaded
                                                                                                                                                                                                                                                                          Size (bytes):6784
                                                                                                                                                                                                                                                                          Entropy (8bit):7.904750792584749
                                                                                                                                                                                                                                                                          Encrypted:false
                                                                                                                                                                                                                                                                          SSDEEP:192:kon76LllcpK5ncpd8WvBwWTqIvTeH9G2IewqXb6Ys:kWYQKnS8WvOUvSH9GDqXON
                                                                                                                                                                                                                                                                          MD5:14EC2D31F37BB0F43FD441D11E771D50
                                                                                                                                                                                                                                                                          SHA1:48F83A9581A5E37AD1CCD0D4848EFC7FA64C17CF
                                                                                                                                                                                                                                                                          SHA-256:43C551EA819A83B1100F566ECF6BD70DB5A019F165D221200AF2DF11C4448627
                                                                                                                                                                                                                                                                          SHA-512:51CABEBB52DC3036CC584B0D03F0107AC7170DCC124A756B6CBFF098893506D8DAB4877FEFD71E3C83016262FACC9735F2BD1BF5D0EC4B6097E3013D287F4BA0
                                                                                                                                                                                                                                                                          Malicious:false
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          URL:https://res.cdn.office.net/files/fabric-cdn-prod_20241209.001/assets/icons/fabric-icons-a13498cf.woff
                                                                                                                                                                                                                                                                          Preview:wOFF..............-<..u.....................OS/2...D...H...`1Fy.cmap.......#.....<.dcvt ....... ...*....fpgm...........Y...gasp................glyf...........,=_..head.......2...6....hhea...........$....hmtx.......N...x....loca...P...v...v.^..maxp........... .`..name...............Rpost........... .Q..prep............x...x.c`a..8.....u..1...4.f...$..........@ ...........>....!$.X.........F..x.c```f.`..F ..x..c..Y.7......V.....y..=....\..s..2....>..n.....s..9..w>_...../.^Lx1...3^l.q...O^.y......._Y..z...7_..|......................6..).h...6.x......&IF....%.$>K...$.Q..{...w$nH<..,qTb.D.D.D.D.D..M...v.6.V.t..q;q[q3qM..b...D.\.n.......<.xX0]`..&.....~..BB.>...~v.V.....x.c.b.e(`h`X.......x............x.]..N.@..s$..'@:!.u*C....K$.%%...J.......n..b.........|.s...|v..G*)V.7........!O.6eaL.yV.e.j..kN..M.h....Lm....-b....p.N.m.v.....U<..#...O.}.K..,V..&...^...L.c.x.....?ug..l9e..Ns.D....D...K........m..A.M....a.....g.P..`....d.............x..Y.tT.....g....2L..$/..I.
                                                                                                                                                                                                                                                                          No static file info

                                                                                                                                                                                                                                                                          Download Network PCAP: filteredfull

                                                                                                                                                                                                                                                                          • Total Packets: 500
                                                                                                                                                                                                                                                                          • 443 (HTTPS)
                                                                                                                                                                                                                                                                          • 80 (HTTP)
                                                                                                                                                                                                                                                                          • 53 (DNS)
                                                                                                                                                                                                                                                                          TimestampSource PortDest PortSource IPDest IP
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:49.223020077 CET49677443192.168.2.72.18.98.62
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:49.223022938 CET4967680192.168.2.723.199.215.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:49.613538980 CET49674443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:49.613543987 CET49675443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:49.613662958 CET49673443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.913403034 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.913446903 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.913741112 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.913741112 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.913785934 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.108433008 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.108494043 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.110150099 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.110168934 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.110419989 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.161561966 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.833379984 CET4967680192.168.2.723.199.215.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:58.833421946 CET49677443192.168.2.72.18.98.62
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221875906 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221977949 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222067118 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222373009 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222393990 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222503901 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222542048 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222565889 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222668886 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.222682953 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.226854086 CET49673443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.226871967 CET49675443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.226885080 CET49674443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.526751041 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.526834011 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.528830051 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.528852940 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.529218912 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.530785084 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.530869007 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.541433096 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.541467905 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.541666985 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.541879892 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.582803011 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.584273100 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096725941 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096760035 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096813917 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096853971 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096923113 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.096930027 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097004890 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097054005 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097803116 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097827911 CET4434969113.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097845078 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.097877026 CET49691443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.102674961 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.102745056 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514602900 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514671087 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514708996 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514739990 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514755011 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514780045 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514785051 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514821053 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514841080 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514856100 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514936924 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514941931 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514957905 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.514974117 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.515069008 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.515077114 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.515135050 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.611933947 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612071037 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612098932 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612162113 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612225056 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612231970 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612339020 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612395048 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612401009 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612473965 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612546921 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612552881 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612596989 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612648964 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.612656116 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.661921024 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707640886 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707679987 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707724094 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707777023 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707787037 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707901955 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707923889 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707954884 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707964897 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.707977057 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708338976 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708414078 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708427906 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708791971 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708856106 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708867073 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708920956 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708973885 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.708983898 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709086895 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709145069 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709155083 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709218979 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709346056 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709398985 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709408045 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709429979 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709460020 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709512949 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.709520102 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.755690098 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803400993 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803507090 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803538084 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803579092 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803632975 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803641081 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803776026 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803824902 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.803833008 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804004908 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804059982 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804068089 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804110050 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804161072 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804169893 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804738045 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804805994 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804822922 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804904938 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804941893 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804949999 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.804963112 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.805002928 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.805052042 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.805061102 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.805298090 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.805349112 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.806978941 CET49692443192.168.2.713.107.137.11
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.807010889 CET4434969213.107.137.11192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.150759935 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.150815010 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.150861025 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.155605078 CET49690443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.155626059 CET44349690142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703517914 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703550100 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703610897 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703737020 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703752041 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.010337114 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.010396004 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.011269093 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.011274099 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.011755943 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.012077093 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.052289963 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.250240088 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.250310898 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.250447989 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.251991987 CET49806443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.252027988 CET4434980652.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.291048050 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.291084051 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.291177988 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.291387081 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.291404009 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.436764002 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.436825037 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.437174082 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.437530994 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.437558889 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.488686085 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.578627110 CET8049817142.250.80.99192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.578716040 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.578897953 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.584815025 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.585092068 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.585108042 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.585256100 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.585268974 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.637912035 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.637985945 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.656452894 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.656471968 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.656702995 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.657630920 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.668307066 CET8049817142.250.80.99192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.669320107 CET8049817142.250.80.99192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.700270891 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.706228018 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.796258926 CET8049817142.250.80.99192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.813220024 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.813281059 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.813365936 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.842443943 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.842493057 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.842564106 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.862669945 CET49816443192.168.2.723.219.36.101
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.862690926 CET4434981623.219.36.101192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.867096901 CET49814443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.867108107 CET4434981452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.947873116 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.962204933 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.962229013 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.962295055 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.962528944 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.962541103 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.262459040 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.262510061 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.263231993 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.263277054 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.264658928 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.264668941 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.265073061 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.265525103 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.312269926 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.367141962 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.367212057 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.367257118 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.377384901 CET49832443192.168.2.720.135.4.170
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.377405882 CET4434983220.135.4.170192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498909950 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498950958 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.499152899 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.499331951 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.499350071 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.666855097 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.666886091 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.667066097 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.667287111 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.667296886 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.789223909 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.791151047 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.986258030 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.987441063 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.000161886 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.000181913 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.001140118 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.003176928 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.003190041 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.003482103 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.040096045 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.041471958 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.084266901 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.088268995 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.155992031 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156053066 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156322002 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156337976 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156393051 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156518936 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156622887 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.156663895 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.158145905 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.158145905 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.158159971 CET4434984413.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.158257008 CET49844443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181755066 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181833982 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.182321072 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.183186054 CET49846443192.168.2.752.111.230.4
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.183198929 CET4434984652.111.230.4192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276844025 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276880980 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277092934 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277493954 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277512074 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277823925 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277834892 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277841091 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277867079 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277925014 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277966022 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277972937 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278163910 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278604984 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278644085 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279059887 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279074907 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279299974 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279356956 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279367924 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279673100 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279699087 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279827118 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279969931 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279980898 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.283437967 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.283462048 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.283691883 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.284068108 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.284073114 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.288638115 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.288652897 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.289096117 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.289433956 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.289448023 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.410407066 CET49672443192.168.2.72.23.227.208
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.410454988 CET443496722.23.227.208192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.427712917 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.427742004 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.427802086 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428021908 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428035021 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.430927038 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.431013107 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.431092024 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.431215048 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.431226969 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.467526913 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.467596054 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.470104933 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.470161915 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.470165014 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.470360041 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.474129915 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.474184036 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.477107048 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.477165937 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.478759050 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.478821993 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.487704992 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.487718105 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.488024950 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.488692045 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.488707066 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.488984108 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.492687941 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.492706060 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.493068933 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494071960 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494081974 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494273901 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494694948 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494712114 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494991064 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.494997025 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.495002985 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.495281935 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496041059 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496089935 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496273041 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496390104 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496548891 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.496784925 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500613928 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500721931 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.502783060 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.502790928 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.503273964 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.504086018 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540266037 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540271997 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540288925 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540293932 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540302992 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.540335894 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.548269987 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649137974 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649327040 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649346113 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649413109 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649506092 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649545908 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649554014 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.649547100 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650031090 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650082111 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650146008 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650161028 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650224924 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650270939 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650609970 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650808096 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.650851965 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.651945114 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.651962996 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.651998997 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.652025938 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.652034998 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.652153969 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.653429985 CET49852443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.653444052 CET4434985223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.658226967 CET49854443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.658241034 CET4434985423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.659085035 CET49853443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.659107924 CET4434985323.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.659437895 CET49851443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.659461021 CET4434985123.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662081003 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662132978 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662197113 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662206888 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662309885 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.662365913 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.669928074 CET49855443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.669948101 CET4434985523.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.681174040 CET49862443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.681188107 CET4434986223.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697647095 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697679996 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697700024 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697738886 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697760105 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697778940 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.697804928 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.706044912 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.706090927 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.706125021 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.706134081 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.706175089 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.710958004 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.711003065 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.711026907 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.711035013 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.711066008 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.717398882 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.717443943 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.717470884 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.717478991 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.717513084 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.793108940 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.793183088 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.793200970 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.793220043 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.793241978 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797507048 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797566891 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797578096 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797586918 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797615051 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797717094 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.797764063 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.798605919 CET49863443192.168.2.7104.117.182.51
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.798618078 CET44349863104.117.182.51192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.803699017 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.803889036 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.809314013 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.809341908 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.809747934 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.810148954 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.810200930 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079284906 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079343081 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079468966 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079531908 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079569101 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079592943 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.079622984 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.081743956 CET49866443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.081774950 CET4434986640.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.386933088 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.387141943 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.390407085 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.390418053 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.390639067 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.441339970 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.441400051 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.441483021 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.441579103 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.441600084 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.510735035 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.737054110 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.737170935 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.737485886 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.737498045 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.737718105 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.738471031 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.780263901 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.858290911 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.858567953 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.859038115 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.904301882 CET49894443192.168.2.752.111.229.20
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.904349089 CET4434989452.111.229.20192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.086183071 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.086239100 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.086507082 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.086652994 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.086679935 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089015007 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089051962 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089200974 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089266062 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089284897 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089955091 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089991093 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.090286016 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091022015 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091034889 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091798067 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091818094 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092045069 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092318058 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092330933 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094588041 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094609976 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094660044 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094660044 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094669104 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094767094 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094894886 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.094912052 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.095051050 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.095063925 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.272842884 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.273070097 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.277581930 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.277757883 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.284456968 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.284959078 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.285032034 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.285267115 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.285506964 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.286699057 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.286761045 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.289288998 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.294953108 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.294969082 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.295353889 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.295404911 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.295420885 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.296179056 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.296226978 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.296251059 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.297189951 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298068047 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298070908 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298079967 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298093081 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298409939 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298461914 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298492908 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298528910 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298738003 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298738956 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298921108 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298953056 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.298953056 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.299109936 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.299119949 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340264082 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340269089 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340271950 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340272903 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340276957 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.340348005 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.453665018 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.454025984 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.454087019 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.460757017 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.461026907 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.461081028 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463125944 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463200092 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463234901 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463263035 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463272095 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463287115 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463342905 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463361979 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463380098 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463390112 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463418007 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.463435888 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464453936 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464517117 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464575052 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464590073 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464628935 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464659929 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.464709044 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466830969 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466861963 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466886044 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466913939 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466921091 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466941118 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466953039 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.466975927 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.594311953 CET49907443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.594326973 CET4434990723.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.594849110 CET49904443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.594877958 CET4434990423.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.595182896 CET49906443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.595201969 CET4434990623.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.595685005 CET49903443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.595716953 CET4434990323.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.596024990 CET49908443192.168.2.723.51.57.212
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.596034050 CET4434990823.51.57.212192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.596342087 CET49905443192.168.2.723.45.193.219
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.596359015 CET4434990523.45.193.219192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.958234072 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.958272934 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.958333015 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.971720934 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.971745968 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.255496025 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.257211924 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.257247925 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.257901907 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.257926941 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.448616982 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.448731899 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.448801041 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.449126959 CET49911443192.168.2.713.107.246.72
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.449146986 CET4434991113.107.246.72192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.312983036 CET49932443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.313031912 CET44349932185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.313237906 CET49932443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.313772917 CET49933443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.313797951 CET44349933185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.313873053 CET49933443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.314240932 CET49933443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.314251900 CET44349933185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.314538002 CET49932443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.314558029 CET44349932185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:20.945097923 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:20.945132971 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:20.945249081 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:20.945888996 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:20.945918083 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.306839943 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.307527065 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.307605982 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.308125973 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.308145046 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572485924 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572520018 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572546959 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572573900 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572616100 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572633982 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.572659969 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.574343920 CET49939443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:21.574364901 CET4434993940.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:26.068459988 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:26.380702019 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:26.989969969 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:28.194972992 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:30.601397991 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:34.644968987 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:34.946455002 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:35.408432007 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:35.546305895 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:36.756906986 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.164623022 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.532778025 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.532810926 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.532869101 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.533698082 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.533713102 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.920408964 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.923317909 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.923332930 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.948529959 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:42.948535919 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201351881 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201383114 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201423883 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201447964 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201462984 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201488972 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.201517105 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.204709053 CET49963443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.204722881 CET4434996340.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:43.977920055 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.008439064 CET49671443192.168.2.7204.79.197.203
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.713267088 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.713320017 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.713474989 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.713882923 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:45.713896036 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.068372965 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.071583033 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.071605921 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.072344065 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.072349072 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.306780100 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.306804895 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.306883097 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.307020903 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.307020903 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.309494972 CET49971443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:46.309515953 CET4434997140.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:47.320664883 CET49933443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:47.320868969 CET49932443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:47.368273973 CET44349932185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:47.368288040 CET44349933185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358207941 CET49978443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358259916 CET44349978185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358397007 CET49978443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358401060 CET49979443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358458042 CET44349979185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358566999 CET49978443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358567953 CET49979443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358581066 CET44349978185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358808994 CET49979443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:48.358829975 CET44349979185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:53.585155010 CET49678443192.168.2.720.189.173.15
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:57.868056059 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:57.868104935 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:57.868403912 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:57.869044065 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:57.869055986 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:58.060594082 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:58.116035938 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:58.116069078 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:58.395289898 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:58.395313025 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:00.893915892 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:00.893961906 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:00.894032955 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:00.894203901 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:00.894216061 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.255800009 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.256572008 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.256593943 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.257183075 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.257188082 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497039080 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497061014 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497108936 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497124910 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497148991 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497348070 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.497348070 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.499500990 CET49988443192.168.2.740.126.28.13
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.499525070 CET4434998840.126.28.13192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652163982 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652205944 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652385950 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652540922 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652554989 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653516054 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653563976 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653642893 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653863907 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653877974 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.654371023 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.654408932 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.654544115 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.654665947 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.654675961 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.845349073 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.845423937 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.846043110 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.846112967 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.846802950 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.846817017 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847089052 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847214937 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847224951 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847496033 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847580910 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.847796917 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.849061012 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.849144936 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.849950075 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.849960089 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.850200891 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.850395918 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.888279915 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.892277002 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.896270990 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.021390915 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.021543026 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.021593094 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.021872044 CET49993443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.021891117 CET4434999323.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.022806883 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.022835016 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.022906065 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.023613930 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.023824930 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.023833990 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.023844004 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.023868084 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024152040 CET49991443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024158001 CET4434999123.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024565935 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024597883 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024713993 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024847031 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.024858952 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.025867939 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.025953054 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.026016951 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.026494980 CET49992443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.026501894 CET4434999223.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.026750088 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.026761055 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.027004004 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.027004004 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.027024031 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.212595940 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.212877035 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.212903976 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.213051081 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.213056087 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.213078976 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.213085890 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.213897943 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214288950 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214288950 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214301109 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214315891 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214314938 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.214332104 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220089912 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220309019 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220331907 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220527887 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220527887 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220535994 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.220547915 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613480091 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613543987 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613677979 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613749981 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613765955 CET4434999623.57.90.112192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613775969 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.613831997 CET49996443192.168.2.723.57.90.112
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620122910 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620301008 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620352983 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620410919 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620428085 CET4434999523.44.201.134192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620445967 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.620472908 CET49995443192.168.2.723.44.201.134
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.680593014 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.680655956 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.680704117 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.680929899 CET49994443192.168.2.723.44.136.154
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:02.680941105 CET4434999423.44.136.154192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:06.265623093 CET50000443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:06.265670061 CET44350000185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:06.265877008 CET50000443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:06.265877008 CET50000443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:06.265916109 CET44350000185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.068036079 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.068092108 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.068149090 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.602194071 CET49983443192.168.2.7142.251.40.228
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.602227926 CET44349983142.251.40.228192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:11.099870920 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:11.190443993 CET8049817142.250.80.99192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:11.190500021 CET4981780192.168.2.7142.250.80.99
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:13.841587067 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:13.841734886 CET4434986540.126.35.21192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:13.841846943 CET49865443192.168.2.740.126.35.21
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.000931025 CET50013443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.000955105 CET44350013185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.001091003 CET50013443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.001247883 CET50013443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.001257896 CET44350013185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.119415998 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.119451046 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.119647980 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.119676113 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.119680882 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.404874086 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.405179977 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.405206919 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.405356884 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.405368090 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.605619907 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.606259108 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.606317043 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.606479883 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.607342005 CET50018443192.168.2.713.107.246.38
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.607357979 CET4435001813.107.246.38192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:18.364557028 CET49978443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:18.364659071 CET49979443192.168.2.7185.225.69.75
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:18.408279896 CET44349978185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:18.412280083 CET44349979185.225.69.75192.168.2.7
                                                                                                                                                                                                                                                                          TimestampSource PortDest PortSource IPDest IP
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:53.658719063 CET53534081.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:53.676681042 CET53566841.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:54.472615004 CET53631331.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:54.557291985 CET53605981.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.814060926 CET6325753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.814136028 CET5971553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.911358118 CET53597151.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.912503958 CET53632571.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.121397972 CET6115953192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.122277021 CET4986753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET53611591.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221142054 CET53498671.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.510518074 CET5611753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.510689020 CET5860353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607918978 CET53586031.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET53561171.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:07.628412008 CET53545951.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.604577065 CET5113853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.604754925 CET5700153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.701884985 CET53511381.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703098059 CET53570011.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.334976912 CET6502753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.335134029 CET5995053192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435564041 CET53599501.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435900927 CET53650271.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.861116886 CET5659553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.861510992 CET5514353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET53565951.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.960746050 CET53551431.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.386751890 CET6186153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.387161016 CET5660853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.414753914 CET6508753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.415035963 CET6456753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.489137888 CET53566081.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET53618611.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET53650871.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.513556004 CET53645671.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.564390898 CET5935453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.564390898 CET5244553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.663454056 CET53593541.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.665546894 CET53524451.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.669038057 CET53584061.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.177386999 CET6470153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.177676916 CET5161653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.178375959 CET6421253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.178652048 CET5485253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179100990 CET6308453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET5053353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET5484653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET5402353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.180294037 CET4945353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.180636883 CET5118153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181548119 CET5589853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181792974 CET5321353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.190742016 CET6522453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.190742970 CET5985953192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.274926901 CET53647011.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276132107 CET53630841.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276295900 CET53505331.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276385069 CET53548461.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276891947 CET53516161.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276897907 CET53540231.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277937889 CET53548521.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277951956 CET53511811.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278572083 CET53494531.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279113054 CET53558981.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279340982 CET53532131.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.280697107 CET53642121.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287823915 CET53652241.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287839890 CET53598591.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.303122044 CET5896353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.303423882 CET5175553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.332463026 CET5310853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.332463980 CET6011853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET53589631.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.402671099 CET5335253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.402920961 CET6187753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET53531081.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.430433989 CET53601181.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.441926003 CET53517551.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET53533521.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500878096 CET53618771.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.343871117 CET5183953192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.343992949 CET5664253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440758944 CET53566421.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440905094 CET53518391.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.983079910 CET5608153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.983292103 CET4953553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.988795996 CET5244353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.989248037 CET5299553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.990724087 CET6501253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.990984917 CET6016953192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.992290020 CET5398253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.992585897 CET5106553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.993309021 CET5911653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.993529081 CET5821253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.994014978 CET5027053192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.994445086 CET5428553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.080960035 CET53495351.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.083623886 CET53560811.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088284016 CET53524431.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088298082 CET53529951.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089468956 CET53650121.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089557886 CET53601691.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091000080 CET53539821.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091309071 CET53582121.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091320992 CET53510651.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092540026 CET53502701.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093767881 CET53591161.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093780041 CET53542851.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.546838999 CET5955153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.546953917 CET5247553192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET53595511.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.665266991 CET53524751.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.120809078 CET5903953192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.120966911 CET5991453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.303915024 CET53590391.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.311767101 CET53599141.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:30.589193106 CET53635651.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.870539904 CET5738253192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.870706081 CET6178453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968158007 CET53617841.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET53573821.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:47.087447882 CET53517381.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:51.095110893 CET53620311.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:53.187535048 CET53644371.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:56.173916101 CET53547941.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.553183079 CET4995353192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.553523064 CET5729853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.554958105 CET5407453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.555248976 CET5565653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.555744886 CET5910653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.556097984 CET5154153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.650681973 CET53572981.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651546001 CET53499531.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651812077 CET53540741.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652477980 CET53591061.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652988911 CET53556561.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653928041 CET53515411.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.386040926 CET5459753192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.386094093 CET5704153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET53545971.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.484703064 CET53570411.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.394691944 CET5480853192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.394859076 CET5972453192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET53548081.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.494326115 CET53597241.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.977808952 CET6225653192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.977962017 CET6516153192.168.2.71.1.1.1
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.102346897 CET53651611.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET53622561.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:19.964430094 CET53552841.1.1.1192.168.2.7
                                                                                                                                                                                                                                                                          TimestampSource IPDest IPChecksumCodeType
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:54.472707033 CET192.168.2.71.1.1.1c225(Port unreachable)Destination Unreachable
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.674416065 CET192.168.2.71.1.1.1c2b9(Port unreachable)Destination Unreachable
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.441998005 CET192.168.2.71.1.1.1c29e(Port unreachable)Destination Unreachable
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:40.012556076 CET192.168.2.71.1.1.1c2f3(Port unreachable)Destination Unreachable
                                                                                                                                                                                                                                                                          TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.814060926 CET192.168.2.71.1.1.10x7ca5Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.814136028 CET192.168.2.71.1.1.10x7719Standard query (0)www.google.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.121397972 CET192.168.2.71.1.1.10x44e4Standard query (0)onedrive.live.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.122277021 CET192.168.2.71.1.1.10x257dStandard query (0)onedrive.live.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.510518074 CET192.168.2.71.1.1.10xc32aStandard query (0)common.online.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.510689020 CET192.168.2.71.1.1.10x7b5bStandard query (0)common.online.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.604577065 CET192.168.2.71.1.1.10x7f9Standard query (0)messaging.engagement.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.604754925 CET192.168.2.71.1.1.10x14c4Standard query (0)messaging.engagement.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.334976912 CET192.168.2.71.1.1.10x21c3Standard query (0)spoprod-a.akamaihd.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.335134029 CET192.168.2.71.1.1.10x41c3Standard query (0)spoprod-a.akamaihd.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.861116886 CET192.168.2.71.1.1.10x860eStandard query (0)storage.live.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.861510992 CET192.168.2.71.1.1.10x3fbcStandard query (0)storage.live.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.386751890 CET192.168.2.71.1.1.10xac3dStandard query (0)www.onenote.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.387161016 CET192.168.2.71.1.1.10x4a91Standard query (0)www.onenote.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.414753914 CET192.168.2.71.1.1.10xbdd3Standard query (0)amcdn.msftauth.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.415035963 CET192.168.2.71.1.1.10x6c1eStandard query (0)amcdn.msftauth.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.564390898 CET192.168.2.71.1.1.10xa0dbStandard query (0)augloop.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.564390898 CET192.168.2.71.1.1.10x2511Standard query (0)augloop.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.177386999 CET192.168.2.71.1.1.10xd18cStandard query (0)fa000000012.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.177676916 CET192.168.2.71.1.1.10x15bbStandard query (0)fa000000012.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.178375959 CET192.168.2.71.1.1.10xcf3dStandard query (0)fa000000096.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.178652048 CET192.168.2.71.1.1.10x8b30Standard query (0)fa000000096.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179100990 CET192.168.2.71.1.1.10x7158Standard query (0)fa000000110.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET192.168.2.71.1.1.10x8be1Standard query (0)fa000000110.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET192.168.2.71.1.1.10xad3bStandard query (0)fa000000111.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.179805040 CET192.168.2.71.1.1.10x7635Standard query (0)fa000000111.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.180294037 CET192.168.2.71.1.1.10x4d29Standard query (0)fa000000128.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.180636883 CET192.168.2.71.1.1.10x3b96Standard query (0)fa000000128.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181548119 CET192.168.2.71.1.1.10x4bcbStandard query (0)fa000000138.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.181792974 CET192.168.2.71.1.1.10x39c3Standard query (0)fa000000138.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.190742016 CET192.168.2.71.1.1.10x3dfbStandard query (0)ajax.aspnetcdn.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.190742970 CET192.168.2.71.1.1.10xddfStandard query (0)ajax.aspnetcdn.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.303122044 CET192.168.2.71.1.1.10x210dStandard query (0)login.microsoftonline.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.303423882 CET192.168.2.71.1.1.10x424fStandard query (0)login.microsoftonline.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.332463026 CET192.168.2.71.1.1.10x1041Standard query (0)login.microsoftonline.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.332463980 CET192.168.2.71.1.1.10x1f56Standard query (0)login.microsoftonline.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.402671099 CET192.168.2.71.1.1.10xe720Standard query (0)js.monitor.azure.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.402920961 CET192.168.2.71.1.1.10x2b22Standard query (0)js.monitor.azure.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.343871117 CET192.168.2.71.1.1.10xb0f9Standard query (0)messaging.engagement.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.343992949 CET192.168.2.71.1.1.10x518bStandard query (0)messaging.engagement.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.983079910 CET192.168.2.71.1.1.10xd122Standard query (0)fa000000111.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.983292103 CET192.168.2.71.1.1.10x6e3bStandard query (0)fa000000111.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.988795996 CET192.168.2.71.1.1.10xd6eaStandard query (0)fa000000128.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.989248037 CET192.168.2.71.1.1.10x59a1Standard query (0)fa000000128.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.990724087 CET192.168.2.71.1.1.10x6f39Standard query (0)fa000000012.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.990984917 CET192.168.2.71.1.1.10x199bStandard query (0)fa000000012.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.992290020 CET192.168.2.71.1.1.10x298Standard query (0)fa000000110.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.992585897 CET192.168.2.71.1.1.10xab69Standard query (0)fa000000110.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.993309021 CET192.168.2.71.1.1.10x43cfStandard query (0)fa000000138.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.993529081 CET192.168.2.71.1.1.10x667fStandard query (0)fa000000138.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.994014978 CET192.168.2.71.1.1.10x6642Standard query (0)fa000000096.resources.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.994445086 CET192.168.2.71.1.1.10xec46Standard query (0)fa000000096.resources.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.546838999 CET192.168.2.71.1.1.10xe754Standard query (0)www.onenote.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.546953917 CET192.168.2.71.1.1.10x80c8Standard query (0)www.onenote.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.120809078 CET192.168.2.71.1.1.10x78f3Standard query (0)edp-germany.schinndlerr.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.120966911 CET192.168.2.71.1.1.10x8d3cStandard query (0)edp-germany.schinndlerr.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.870539904 CET192.168.2.71.1.1.10x984aStandard query (0)common.online.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.870706081 CET192.168.2.71.1.1.10x3071Standard query (0)common.online.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.553183079 CET192.168.2.71.1.1.10x7584Standard query (0)onenoteonline.nel.measure.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.553523064 CET192.168.2.71.1.1.10xe362Standard query (0)onenoteonline.nel.measure.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.554958105 CET192.168.2.71.1.1.10x9ee5Standard query (0)onenoteonline.nel.measure.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.555248976 CET192.168.2.71.1.1.10x858eStandard query (0)onenoteonline.nel.measure.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.555744886 CET192.168.2.71.1.1.10x6dd8Standard query (0)m365cdn.nel.measure.office.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.556097984 CET192.168.2.71.1.1.10xd1e2Standard query (0)m365cdn.nel.measure.office.net65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.386040926 CET192.168.2.71.1.1.10x5ec7Standard query (0)common.online.office.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.386094093 CET192.168.2.71.1.1.10x4b5dStandard query (0)common.online.office.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.394691944 CET192.168.2.71.1.1.10x9b8eStandard query (0)www.onenote.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.394859076 CET192.168.2.71.1.1.10xc50Standard query (0)www.onenote.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.977808952 CET192.168.2.71.1.1.10x2259Standard query (0)www.onenote.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.977962017 CET192.168.2.71.1.1.10x814cStandard query (0)www.onenote.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.911358118 CET1.1.1.1192.168.2.70x7719No error (0)www.google.com65IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:57.912503958 CET1.1.1.1192.168.2.70x7ca5No error (0)www.google.com142.251.40.228A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)onedrive.live.comweb.fe.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)web.fe.1drv.comodc-web-geo.onedrive.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)odc-web-geo.onedrive.akadns.netodc-web-brs.onedrive.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)odc-web-brs.onedrive.akadns.netodwebpl.trafficmanager.net.dual-spov-0006.spov-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)odwebpl.trafficmanager.net.dual-spov-0006.spov-msedge.netdual-spov-0006.spov-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)dual-spov-0006.spov-msedge.net13.107.137.11A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.218624115 CET1.1.1.1192.168.2.70x44e4No error (0)dual-spov-0006.spov-msedge.net13.107.139.11A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221142054 CET1.1.1.1192.168.2.70x257dNo error (0)onedrive.live.comweb.fe.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221142054 CET1.1.1.1192.168.2.70x257dNo error (0)web.fe.1drv.comodc-web-geo.onedrive.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221142054 CET1.1.1.1192.168.2.70x257dNo error (0)odc-web-geo.onedrive.akadns.netodc-web-brs.onedrive.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:53:59.221142054 CET1.1.1.1192.168.2.70x257dNo error (0)odc-web-brs.onedrive.akadns.netodwebpl.trafficmanager.net.dual-spov-0006.spov-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.179A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.180A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.185A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.132A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.181A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.176A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.187A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.133A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.666053057 CET1.1.1.1192.168.2.70xdf1aNo error (0)a726.dscd.akamai.net23.44.136.182A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.667301893 CET1.1.1.1192.168.2.70xfe15No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.931092978 CET1.1.1.1192.168.2.70x5455No error (0)euc-onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.931092978 CET1.1.1.1192.168.2.70x5455No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:00.931092978 CET1.1.1.1192.168.2.70x5455No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607918978 CET1.1.1.1192.168.2.70x7b5bNo error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607918978 CET1.1.1.1192.168.2.70x7b5bNo error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET1.1.1.1192.168.2.70xc32aNo error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET1.1.1.1192.168.2.70xc32aNo error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET1.1.1.1192.168.2.70xc32aNo error (0)common.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET1.1.1.1192.168.2.70xc32aNo error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.607939959 CET1.1.1.1192.168.2.70xc32aNo error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.630894899 CET1.1.1.1192.168.2.70xa2f2No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netonenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.630894899 CET1.1.1.1192.168.2.70xa2f2No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.netwac-0003.wac-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.630894899 CET1.1.1.1192.168.2.70xa2f2No error (0)wac-0003.wac-dc-msedge.net52.108.10.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:01.630894899 CET1.1.1.1192.168.2.70xa2f2No error (0)wac-0003.wac-dc-msedge.net52.108.11.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:02.415957928 CET1.1.1.1192.168.2.70x7008No error (0)usc-onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:02.415957928 CET1.1.1.1192.168.2.70x7008No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:02.415957928 CET1.1.1.1192.168.2.70x7008No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:03.666557074 CET1.1.1.1192.168.2.70xc24dNo error (0)usc-onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:03.666557074 CET1.1.1.1192.168.2.70xc24dNo error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:03.666557074 CET1.1.1.1192.168.2.70xc24dNo error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:06.956177950 CET1.1.1.1192.168.2.70x9ad7No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netonenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:06.956177950 CET1.1.1.1192.168.2.70x9ad7No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.netwac-0003.wac-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:06.956177950 CET1.1.1.1192.168.2.70x9ad7No error (0)wac-0003.wac-dc-msedge.net52.108.10.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:06.956177950 CET1.1.1.1192.168.2.70x9ad7No error (0)wac-0003.wac-dc-msedge.net52.108.11.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.155A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.151A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.156A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.150A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.159A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.160A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.147A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.152A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.736998081 CET1.1.1.1192.168.2.70x41f6No error (0)a726.dscd.akamai.net23.44.136.153A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.737322092 CET1.1.1.1192.168.2.70xd22dNo error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.920988083 CET1.1.1.1192.168.2.70x43c9No error (0)ecs-office.s-0005.dual-s-msedge.nets-0005.dual-s-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.920988083 CET1.1.1.1192.168.2.70x43c9No error (0)s-0005.dual-s-msedge.net52.123.129.14A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:08.920988083 CET1.1.1.1192.168.2.70x43c9No error (0)s-0005.dual-s-msedge.net52.123.128.14A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.034898043 CET1.1.1.1192.168.2.70xaa04No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.159A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.156A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.143A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.141A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.153A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.151A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.150A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.158A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.038933992 CET1.1.1.1192.168.2.70xc8a2No error (0)a726.dscd.akamai.net23.44.136.145A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.690515995 CET1.1.1.1192.168.2.70x15efNo error (0)admin-portal.office.comportal-office365-com.b-0004.b-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.690515995 CET1.1.1.1192.168.2.70x15efNo error (0)portal-office365-com.b-0004.b-msedge.netb-0004.b-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.690515995 CET1.1.1.1192.168.2.70x15efNo error (0)b-0004.b-dc-msedge.net13.107.9.156A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.690531015 CET1.1.1.1192.168.2.70x9419No error (0)admin-portal.office.comportal-office365-com.b-0004.b-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.701884985 CET1.1.1.1192.168.2.70x7f9No error (0)messaging.engagement.office.comprod-campaignaggregator.omexexternallfb.office.net.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.701884985 CET1.1.1.1192.168.2.70x7f9No error (0)prod-campaignaggregator.omexexternallfb.office.net.akadns.net52.111.229.20A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:09.703098059 CET1.1.1.1192.168.2.70x14c4No error (0)messaging.engagement.office.comprod-campaignaggregator.omexexternallfb.office.net.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435564041 CET1.1.1.1192.168.2.70x41c3No error (0)spoprod-a.akamaihd.netspoprod-a.akamaihd.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435564041 CET1.1.1.1192.168.2.70x41c3No error (0)spoprod-a.akamaihd.net.edgesuite.neta1531.g2.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435900927 CET1.1.1.1192.168.2.70x21c3No error (0)spoprod-a.akamaihd.netspoprod-a.akamaihd.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435900927 CET1.1.1.1192.168.2.70x21c3No error (0)spoprod-a.akamaihd.net.edgesuite.neta1531.g2.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435900927 CET1.1.1.1192.168.2.70x21c3No error (0)a1531.g2.akamai.net23.219.36.101A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.435900927 CET1.1.1.1192.168.2.70x21c3No error (0)a1531.g2.akamai.net23.219.36.103A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.792320967 CET1.1.1.1192.168.2.70xc3fcNo error (0)oauth.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.792320967 CET1.1.1.1192.168.2.70xc3fcNo error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.792320967 CET1.1.1.1192.168.2.70xc3fcNo error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET1.1.1.1192.168.2.70x860eNo error (0)storage.live.comcommon-geo.ha.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET1.1.1.1192.168.2.70x860eNo error (0)common-geo.ha.1drv.comcommon-geo.onedrive.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET1.1.1.1192.168.2.70x860eNo error (0)common-geo.onedrive.trafficmanager.netblz04pcor006-com.be.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET1.1.1.1192.168.2.70x860eNo error (0)blz04pcor006-com.be.1drv.comi-blz04p-cor006.api.p001.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.957823038 CET1.1.1.1192.168.2.70x860eNo error (0)i-blz04p-cor006.api.p001.1drv.com20.135.4.170A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.960746050 CET1.1.1.1192.168.2.70x3fbcNo error (0)storage.live.comcommon-geo.ha.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.960746050 CET1.1.1.1192.168.2.70x3fbcNo error (0)common-geo.ha.1drv.comcommon-geo.onedrive.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.960746050 CET1.1.1.1192.168.2.70x3fbcNo error (0)common-geo.onedrive.trafficmanager.netsnz04pcor001-com.be.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.960746050 CET1.1.1.1192.168.2.70x3fbcNo error (0)snz04pcor001-com.be.1drv.comi-snz04p-cor001.api.p001.1drv.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.161A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.177A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.166A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.179A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.176A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.162A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.165A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.164A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.409925938 CET1.1.1.1192.168.2.70xe631No error (0)a726.dscd.akamai.net23.44.136.180A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.417808056 CET1.1.1.1192.168.2.70x6722No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.489137888 CET1.1.1.1192.168.2.70x4a91No error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.489137888 CET1.1.1.1192.168.2.70x4a91No error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.489137888 CET1.1.1.1192.168.2.70x4a91No error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.489137888 CET1.1.1.1192.168.2.70x4a91No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0044.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)shed.dual-low.s-part-0044.t-0009.t-msedge.nets-part-0044.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.498195887 CET1.1.1.1192.168.2.70xac3dNo error (0)s-part-0044.t-0009.t-msedge.net13.107.246.72A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET1.1.1.1192.168.2.70xbdd3No error (0)amcdn.msftauth.netmecontrol-prod.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET1.1.1.1192.168.2.70xbdd3No error (0)mecontrol-prod.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET1.1.1.1192.168.2.70xbdd3No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET1.1.1.1192.168.2.70xbdd3No error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.512778044 CET1.1.1.1192.168.2.70xbdd3No error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.513556004 CET1.1.1.1192.168.2.70x6c1eNo error (0)amcdn.msftauth.netmecontrol-prod.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.513556004 CET1.1.1.1192.168.2.70x6c1eNo error (0)mecontrol-prod.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.513556004 CET1.1.1.1192.168.2.70x6c1eNo error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.663454056 CET1.1.1.1192.168.2.70xa0dbNo error (0)augloop.office.comaugloop-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.663454056 CET1.1.1.1192.168.2.70xa0dbNo error (0)augloop-prod.trafficmanager.netaugloop-prod-pa01.eastus2.cloudapp.azure.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.663454056 CET1.1.1.1192.168.2.70xa0dbNo error (0)augloop-prod-pa01.eastus2.cloudapp.azure.com52.111.230.4A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.665546894 CET1.1.1.1192.168.2.70x2511No error (0)augloop.office.comaugloop-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:11.665546894 CET1.1.1.1192.168.2.70x2511No error (0)augloop-prod.trafficmanager.netaugloop-prod-pa00.eastus.cloudapp.azure.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.274926901 CET1.1.1.1192.168.2.70xd18cNo error (0)fa000000012.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.274926901 CET1.1.1.1192.168.2.70xd18cNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.274926901 CET1.1.1.1192.168.2.70xd18cNo error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276132107 CET1.1.1.1192.168.2.70x7158No error (0)fa000000110.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276132107 CET1.1.1.1192.168.2.70x7158No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276132107 CET1.1.1.1192.168.2.70x7158No error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276295900 CET1.1.1.1192.168.2.70x8be1No error (0)fa000000110.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276295900 CET1.1.1.1192.168.2.70x8be1No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276385069 CET1.1.1.1192.168.2.70xad3bNo error (0)fa000000111.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276385069 CET1.1.1.1192.168.2.70xad3bNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276385069 CET1.1.1.1192.168.2.70xad3bNo error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276891947 CET1.1.1.1192.168.2.70x15bbNo error (0)fa000000012.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276891947 CET1.1.1.1192.168.2.70x15bbNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276897907 CET1.1.1.1192.168.2.70x7635No error (0)fa000000111.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.276897907 CET1.1.1.1192.168.2.70x7635No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277937889 CET1.1.1.1192.168.2.70x8b30No error (0)fa000000096.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277937889 CET1.1.1.1192.168.2.70x8b30No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277951956 CET1.1.1.1192.168.2.70x3b96No error (0)fa000000128.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.277951956 CET1.1.1.1192.168.2.70x3b96No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278572083 CET1.1.1.1192.168.2.70x4d29No error (0)fa000000128.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278572083 CET1.1.1.1192.168.2.70x4d29No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.278572083 CET1.1.1.1192.168.2.70x4d29No error (0)e11271.dscg.akamaiedge.net23.45.193.219A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279113054 CET1.1.1.1192.168.2.70x4bcbNo error (0)fa000000138.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279113054 CET1.1.1.1192.168.2.70x4bcbNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279113054 CET1.1.1.1192.168.2.70x4bcbNo error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279340982 CET1.1.1.1192.168.2.70x39c3No error (0)fa000000138.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.279340982 CET1.1.1.1192.168.2.70x39c3No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.280697107 CET1.1.1.1192.168.2.70xcf3dNo error (0)fa000000096.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.280697107 CET1.1.1.1192.168.2.70xcf3dNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.280697107 CET1.1.1.1192.168.2.70xcf3dNo error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287823915 CET1.1.1.1192.168.2.70x3dfbNo error (0)ajax.aspnetcdn.comajax.aspnetcdn.com.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287823915 CET1.1.1.1192.168.2.70x3dfbNo error (0)ajax.aspnetcdn.com.edgesuite.neta46.dscr.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287839890 CET1.1.1.1192.168.2.70xddfNo error (0)ajax.aspnetcdn.comajax.aspnetcdn.com.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287839890 CET1.1.1.1192.168.2.70xddfNo error (0)ajax.aspnetcdn.com.edgesuite.neta46.dscr.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287839890 CET1.1.1.1192.168.2.70xddfNo error (0)a46.dscr.akamai.net104.117.182.51A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.287839890 CET1.1.1.1192.168.2.70xddfNo error (0)a46.dscr.akamai.net104.117.182.34A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294472933 CET1.1.1.1192.168.2.70xfc36No error (0)m365cdn-sdp-public.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294472933 CET1.1.1.1192.168.2.70xfc36No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294486046 CET1.1.1.1192.168.2.70xdfafNo error (0)m365cdn-sdp-public.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294486046 CET1.1.1.1192.168.2.70xdfafNo error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294486046 CET1.1.1.1192.168.2.70xdfafNo error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.294486046 CET1.1.1.1192.168.2.70xdfafNo error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)login.microsoftonline.comlogin.mso.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)login.mso.msidentity.comak.privatelink.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)ak.privatelink.msidentity.comwww.tm.a.prd.aadg.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.21A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.81A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.84A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.129A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.20A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.163.21A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.163.19A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.399981976 CET1.1.1.1192.168.2.70x210dNo error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.35.64A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)login.microsoftonline.comlogin.mso.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)login.mso.msidentity.comak.privatelink.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)ak.privatelink.msidentity.comwww.tm.a.prd.aadg.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.28.13A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.28.21A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.135.17A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.135.18A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.135.16A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.135.7A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net40.126.7.35A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.428899050 CET1.1.1.1192.168.2.70x1041No error (0)www.tm.a.prd.aadg.trafficmanager.net20.190.135.2A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.430433989 CET1.1.1.1192.168.2.70x1f56No error (0)login.microsoftonline.comlogin.mso.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.430433989 CET1.1.1.1192.168.2.70x1f56No error (0)login.mso.msidentity.comak.privatelink.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.430433989 CET1.1.1.1192.168.2.70x1f56No error (0)ak.privatelink.msidentity.comwww.tm.a.prd.aadg.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.441926003 CET1.1.1.1192.168.2.70x424fNo error (0)login.microsoftonline.comlogin.mso.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.441926003 CET1.1.1.1192.168.2.70x424fNo error (0)login.mso.msidentity.comak.privatelink.msidentity.comCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.441926003 CET1.1.1.1192.168.2.70x424fNo error (0)ak.privatelink.msidentity.comwww.tm.a.prd.aadg.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET1.1.1.1192.168.2.70xe720No error (0)js.monitor.azure.comaijscdn2-bwfdfxezdubebtb0.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET1.1.1.1192.168.2.70xe720No error (0)aijscdn2-bwfdfxezdubebtb0.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET1.1.1.1192.168.2.70xe720No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET1.1.1.1192.168.2.70xe720No error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500571012 CET1.1.1.1192.168.2.70xe720No error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500878096 CET1.1.1.1192.168.2.70x2b22No error (0)js.monitor.azure.comaijscdn2-bwfdfxezdubebtb0.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500878096 CET1.1.1.1192.168.2.70x2b22No error (0)aijscdn2-bwfdfxezdubebtb0.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.500878096 CET1.1.1.1192.168.2.70x2b22No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.912343025 CET1.1.1.1192.168.2.70xd903No error (0)csp-afd-prod.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.912343025 CET1.1.1.1192.168.2.70xd903No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.939184904 CET1.1.1.1192.168.2.70xc9f9No error (0)csp-afd-prod.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.939184904 CET1.1.1.1192.168.2.70xc9f9No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.939184904 CET1.1.1.1192.168.2.70xc9f9No error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:12.939184904 CET1.1.1.1192.168.2.70xc9f9No error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.416119099 CET1.1.1.1192.168.2.70x35deNo error (0)ecs-office.s-0005.dual-s-msedge.nets-0005.dual-s-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.416119099 CET1.1.1.1192.168.2.70x35deNo error (0)s-0005.dual-s-msedge.net52.123.128.14A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.416119099 CET1.1.1.1192.168.2.70x35deNo error (0)s-0005.dual-s-msedge.net52.123.129.14A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440614939 CET1.1.1.1192.168.2.70xf07aNo error (0)admin-portal.office.comportal-office365-com.b-0004.b-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440758944 CET1.1.1.1192.168.2.70x518bNo error (0)messaging.engagement.office.comprod-campaignaggregator.omexexternallfb.office.net.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440905094 CET1.1.1.1192.168.2.70xb0f9No error (0)messaging.engagement.office.comprod-campaignaggregator.omexexternallfb.office.net.akadns.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.440905094 CET1.1.1.1192.168.2.70xb0f9No error (0)prod-campaignaggregator.omexexternallfb.office.net.akadns.net52.111.229.20A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.480664015 CET1.1.1.1192.168.2.70x2339No error (0)admin-portal.office.comportal-office365-com.b-0004.b-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.480664015 CET1.1.1.1192.168.2.70x2339No error (0)portal-office365-com.b-0004.b-msedge.netb-0004.b-dc-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:13.480664015 CET1.1.1.1192.168.2.70x2339No error (0)b-0004.b-dc-msedge.net13.107.9.156A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.080960035 CET1.1.1.1192.168.2.70x6e3bNo error (0)fa000000111.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.080960035 CET1.1.1.1192.168.2.70x6e3bNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.083623886 CET1.1.1.1192.168.2.70xd122No error (0)fa000000111.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.083623886 CET1.1.1.1192.168.2.70xd122No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.083623886 CET1.1.1.1192.168.2.70xd122No error (0)e11271.dscg.akamaiedge.net23.45.193.219A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088284016 CET1.1.1.1192.168.2.70xd6eaNo error (0)fa000000128.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088284016 CET1.1.1.1192.168.2.70xd6eaNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088284016 CET1.1.1.1192.168.2.70xd6eaNo error (0)e11271.dscg.akamaiedge.net23.45.193.219A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088298082 CET1.1.1.1192.168.2.70x59a1No error (0)fa000000128.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.088298082 CET1.1.1.1192.168.2.70x59a1No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089468956 CET1.1.1.1192.168.2.70x6f39No error (0)fa000000012.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089468956 CET1.1.1.1192.168.2.70x6f39No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089468956 CET1.1.1.1192.168.2.70x6f39No error (0)e11271.dscg.akamaiedge.net23.45.193.219A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089557886 CET1.1.1.1192.168.2.70x199bNo error (0)fa000000012.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.089557886 CET1.1.1.1192.168.2.70x199bNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091000080 CET1.1.1.1192.168.2.70x298No error (0)fa000000110.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091000080 CET1.1.1.1192.168.2.70x298No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091000080 CET1.1.1.1192.168.2.70x298No error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091309071 CET1.1.1.1192.168.2.70x667fNo error (0)fa000000138.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091309071 CET1.1.1.1192.168.2.70x667fNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091320992 CET1.1.1.1192.168.2.70xab69No error (0)fa000000110.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.091320992 CET1.1.1.1192.168.2.70xab69No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092540026 CET1.1.1.1192.168.2.70x6642No error (0)fa000000096.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092540026 CET1.1.1.1192.168.2.70x6642No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.092540026 CET1.1.1.1192.168.2.70x6642No error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093767881 CET1.1.1.1192.168.2.70x43cfNo error (0)fa000000138.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093767881 CET1.1.1.1192.168.2.70x43cfNo error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093767881 CET1.1.1.1192.168.2.70x43cfNo error (0)e11271.dscg.akamaiedge.net23.51.57.212A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093780041 CET1.1.1.1192.168.2.70xec46No error (0)fa000000096.resources.office.netresources.office.net.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:14.093780041 CET1.1.1.1192.168.2.70xec46No error (0)resources.office.net.edgekey.nete11271.dscg.akamaiedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.646020889 CET1.1.1.1192.168.2.70xe754No error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.665266991 CET1.1.1.1192.168.2.70x80c8No error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.665266991 CET1.1.1.1192.168.2.70x80c8No error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.665266991 CET1.1.1.1192.168.2.70x80c8No error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:15.665266991 CET1.1.1.1192.168.2.70x80c8No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:17.303915024 CET1.1.1.1192.168.2.70x78f3No error (0)edp-germany.schinndlerr.com185.225.69.75A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968158007 CET1.1.1.1192.168.2.70x3071No error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968158007 CET1.1.1.1192.168.2.70x3071No error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET1.1.1.1192.168.2.70x984aNo error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET1.1.1.1192.168.2.70x984aNo error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET1.1.1.1192.168.2.70x984aNo error (0)common.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET1.1.1.1192.168.2.70x984aNo error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:32.968882084 CET1.1.1.1192.168.2.70x984aNo error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.481527090 CET1.1.1.1192.168.2.70x4181No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.153A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.157A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.160A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.159A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.163A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.158A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.155A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.165A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.490489006 CET1.1.1.1192.168.2.70xc918No error (0)a726.dscd.akamai.net23.44.136.164A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.70A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.76A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.81A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.69A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.80A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.77A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.78A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:39.971388102 CET1.1.1.1192.168.2.70x3b73No error (0)a726.dscd.akamai.net23.57.90.74A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:40.012289047 CET1.1.1.1192.168.2.70x200No error (0)res-stls-prod.edgesuite.net.globalredir.akadns88.neta726.dscd.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.650681973 CET1.1.1.1192.168.2.70xe362No error (0)onenoteonline.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.650681973 CET1.1.1.1192.168.2.70xe362No error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651546001 CET1.1.1.1192.168.2.70x7584No error (0)onenoteonline.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651546001 CET1.1.1.1192.168.2.70x7584No error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651546001 CET1.1.1.1192.168.2.70x7584No error (0)a1894.dscb.akamai.net23.44.201.134A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651546001 CET1.1.1.1192.168.2.70x7584No error (0)a1894.dscb.akamai.net23.44.201.139A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651812077 CET1.1.1.1192.168.2.70x9ee5No error (0)onenoteonline.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651812077 CET1.1.1.1192.168.2.70x9ee5No error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651812077 CET1.1.1.1192.168.2.70x9ee5No error (0)a1894.dscb.akamai.net23.57.90.112A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.651812077 CET1.1.1.1192.168.2.70x9ee5No error (0)a1894.dscb.akamai.net23.57.90.108A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652477980 CET1.1.1.1192.168.2.70x6dd8No error (0)m365cdn.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652477980 CET1.1.1.1192.168.2.70x6dd8No error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652477980 CET1.1.1.1192.168.2.70x6dd8No error (0)a1894.dscb.akamai.net23.44.136.154A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652477980 CET1.1.1.1192.168.2.70x6dd8No error (0)a1894.dscb.akamai.net23.44.136.168A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652988911 CET1.1.1.1192.168.2.70x858eNo error (0)onenoteonline.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.652988911 CET1.1.1.1192.168.2.70x858eNo error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653928041 CET1.1.1.1192.168.2.70xd1e2No error (0)m365cdn.nel.measure.office.netnel.measure.office.net.edgesuite.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:01.653928041 CET1.1.1.1192.168.2.70xd1e2No error (0)nel.measure.office.net.edgesuite.neta1894.dscb.akamai.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET1.1.1.1192.168.2.70x5ec7No error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET1.1.1.1192.168.2.70x5ec7No error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET1.1.1.1192.168.2.70x5ec7No error (0)common.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET1.1.1.1192.168.2.70x5ec7No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.483195066 CET1.1.1.1192.168.2.70x5ec7No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.484703064 CET1.1.1.1192.168.2.70x4b5dNo error (0)common.online.office.comcommon-geo.wac.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:03.484703064 CET1.1.1.1192.168.2.70x4b5dNo error (0)common-geo.wac.trafficmanager.netcommon.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:07.494155884 CET1.1.1.1192.168.2.70xccb6No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:07.494155884 CET1.1.1.1192.168.2.70xccb6No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:07.494155884 CET1.1.1.1192.168.2.70xccb6No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.756412983 CET1.1.1.1192.168.2.70x6526No error (0)onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.756412983 CET1.1.1.1192.168.2.70x6526No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:08.756412983 CET1.1.1.1192.168.2.70x6526No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:14.484292984 CET1.1.1.1192.168.2.70x5e52No error (0)oauth.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:14.484292984 CET1.1.1.1192.168.2.70x5e52No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:14.484292984 CET1.1.1.1192.168.2.70x5e52No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.493031979 CET1.1.1.1192.168.2.70x9b8eNo error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.494326115 CET1.1.1.1192.168.2.70xc50No error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.494326115 CET1.1.1.1192.168.2.70xc50No error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.494326115 CET1.1.1.1192.168.2.70xc50No error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:15.494326115 CET1.1.1.1192.168.2.70xc50No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.102346897 CET1.1.1.1192.168.2.70x814cNo error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.102346897 CET1.1.1.1192.168.2.70x814cNo error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.102346897 CET1.1.1.1192.168.2.70x814cNo error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.102346897 CET1.1.1.1192.168.2.70x814cNo error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)www.onenote.comreverseproxy.onenote.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)reverseproxy.onenote.trafficmanager.netonservicesprod-dbakakdqhmgwebaj.z01.azurefd.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)onservicesprod-dbakakdqhmgwebaj.z01.azurefd.netstar-azurefd-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)star-azurefd-prod.trafficmanager.netshed.dual-low.s-part-0010.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)shed.dual-low.s-part-0010.t-0009.t-msedge.nets-part-0010.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.118654013 CET1.1.1.1192.168.2.70x2259No error (0)s-part-0010.t-0009.t-msedge.net13.107.246.38A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.496455908 CET1.1.1.1192.168.2.70x598eNo error (0)usc-onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.496455908 CET1.1.1.1192.168.2.70x598eNo error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:16.496455908 CET1.1.1.1192.168.2.70x598eNo error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:17.126243114 CET1.1.1.1192.168.2.70xfce7No error (0)usc-onenote.wac.trafficmanager.net.wac-0003.wac-dc-msedge.net.wac-0003.wac-msedge.netwac-0003.wac-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:17.126243114 CET1.1.1.1192.168.2.70xfce7No error (0)wac-0003.wac-msedge.net52.108.9.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:55:17.126243114 CET1.1.1.1192.168.2.70xfce7No error (0)wac-0003.wac-msedge.net52.108.8.12A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                          • onedrive.live.com
                                                                                                                                                                                                                                                                            • common.online.office.com
                                                                                                                                                                                                                                                                          • onenote.officeapps.live.com
                                                                                                                                                                                                                                                                            • messaging.engagement.office.com
                                                                                                                                                                                                                                                                            • spoprod-a.akamaihd.net
                                                                                                                                                                                                                                                                            • storage.live.com
                                                                                                                                                                                                                                                                            • amcdn.msftauth.net
                                                                                                                                                                                                                                                                            • www.onenote.com
                                                                                                                                                                                                                                                                              • ajax.aspnetcdn.com
                                                                                                                                                                                                                                                                            • fa000000110.resources.office.net
                                                                                                                                                                                                                                                                            • fa000000138.resources.office.net
                                                                                                                                                                                                                                                                            • fa000000128.resources.office.net
                                                                                                                                                                                                                                                                            • fa000000096.resources.office.net
                                                                                                                                                                                                                                                                            • fa000000012.resources.office.net
                                                                                                                                                                                                                                                                            • fa000000111.resources.office.net
                                                                                                                                                                                                                                                                          • augloop.office.com
                                                                                                                                                                                                                                                                          • oauth.officeapps.live.com
                                                                                                                                                                                                                                                                            • login.microsoftonline.com
                                                                                                                                                                                                                                                                          • m365cdn.nel.measure.office.net
                                                                                                                                                                                                                                                                          • onenoteonline.nel.measure.office.net
                                                                                                                                                                                                                                                                          • c.pki.goog
                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination Port
                                                                                                                                                                                                                                                                          0192.168.2.749817142.250.80.9980
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.578897953 CET202OUTGET /r/gsr1.crl HTTP/1.1
                                                                                                                                                                                                                                                                          Cache-Control: max-age = 3000
                                                                                                                                                                                                                                                                          Connection: Keep-Alive
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          If-Modified-Since: Tue, 07 Jan 2025 07:28:00 GMT
                                                                                                                                                                                                                                                                          User-Agent: Microsoft-CryptoAPI/10.0
                                                                                                                                                                                                                                                                          Host: c.pki.goog
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.669320107 CET223INHTTP/1.1 304 Not Modified
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:13:27 GMT
                                                                                                                                                                                                                                                                          Expires: Wed, 26 Mar 2025 13:03:27 GMT
                                                                                                                                                                                                                                                                          Age: 2443
                                                                                                                                                                                                                                                                          Last-Modified: Tue, 07 Jan 2025 07:28:00 GMT
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=3000
                                                                                                                                                                                                                                                                          Vary: Accept-Encoding
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.706228018 CET200OUTGET /r/r4.crl HTTP/1.1
                                                                                                                                                                                                                                                                          Cache-Control: max-age = 3000
                                                                                                                                                                                                                                                                          Connection: Keep-Alive
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          If-Modified-Since: Thu, 25 Jul 2024 14:48:00 GMT
                                                                                                                                                                                                                                                                          User-Agent: Microsoft-CryptoAPI/10.0
                                                                                                                                                                                                                                                                          Host: c.pki.goog
                                                                                                                                                                                                                                                                          Mar 26, 2025 13:54:10.796258926 CET223INHTTP/1.1 304 Not Modified
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:13:30 GMT
                                                                                                                                                                                                                                                                          Expires: Wed, 26 Mar 2025 13:03:30 GMT
                                                                                                                                                                                                                                                                          Age: 2440
                                                                                                                                                                                                                                                                          Last-Modified: Thu, 25 Jul 2024 14:48:00 GMT
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=3000
                                                                                                                                                                                                                                                                          Vary: Accept-Encoding


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          0192.168.2.74969113.107.137.114435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:53:59 UTC976OUTGET /:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onedrive.live.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-User: ?1
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: document
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC4151INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          Content-Length: 657
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Location: https://onedrive.live.com/personal/a19e0d27a159b01d/_layouts/15/Doc.aspx?sourcedoc=%7Be850d13a-ad6f-4f54-8dfe-dfae61d3c47a%7D&action=default&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU&slrid=114b8ea1-0060-c000-6241-c77a4dce2e19&originalPath=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_cnRpbWU9WmRsRlIyVnMzVWc&CID=2229562f-da64-467c-81ae-ab18381bbb3c&_SRM=0:G:56
                                                                                                                                                                                                                                                                          P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
                                                                                                                                                                                                                                                                          Set-Cookie: FedAuth=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 [TRUNCATED]
                                                                                                                                                                                                                                                                          IsOCDI: 0
                                                                                                                                                                                                                                                                          X-NetworkStatistics: 0,0,0,0,0,0,0,0
                                                                                                                                                                                                                                                                          X-SharePointHealthScore: 2
                                                                                                                                                                                                                                                                          X-MS-SPO-CookieValidator: XCeNtztuwWqWIPuZ41othxXzzcG3wS9TNGbspkNIoUwBBpY/1+/ykEjErmeozKR3nT+MmBLmw3jIMd4+rz3pkEVm/4+/Ybhjxf7jwF5JDgoluHvSCcRHCo1Tw6BpUgv6gSsxI3XuutRJwYh/XuT7dho2quLmdkAe8r8+MkuUuLMayeVB2U8owS7O/v2/CYnqA6JaAEU8q1hjGV+5o1qdvxMY8ktcjOA5VnlV/qfhRaDpN/g2B5WYVxe+DZucvY86YyG2VauKo9MgvM4+2ydTUaDJ+FmJR5Ar65YgrdejPX3YmgKddX5GeIRUUlbpZbLzW+b4Xopgju0m4UqJQLnw/w==
                                                                                                                                                                                                                                                                          X-AspNet-Version: 4.0.30319
                                                                                                                                                                                                                                                                          X-DataBoundary: EU
                                                                                                                                                                                                                                                                          X-1DSCollectorUrl: https://eu-mobile.events.data.microsoft.com/OneCollector/1.0/
                                                                                                                                                                                                                                                                          X-AriaCollectorURL: https://eu-mobile.events.data.microsoft.com/Collector/3.0
                                                                                                                                                                                                                                                                          SPRequestGuid: 124b8ea1-c010-c000-6241-c97d11c76d35
                                                                                                                                                                                                                                                                          request-id: 124b8ea1-c010-c000-6241-c97d11c76d35
                                                                                                                                                                                                                                                                          MS-CV: oY5LEhDAAMBiQcl9EcdtNQ.0
                                                                                                                                                                                                                                                                          Alt-Svc: h3=":443";ma=86400
                                                                                                                                                                                                                                                                          Report-To: {"group":"network-errors","max_age":7200,"endpoints":[{"url":"https://spo.nel.measure.office.net/api/report?tenantId=9188040d-6c67-4c5b-b112-36a304b66dad&destinationEndpoint=Edge-Prod-BL2r8d&frontEnd=AFD&RemoteIP=161.77.13.0"}]}
                                                                                                                                                                                                                                                                          NEL: {"report_to":"network-errors","max_age":7200,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          X-FRAME-OPTIONS: SAMEORIGIN
                                                                                                                                                                                                                                                                          Content-Security-Policy: frame-ancestors 'self' teams.microsoft.com *.teams.microsoft.com *.skype.com *.teams.microsoft.us local.teams.office.com teams.cloud.microsoft *.office365.com goals.cloud.microsoft *.powerapps.com *.powerbi.com *.yammer.com engage.cloud.microsoft word.cloud.microsoft excel.cloud.microsoft powerpoint.cloud.microsoft *.officeapps.live.com *.office.com *.microsoft365.com m365.cloud.microsoft *.cloud.microsoft *.stream.azure-test.net *.microsoftstream.com *.dynamics.com *.microsoft.com onedrive.live.com *.onedrive.live.com securebroker.sharepointonline.com;
                                                                                                                                                                                                                                                                          SPRequestDuration: 289
                                                                                                                                                                                                                                                                          SPIisLatency: 3
                                                                                                                                                                                                                                                                          X-Powered-By: ASP.NET
                                                                                                                                                                                                                                                                          MicrosoftSharePointTeamServices: 16.0.0.25912
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-MS-InvokeApp: 1; RequireReadOnly
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          X-MSEdge-Ref: Ref A: A720B4A2DF1B44EF9AA17FB268DD7520 Ref B: BL2AA2030105003 Ref C: 2025-03-26T12:53:59Z
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:53:59 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC19INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC638INData Raw: 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6f 6e 65 64 72 69 76 65 2e 6c 69 76 65 2e 63 6f 6d 2f 70 65 72 73 6f 6e 61 6c 2f 61 31 39 65 30 64 32 37 61 31 35 39 62 30 31 64 2f 5f 6c 61 79 6f 75 74 73 2f 31 35 2f 44 6f 63 2e 61 73 70 78 3f 73 6f 75 72 63 65 64 6f 63 3d 25 37 42 65 38 35 30 64 31 33 61 2d 61 64 36 66 2d 34 66 35 34 2d 38 64 66 65 2d 64 66 61 65 36 31 64 33 63 34 37 61 25 37 44 26 61 6d 70 3b 61 63 74 69 6f 6e 3d 64 65 66 61 75 6c 74 26 61 6d 70 3b 72 65 64 65 65 6d 3d 61 48 52 30 63 48 4d 36 4c 79 38 78 5a 48 4a 32 4c 6d 31 7a 4c 32 38 76 59 79 39 68 4d 54 6c 6c 4d 47 51
                                                                                                                                                                                                                                                                          Data Ascii: Object moved</title></head><body><h2>Object moved to <a href="https://onedrive.live.com/personal/a19e0d27a159b01d/_layouts/15/Doc.aspx?sourcedoc=%7Be850d13a-ad6f-4f54-8dfe-dfae61d3c47a%7D&amp;action=default&amp;redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQ


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          1192.168.2.74969213.107.137.114435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC2319OUTGET /personal/a19e0d27a159b01d/_layouts/15/Doc.aspx?sourcedoc=%7Be850d13a-ad6f-4f54-8dfe-dfae61d3c47a%7D&action=default&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU&slrid=114b8ea1-0060-c000-6241-c77a4dce2e19&originalPath=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_cnRpbWU9WmRsRlIyVnMzVWc&CID=2229562f-da64-467c-81ae-ab18381bbb3c&_SRM=0:G:56 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onedrive.live.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-User: ?1
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: document
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: FedAuth=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 [TRUNCATED]
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC3391INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Cache-Control: no-cache, no-store
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
                                                                                                                                                                                                                                                                          Set-Cookie: FedAuth=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 [TRUNCATED]
                                                                                                                                                                                                                                                                          IsOCDI: 0
                                                                                                                                                                                                                                                                          X-NetworkStatistics: 0,4194720,0,0,448755,173643,173643,65320
                                                                                                                                                                                                                                                                          X-SharePointHealthScore: 1
                                                                                                                                                                                                                                                                          Referrer-Policy: no-referrer, strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Server-Timing: LT; desc=0, RS; desc=G, RD; dur=56
                                                                                                                                                                                                                                                                          X-AspNet-Version: 4.0.30319
                                                                                                                                                                                                                                                                          X-DataBoundary: EU
                                                                                                                                                                                                                                                                          X-1DSCollectorUrl: https://eu-mobile.events.data.microsoft.com/OneCollector/1.0/
                                                                                                                                                                                                                                                                          X-AriaCollectorURL: https://eu-mobile.events.data.microsoft.com/Collector/3.0
                                                                                                                                                                                                                                                                          SPRequestGuid: 124b8ea1-9035-c000-1629-e149a6e3a2bc
                                                                                                                                                                                                                                                                          request-id: 124b8ea1-9035-c000-1629-e149a6e3a2bc
                                                                                                                                                                                                                                                                          MS-CV: oY5LEjWQAMAWKeFJpuOivA.0
                                                                                                                                                                                                                                                                          Alt-Svc: h3=":443";ma=86400
                                                                                                                                                                                                                                                                          Report-To: {"group":"network-errors","max_age":7200,"endpoints":[{"url":"https://spo.nel.measure.office.net/api/report?tenantId=9188040d-6c67-4c5b-b112-36a304b66dad&destinationEndpoint=Edge-Prod-BL2r5f&frontEnd=AFD&RemoteIP=161.77.13.0"}]}
                                                                                                                                                                                                                                                                          NEL: {"report_to":"network-errors","max_age":7200,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          X-FRAME-OPTIONS: SAMEORIGIN
                                                                                                                                                                                                                                                                          Content-Security-Policy: frame-ancestors 'self' teams.microsoft.com *.teams.microsoft.com *.skype.com *.teams.microsoft.us local.teams.office.com teams.cloud.microsoft *.office365.com goals.cloud.microsoft *.powerapps.com *.powerbi.com *.yammer.com engage.cloud.microsoft word.cloud.microsoft excel.cloud.microsoft powerpoint.cloud.microsoft *.officeapps.live.com *.office.com *.microsoft365.com m365.cloud.microsoft *.cloud.microsoft *.stream.azure-test.net *.microsoftstream.com *.dynamics.com *.microsoft.com onedrive.live.com *.onedrive.live.com securebroker.sharepointonline.com;
                                                                                                                                                                                                                                                                          X-Powered-By: ASP.NET
                                                                                                                                                                                                                                                                          MicrosoftSharePointTeamServices: 16.0.0.25912
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-MS-InvokeApp: 1; RequireReadOnly
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          X-MSEdge-Ref: Ref A: 3E3E0C188CF84589A9E5BA4D042B3FE4 Ref B: BL2EDGE2608 Ref C: 2025-03-26T12:54:00Z
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:00 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC2992INData Raw: 62 61 39 0d 0a 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 2d 75 73 22 20 64 69 72 3d 22 6c 74 72 22 3e 0d 0a 09 0d 0a 3c 68 65 61 64 3e 0d 0a 09 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 58 2d 55 41 2d 43 6f 6d 70 61 74 69 62 6c 65 22 20 63 6f 6e 74 65 6e 74 3d 22 49 45 3d 65 64 67 65 22 20 2f 3e 0d 0a 09 3c 6d 65 74 61 0d 0a 09 09 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 0d 0a 09 09 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 2c 20 69 6e 69 74 69 61 6c 2d 73 63 61 6c 65 3d 31 2e 30 2c 20 6d 61 78 69 6d 75 6d 2d 73 63 61 6c 65 3d 31 2e 30 2c 20 6d 69 6e 69 6d 75 6d 2d 73 63 61 6c 65 3d 31 2e 30 2c 20 75 73 65 72 2d 73 63 61 6c 61 62 6c 65 3d 6e 6f
                                                                                                                                                                                                                                                                          Data Ascii: ba9<!DOCTYPE html><html lang="en-us" dir="ltr"><head><meta http-equiv="X-UA-Compatible" content="IE=edge" /><metaname="viewport"content="width=device-width, initial-scale=1.0, maximum-scale=1.0, minimum-scale=1.0, user-scalable=no
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 2c 22 44 6f 77 6e 6c 6f 61 64 43 6f 64 65 22 3a 6e 75 6c 6c 2c 22 46 69 6c 65 49 6d 6d 75 74 61 62 6c 65 52 65 61 73 6f 6e 22 3a 30 2c 22 46 6f 6e 74 4c 69 62 55 72 6c 22 3a 6e 75 6c 6c 2c 22 42 75 6e 64 6c 65 4d 61 6a 6f 72 56 65 72 73 69 6f 6e 22 3a 31 2c 22 42 75 6e 64 6c 65 55 72 6c 22 3a 22 68 74 74 70 73 3a 2f 2f 6f 6e 65 64 72 69 76 65 2e 6c 69 76 65 2e 63 6f 6d 2f 70 65 72 73 6f 6e 61 6c 2f 61 31 39 65 30 64 32 37 61 31 35 39 62 30 31 64 2f 5f 61 70 69 2f 76 32 2e 31 2f 64 72 69 76 65 73 2f 62 21 6f 74 77 72 47 39 50 4a 49 6b 2d 56 42 50 58 62 46 42 45 5a 7a 6a 6b 4f 61 65 44 48 48 53 68 49 69 34 49 59 52 4f 51 59 6e 34 5a 5f 31 37 33 69 75 4d 58 63 53 4b 5a 73 35 69 63 48 6a 45 64 55 2f 73 74 72 65 61 6d 73 2f 63 6f 6e 74 65 6e
                                                                                                                                                                                                                                                                          Data Ascii: 2000,"DownloadCode":null,"FileImmutableReason":0,"FontLibUrl":null,"BundleMajorVersion":1,"BundleUrl":"https://onedrive.live.com/personal/a19e0d27a159b01d/_api/v2.1/drives/b!otwrG9PJIk-VBPXbFBEZzjkOaeDHHShIi4IYROQYn4Z_173iuMXcSKZs5icHjEdU/streams/conten
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC1934INData Raw: 37 38 37 0d 0a 41 32 41 38 2d 34 34 36 39 2d 39 42 32 34 2d 39 43 35 39 34 46 42 32 35 32 42 44 22 3a 31 2c 22 31 30 45 38 32 34 38 35 2d 45 30 35 32 2d 34 43 38 46 2d 39 35 32 39 2d 45 30 30 31 33 33 35 37 34 31 38 43 22 3a 31 2c 22 39 32 32 45 33 46 46 34 2d 30 41 39 35 2d 34 39 34 44 2d 38 30 36 35 2d 36 42 30 35 44 42 30 34 31 39 39 30 22 3a 31 2c 22 44 34 38 39 41 34 30 39 2d 46 43 44 45 2d 34 30 34 36 2d 41 39 44 38 2d 45 32 41 37 31 32 35 30 30 33 31 32 22 3a 31 2c 22 35 46 36 30 37 41 38 44 2d 36 34 32 39 2d 34 39 36 32 2d 42 31 32 30 2d 31 45 42 31 33 35 34 45 45 36 45 41 22 3a 31 2c 22 42 35 42 42 33 34 36 32 2d 33 35 33 35 2d 34 44 32 34 2d 42 31 41 32 2d 39 37 32 35 46 41 43 44 34 32 46 31 22 3a 31 2c 22 35 34 46 32 31 36 38 42 2d 46 37 34 41
                                                                                                                                                                                                                                                                          Data Ascii: 787A2A8-4469-9B24-9C594FB252BD":1,"10E82485-E052-4C8F-9529-E0013357418C":1,"922E3FF4-0A95-494D-8065-6B05DB041990":1,"D489A409-FCDE-4046-A9D8-E2A712500312":1,"5F607A8D-6429-4962-B120-1EB1354EE6EA":1,"B5BB3462-3535-4D24-B1A2-9725FACD42F1":1,"54F2168B-F74A
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 46 32 44 30 2d 34 46 44 46 2d 39 45 46 45 2d 44 46 34 36 36 36 32 31 44 38 45 36 22 3a 31 2c 22 41 35 33 46 32 44 36 36 2d 46 33 44 39 2d 34 36 35 32 2d 38 36 46 45 2d 36 31 42 46 32 36 39 35 35 46 46 31 22 3a 31 2c 22 36 32 31 39 37 46 39 45 2d 35 32 35 34 2d 34 34 43 43 2d 38 44 31 37 2d 45 37 36 37 31 45 43 39 36 33 36 34 22 3a 31 2c 22 31 46 32 35 32 32 35 31 2d 46 35 34 36 2d 35 38 32 30 2d 41 43 33 36 2d 45 39 37 46 41 30 38 44 42 37 37 34 22 3a 31 2c 22 37 31 46 43 43 36 36 39 2d 30 42 30 30 2d 34 44 43 36 2d 41 34 37 44 2d 43 38 46 37 32 30 46 44 41 32 31 37 22 3a 31 2c 22 32 42 37 42 31 35 34 42 2d 32 42 33 39 2d 34 46 39 33 2d 38 43 38 30 2d 38 36 31 32 30 37 31 41 46 38 35 35 22 3a 31 2c 22 33 36 37 45 35 43 35 39 2d 35 38 34
                                                                                                                                                                                                                                                                          Data Ascii: 2000F2D0-4FDF-9EFE-DF466621D8E6":1,"A53F2D66-F3D9-4652-86FE-61BF26955FF1":1,"62197F9E-5254-44CC-8D17-E7671EC96364":1,"1F252251-F546-5820-AC36-E97FA08DB774":1,"71FCC669-0B00-4DC6-A47D-C8F720FDA217":1,"2B7B154B-2B39-4F93-8C80-8612071AF855":1,"367E5C59-584
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 34 32 33 30 30 38 45 2d 31 44 37 42 2d 34 31 39 33 2d 38 46 43 43 2d 45 42 32 35 46 31 45 35 44 43 34 34 22 3a 31 2c 22 38 41 33 36 46 35 41 43 2d 44 39 45 43 2d 34 30 32 30 2d 38 34 44 42 2d 43 36 32 37 33 41 41 45 45 32 37 32 22 3a 31 2c 22 41 45 30 37 44 39 46 33 2d 31 46 31 39 2d 34 41 43 41 2d 38 41 38 32 2d 43 39 42 38 43 44 41 45 45 45 38 37 22 3a 31 2c 22 32 44 46 37 46 41 38 35 2d 34 32 42 42 2d 34 34 33 36 2d 41 46 34 41 2d 38 45 30 37 30 32 33 36 43 35 39 34 22 3a 31 2c 22 36 34 41 37 35 31 30 33 2d 37 42 30 30 2d 34 35 35 44 2d 39 43 30 34 2d 38 30 31 44 45 42 39 39 35 44 44 41 22 3a 31 2c 22 30 35 32 37 39 39 39 46 2d 33 39 41 41 2d 34 44 45 43 2d 39 46 31 33 2d 44 41 45 45 37 45 43 38 43 45 46 32 22 3a 31 2c 22 36 41 39 32
                                                                                                                                                                                                                                                                          Data Ascii: 2000423008E-1D7B-4193-8FCC-EB25F1E5DC44":1,"8A36F5AC-D9EC-4020-84DB-C6273AAEE272":1,"AE07D9F3-1F19-4ACA-8A82-C9B8CDAEEE87":1,"2DF7FA85-42BB-4436-AF4A-8E070236C594":1,"64A75103-7B00-455D-9C04-801DEB995DDA":1,"0527999F-39AA-4DEC-9F13-DAEE7EC8CEF2":1,"6A92
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 38 32 22 3a 31 2c 22 30 36 38 33 39 31 35 38 2d 44 45 45 34 2d 34 45 36 31 2d 38 38 43 41 2d 39 43 34 45 38 35 31 42 36 33 37 33 22 3a 31 2c 22 36 37 45 32 30 45 46 44 2d 31 34 30 46 2d 34 34 43 35 2d 39 38 46 42 2d 44 39 37 43 41 39 44 39 30 39 44 32 22 3a 31 2c 22 46 46 46 34 30 32 37 46 2d 46 46 39 43 2d 34 44 37 33 2d 42 45 34 36 2d 35 32 45 34 36 42 46 37 38 31 42 41 22 3a 31 2c 22 35 36 45 45 33 35 30 37 2d 45 44 35 32 2d 34 46 30 38 2d 41 44 43 35 2d 38 30 34 46 41 45 35 35 31 39 38 46 22 3a 31 2c 22 35 37 44 33 36 42 38 38 2d 31 37 33 33 2d 34 43 39 38 2d 38 32 43 35 2d 34 42 45 33 44 35 31 35 33 42 44 35 22 3a 31 2c 22 43 43 45 41 35 35 36 31 2d 35 36 42 33 2d 34 46 32 36 2d 39 32 38 33 2d 43 34 37 36 33 43 35 32 31 34 39 35 22
                                                                                                                                                                                                                                                                          Data Ascii: 200082":1,"06839158-DEE4-4E61-88CA-9C4E851B6373":1,"67E20EFD-140F-44C5-98FB-D97CA9D909D2":1,"FFF4027F-FF9C-4D73-BE46-52E46BF781BA":1,"56EE3507-ED52-4F08-ADC5-804FAE55198F":1,"57D36B88-1733-4C98-82C5-4BE3D5153BD5":1,"CCEA5561-56B3-4F26-9283-C4763C521495"
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 34 34 33 41 45 36 44 37 44 35 22 3a 31 2c 22 30 37 43 45 36 31 43 34 2d 34 46 32 38 2d 34 41 36 35 2d 39 44 44 30 2d 43 45 38 46 39 46 30 38 33 46 41 35 22 3a 31 2c 22 34 46 46 41 30 44 30 30 2d 45 45 32 41 2d 34 43 31 44 2d 42 38 44 31 2d 34 38 44 39 31 37 43 32 37 45 38 30 22 3a 31 2c 22 43 31 42 35 37 41 41 32 2d 41 42 44 44 2d 34 45 34 45 2d 38 44 38 31 2d 41 34 35 31 44 44 35 42 31 43 42 37 22 3a 31 2c 22 41 45 43 37 43 46 35 32 2d 30 42 34 31 2d 34 39 45 36 2d 42 35 44 38 2d 34 36 37 42 44 32 36 44 32 32 31 31 22 3a 31 2c 22 35 36 32 35 35 31 42 38 2d 32 33 37 46 2d 34 36 41 30 2d 39 46 38 41 2d 42 38 41 45 41 42 43 41 39 41 45 31 22 3a 31 2c 22 37 34 32 38 45 33 43 41 2d 42 33 36 43 2d 34 31 32 38 2d 38 35 42 38 2d 42 41 36 32 33
                                                                                                                                                                                                                                                                          Data Ascii: 2000443AE6D7D5":1,"07CE61C4-4F28-4A65-9DD0-CE8F9F083FA5":1,"4FFA0D00-EE2A-4C1D-B8D1-48D917C27E80":1,"C1B57AA2-ABDD-4E4E-8D81-A451DD5B1CB7":1,"AEC7CF52-0B41-49E6-B5D8-467BD26D2211":1,"562551B8-237F-46A0-9F8A-B8AEABCA9AE1":1,"7428E3CA-B36C-4128-85B8-BA623
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 2d 39 39 30 36 2d 38 39 42 31 38 35 36 32 32 31 34 30 22 3a 31 2c 22 31 37 31 33 45 36 42 46 2d 36 33 37 32 2d 34 39 37 32 2d 39 43 36 31 2d 34 44 45 42 42 38 39 36 30 46 31 39 22 3a 31 2c 22 42 42 39 43 41 38 41 41 2d 39 39 34 38 2d 34 33 30 46 2d 39 30 36 39 2d 35 34 34 36 43 30 34 34 36 43 33 36 22 3a 31 2c 22 44 39 39 41 39 39 34 41 2d 35 33 35 30 2d 34 44 36 42 2d 39 39 35 43 2d 36 42 35 32 46 31 43 38 45 34 35 35 22 3a 31 2c 22 42 45 42 44 31 38 37 39 2d 38 31 31 37 2d 34 45 38 45 2d 39 37 46 33 2d 44 34 37 32 42 36 43 32 39 45 44 30 22 3a 31 2c 22 45 35 32 43 30 31 32 30 2d 36 30 32 44 2d 34 36 37 46 2d 38 39 33 34 2d 35 37 45 34 41 38 30 46 30 33 39 46 22 3a 31 2c 22 33 43 32 41 42 30 33 34 2d 34 44 42 44 2d 34 39 31 34 2d 42 32
                                                                                                                                                                                                                                                                          Data Ascii: 2000-9906-89B185622140":1,"1713E6BF-6372-4972-9C61-4DEBB8960F19":1,"BB9CA8AA-9948-430F-9069-5446C0446C36":1,"D99A994A-5350-4D6B-995C-6B52F1C8E455":1,"BEBD1879-8117-4E8E-97F3-D472B6C29ED0":1,"E52C0120-602D-467F-8934-57E4A80F039F":1,"3C2AB034-4DBD-4914-B2
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 34 41 35 2d 34 37 39 46 2d 39 34 34 31 2d 34 43 42 41 36 37 37 32 36 30 37 37 22 3a 31 2c 22 39 42 34 34 45 30 44 42 2d 30 30 36 34 2d 34 37 36 31 2d 39 44 35 33 2d 44 30 43 35 32 33 43 30 45 41 31 32 22 3a 31 2c 22 46 30 38 34 37 45 45 34 2d 44 45 37 36 2d 34 36 46 34 2d 41 42 32 30 2d 45 39 39 39 30 37 43 38 36 41 38 32 22 3a 31 2c 22 30 35 42 37 35 32 41 36 2d 30 34 44 39 2d 34 45 44 36 2d 42 45 31 36 2d 43 34 38 44 35 34 36 38 43 30 34 31 22 3a 31 2c 22 46 46 31 41 35 32 30 42 2d 45 35 37 37 2d 34 32 32 35 2d 42 39 38 30 2d 33 32 36 44 34 38 32 41 45 43 35 36 22 3a 31 2c 22 41 41 45 43 42 32 43 39 2d 39 43 42 30 2d 34 41 38 39 2d 42 30 30 36 2d 37 41 39 36 42 38 43 32 34 46 36 33 22 3a 31 2c 22 32 44 42 33 35 31 36 44 2d 36 46 44 36
                                                                                                                                                                                                                                                                          Data Ascii: 20004A5-479F-9441-4CBA67726077":1,"9B44E0DB-0064-4761-9D53-D0C523C0EA12":1,"F0847EE4-DE76-46F4-AB20-E99907C86A82":1,"05B752A6-04D9-4ED6-BE16-C48D5468C041":1,"FF1A520B-E577-4225-B980-326D482AEC56":1,"AAECB2C9-9CB0-4A89-B006-7A96B8C24F63":1,"2DB3516D-6FD6
                                                                                                                                                                                                                                                                          2025-03-26 12:54:00 UTC8200INData Raw: 32 30 30 30 0d 0a 34 35 31 43 30 30 2d 42 31 46 30 2d 34 31 46 34 2d 38 42 36 43 2d 41 42 36 35 43 44 38 45 43 36 33 39 22 3a 31 2c 22 33 41 39 38 37 30 37 46 2d 35 39 42 43 2d 34 42 38 41 2d 41 38 38 35 2d 43 37 33 36 46 31 34 31 31 30 35 33 22 3a 31 2c 22 41 37 30 36 46 41 36 32 2d 43 45 31 38 2d 34 44 35 42 2d 38 42 43 36 2d 32 38 45 36 30 33 44 41 39 37 39 32 22 3a 31 2c 22 39 45 44 45 32 35 34 39 2d 41 44 41 42 2d 34 39 36 42 2d 39 46 38 46 2d 46 38 43 38 34 46 38 41 38 44 36 41 22 3a 31 2c 22 31 44 41 35 46 44 36 39 2d 46 41 35 44 2d 34 41 34 44 2d 42 46 36 39 2d 32 37 31 46 45 30 34 41 37 33 37 39 22 3a 31 2c 22 34 42 37 44 44 42 42 36 2d 44 35 46 44 2d 34 39 33 44 2d 39 43 44 31 2d 41 32 32 39 42 34 43 36 44 41 45 37 22 3a 31 2c 22 44 31 38 46 37
                                                                                                                                                                                                                                                                          Data Ascii: 2000451C00-B1F0-41F4-8B6C-AB65CD8EC639":1,"3A98707F-59BC-4B8A-A885-C736F1411053":1,"A706FA62-CE18-4D5B-8BC6-28E603DA9792":1,"9EDE2549-ADAB-496B-9F8F-F8C84F8A8D6A":1,"1DA5FD69-FA5D-4A4D-BF69-271FE04A7379":1,"4B7DDBB6-D5FD-493D-9CD1-A229B4C6DAE7":1,"D18F7


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          2192.168.2.74970452.108.9.124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:01 UTC745OUTPOST /suite/RemoteUls.ashx?usid=6e978169-98b0-08db-1683-11f39403677b&officeserverversion= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: common.online.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 703
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          Content-Type: text/plain;charset=UTF-8
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onedrive.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://onedrive.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:01 UTC703OUTData Raw: 7b 22 54 22 3a 31 37 34 32 39 39 33 36 34 30 38 32 31 2c 22 4c 22 3a 5b 7b 22 47 22 3a 35 32 31 31 36 34 32 33 38 2c 22 54 22 3a 37 2c 22 4d 22 3a 22 4f 6e 65 4e 6f 74 65 4a 73 41 70 69 56 32 47 61 74 65 3a 20 44 69 73 61 62 6c 65 64 22 2c 22 43 22 3a 33 30 32 37 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 35 37 36 35 37 38 35 38 34 2c 22 54 22 3a 37 2c 22 4d 22 3a 22 4c 65 61 6e 20 55 69 20 48 6f 73 74 3a 20 62 6f 6f 74 41 70 70 22 2c 22 43 22 3a 33 30 32 37 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 35 34 36 31 38 32 30 34 38 2c 22 54 22 3a 38 2c 22 4d 22 3a 22 42 6f 6f 74 41 70 70 3a 20 4c 6f 61 64 20 64 6f 63 75 6d 65 6e 74 20 72 65 74 75 72 6e 65 64 22 2c 22 43 22 3a 33 30 32 37 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 35 35 33 37 32 36 32 38 35 2c 22
                                                                                                                                                                                                                                                                          Data Ascii: {"T":1742993640821,"L":[{"G":521164238,"T":7,"M":"OneNoteJsApiV2Gate: Disabled","C":3027,"D":50},{"G":576578584,"T":7,"M":"Lean Ui Host: bootApp","C":3027,"D":50},{"G":546182048,"T":8,"M":"BootApp: Load document returned","C":3027,"D":50},{"G":553726285,"
                                                                                                                                                                                                                                                                          2025-03-26 12:54:02 UTC4630INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          Content-Type: text/plain
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          Set-Cookie:
                                                                                                                                                                                                                                                                          Set-Cookie: PUS13-ARRAffinity=e3973c517cd78e8e542b264086f3b2c4b5a7ab94cef1d9a8c532c9ece01a0e1f;Path=/;Domain=common.online.office.com; samesite=none; secure; partitioned; httponly
                                                                                                                                                                                                                                                                          X-CorrelationId: 20627e7d-21c1-440e-b06e-d382f6b0539a
                                                                                                                                                                                                                                                                          X-UserSessionId: 6e978169-98b0-08db-1683-11f39403677b
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          X-OfficeFE: BL6PEPF0001FC15
                                                                                                                                                                                                                                                                          X-OfficeVersion: 16.0.18710.41009
                                                                                                                                                                                                                                                                          X-OfficeCluster: PUS13
                                                                                                                                                                                                                                                                          X-Partitioning-Enabled: true
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: https://onedrive.live.com
                                                                                                                                                                                                                                                                          Access-Control-Expose-Headers: X-EndSession, X-CorrelationId, X-OfficeFE, X-NewKey, X-bULS-SuppressionETag, X-bULS-SuppressedTags
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          X-bULS-SuppressionETag: 3446F01DD18F16CB80609621A6A1DCA89020D1DE
                                                                                                                                                                                                                                                                          X-bULS-SuppressedTags: 378069,1671813,2208151,2209344,3249545,3290144,4273285,4285850,4298965,4298968,4298969,4751696,5018275,5306497,5904476,6375195,6572226,6948167,7463498,8194017,8458642,16799123,17044289,17085210,17085216,17162522,17358857,17387682,19214611,19243470,19707039,19743902,19939648,20486158,21627712,21631370,22401293,22410500,22558617,22558879,22598977,22680210,22680213,22680214,22836558,22922182,22946650,23385666,23881934,23909858,24133723,24401375,24462656,24515087,25514973,25531993,33592839,34388130,35682372,36472266,36546380,36546381,36546382,36569418,36708451,36773964,36791688,36811158,36811159,36963655,37259477,37288035,37307491,37754499,37856259,37876293,37876294,37889309,38293640,38535900,38543496,38580697,38637954,38922202,39076766,39076767,39105358,39408129,39613840,39966341,40437001,40777251,40935455,40957978,40957979,41003225,41207258,41473876,41502555,41711299,41952657,41964821,41964885,42272991,42496725,42513088,42815875,42857251,50406866,50431969,50622685,51451613,51504083,516670 [TRUNCATED]
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-Download-Options: noopen
                                                                                                                                                                                                                                                                          Content-Disposition: attachment
                                                                                                                                                                                                                                                                          X-OFFICEFD: BL6PEPF0001A161
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          X-MSEdge-Flight: 2i49=afd_wacinfra4,2i4a=afd_wacinfra5,5e4w=afd_excelslicetest
                                                                                                                                                                                                                                                                          X-MSEdge-Features: afd_waccluster,afd_wacinfra4,afd_wacinfra5,afd_excelslicetest
                                                                                                                                                                                                                                                                          X-MSEdge-Ref: Ref A: 31FBFEA9A9014239A465778492A2596E Ref B: EWR311000106047 Ref C: 2025-03-26T12:54:01Z
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:01 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 0


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          3192.168.2.74980652.111.229.204435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC1010OUTOPTIONS /campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: messaging.engagement.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Access-Control-Request-Method: GET
                                                                                                                                                                                                                                                                          Access-Control-Request-Headers: x-clientsessionid,x-correlationid
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC563INHTTP/1.1 204 No Content
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:10 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Server: Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                          Access-Control-Allow-Headers: x-clientsessionid,x-correlationid
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          X-ActivityTraceId: 801a0719ca2ebebcdae7003820441782
                                                                                                                                                                                                                                                                          X-ServiceCorrelationId: 801a0719-ca2e-bebc-dae7-003820441782
                                                                                                                                                                                                                                                                          X-Machine: OMEXNODE2000007__omexexternal-prod-eus-2-000_7
                                                                                                                                                                                                                                                                          X-BuildVersion: 25.4.10221.11438
                                                                                                                                                                                                                                                                          X-ServiceFabricRequestId: cdb4fd3d-02ce-48a5-8a9e-1ea82f5ee673
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          4192.168.2.74981452.111.229.204435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC1146OUTGET /campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: messaging.engagement.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          x-clientsessionid: 489263a8-bb67-4f98-39cb-f26ac34c7ce4
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          x-correlationid: 01db9715-1484-4567-ccfe-89744fd5c878
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC524INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:10 GMT
                                                                                                                                                                                                                                                                          Content-Type: text/plain; charset=utf-8
                                                                                                                                                                                                                                                                          Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Server: Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          X-ActivityTraceId: 6184f107b8344c2deecaeb962b97b6d3
                                                                                                                                                                                                                                                                          X-ServiceCorrelationId: 6184f107-b834-4c2d-eeca-eb962b97b6d3
                                                                                                                                                                                                                                                                          X-Machine: OMEXNODE2000001__omexexternal-prod-eus-2-000_1
                                                                                                                                                                                                                                                                          X-BuildVersion: 25.4.10221.11438
                                                                                                                                                                                                                                                                          X-ServiceFabricRequestId: 1f295245-f6f5-4444-b4b2-84f95e896e77
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC120INData Raw: 36 64 0d 0a 7b 22 43 61 6d 70 61 69 67 6e 43 6f 6e 74 65 6e 74 22 3a 7b 22 63 61 6d 70 61 69 67 6e 73 22 3a 5b 5d 7d 2c 22 44 79 6e 61 6d 69 63 53 65 74 74 69 6e 67 73 22 3a 7b 22 54 6d 73 4c 6f 61 64 54 69 6d 65 6f 75 74 22 3a 33 30 30 30 2c 22 54 65 61 63 68 69 6e 67 4d 65 73 73 61 67 65 43 6f 6f 6c 64 6f 77 6e 22 3a 33 36 30 30 7d 7d 0d 0a 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 6d{"CampaignContent":{"campaigns":[]},"DynamicSettings":{"TmsLoadTimeout":3000,"TeachingMessageCooldown":3600}}0


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          5192.168.2.74981623.219.36.1014435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC626OUTGET /files/fabric/assets/icons/fabricmdl2icons.woff HTTP/1.1
                                                                                                                                                                                                                                                                          Host: spoprod-a.akamaihd.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: font
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:10 UTC313INHTTP/1.1 302 Moved Temporarily
                                                                                                                                                                                                                                                                          Server: AkamaiGHost
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          Location: https://res-1.cdn.office.net/files/fabric/assets/icons/fabricmdl2icons.woff
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:10 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Alt-Svc: quic=":443"; ma=93600; v="43"
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          Timing-Allow-Origin: *


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          6192.168.2.74983220.135.4.1704435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:11 UTC730OUTGET /mydata/myprofile/expressionprofile/profilephoto:UserTileStatic,UserTileSmall/MeControlMediumUserTile?ck=1&ex=24&fofoff=1&sc=1742993650256 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: storage.live.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: same-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: image
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:11 UTC867INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          Location: https://login.live.com/login.srf?wa=wsignin1.0&rpsnv=174&ct=1742993651&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fstorage.live.com%2Fstorageservice%2Fpassport%2Fauth.aspx%3Fsru%3Dhttps:%252f%252fstorage.live.com%252fmydata%252fmyprofile%252fexpressionprofile%252fprofilephoto:UserTileStatic%252cUserTileSmall%252fMeControlMediumUserTile&lc=1033&id=63539
                                                                                                                                                                                                                                                                          P3P: CP="BUS CUR CONo FIN IVDo ONL OUR PHY SAMo TELo"
                                                                                                                                                                                                                                                                          X-MSNSERVER: BL4PPF33E04E84D
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          MS-CV: ggAiahX31UelwZGMFbq0BA.0
                                                                                                                                                                                                                                                                          X-QosStats: {"ApiId":0,"ResultType":2,"SourcePropertyId":0,"TargetPropertyId":42}
                                                                                                                                                                                                                                                                          X-ThrowSite: 4212.9205
                                                                                                                                                                                                                                                                          X-ClientErrorCode: PassportAuthFail
                                                                                                                                                                                                                                                                          X-ErrorCodeChain: Unauthenticated
                                                                                                                                                                                                                                                                          X-AsmVersion: UNKNOWN; 19.1628.228.2009
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:10 GMT
                                                                                                                                                                                                                                                                          Connection: close


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          7192.168.2.74984513.107.246.404435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:11 UTC651OUTGET /me?partner=OneNoteOnline&version=latest&market=EN-US&wrapperId=suiteshell HTTP/1.1
                                                                                                                                                                                                                                                                          Host: amcdn.msftauth.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: script
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC576INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Type: application/javascript
                                                                                                                                                                                                                                                                          Content-Length: 30715
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Vary: Accept-Encoding
                                                                                                                                                                                                                                                                          Cache-Control: public, no-transform, max-age=7200
                                                                                                                                                                                                                                                                          Expires: Wed, 26 Mar 2025 14:54:12 GMT
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS
                                                                                                                                                                                                                                                                          X-UA-Compatible: IE=edge
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          x-azure-ref: 20250326T125411Z-17cccd5449b4wvd9hC1EWRkczn0000000gr000000000c30a
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          Accept-Ranges: bytes
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC15808INData Raw: 77 69 6e 64 6f 77 2e 4d 53 41 3d 77 69 6e 64 6f 77 2e 4d 53 41 7c 7c 7b 7d 3b 77 69 6e 64 6f 77 2e 4d 53 41 2e 4d 65 43 6f 6e 74 72 6f 6c 3d 77 69 6e 64 6f 77 2e 4d 53 41 2e 4d 65 43 6f 6e 74 72 6f 6c 7c 7c 7b 7d 3b 77 69 6e 64 6f 77 2e 4d 53 41 2e 4d 65 43 6f 6e 74 72 6f 6c 2e 43 6f 6e 66 69 67 3d 7b 22 76 65 72 22 3a 22 31 30 2e 32 34 32 32 38 2e 34 22 2c 22 6d 6b 74 22 3a 22 65 6e 2d 55 53 22 2c 22 70 74 6e 22 3a 22 6f 6e 65 6e 6f 74 65 6f 6e 6c 69 6e 65 22 2c 22 67 66 78 22 3a 22 68 74 74 70 73 3a 2f 2f 61 6d 63 64 6e 2e 6d 73 66 74 61 75 74 68 2e 6e 65 74 22 2c 22 64 62 67 22 3a 66 61 6c 73 65 2c 22 61 61 64 22 3a 74 72 75 65 2c 22 69 6e 74 22 3a 66 61 6c 73 65 2c 22 70 78 79 22 3a 74 72 75 65 2c 22 6d 73 54 78 74 22 3a 66 61 6c 73 65 2c 22 72 77 64
                                                                                                                                                                                                                                                                          Data Ascii: window.MSA=window.MSA||{};window.MSA.MeControl=window.MSA.MeControl||{};window.MSA.MeControl.Config={"ver":"10.24228.4","mkt":"en-US","ptn":"onenoteonline","gfx":"https://amcdn.msftauth.net","dbg":false,"aad":true,"int":false,"pxy":true,"msTxt":false,"rwd
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC14907INData Raw: 65 28 29 2e 74 68 65 6e 28 65 29 7d 29 2c 54 65 2e 5f 75 6e 68 61 6e 64 6c 65 64 52 65 6a 65 63 74 69 6f 6e 46 6e 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 56 65 28 7b 65 76 65 6e 74 54 79 70 65 3a 22 43 6c 69 65 6e 74 45 72 72 6f 72 22 2c 69 73 43 72 69 74 69 63 61 6c 3a 21 30 2c 6e 61 6d 65 3a 65 2e 6d 65 73 73 61 67 65 7c 7c 22 28 66 61 6c 73 65 79 20 6d 65 73 73 61 67 65 20 70 72 6f 70 65 72 74 79 20 6f 6e 20 65 72 72 6f 72 29 22 2c 74 79 70 65 3a 22 55 6e 68 61 6e 64 6c 65 64 50 72 6f 6d 69 73 65 52 65 6a 65 63 74 69 6f 6e 22 2c 64 65 74 61 69 6c 73 3a 65 2e 73 74 61 63 6b 7c 7c 22 22 2c 64 69 73 70 6c 61 79 65 64 3a 21 31 2c 73 65 76 65 72 69 74 79 3a 65 2e 6d 63 49 73 54 69 6d 65 6f 75 74 3f 33 3a 32 7d 29 7d 3b 76 61 72 20 47 65 3d 5b 5d 3b 76 61 72
                                                                                                                                                                                                                                                                          Data Ascii: e().then(e)}),Te._unhandledRejectionFn=function(e){Ve({eventType:"ClientError",isCritical:!0,name:e.message||"(falsey message property on error)",type:"UnhandledPromiseRejection",details:e.stack||"",displayed:!1,severity:e.mcIsTimeout?3:2})};var Ge=[];var


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          8192.168.2.74984413.107.246.724435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC761OUTGET /officeaddins/learningtools/?et= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: www.onenote.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC1442INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Content-Length: 2801
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          X-RoutingOfficeCluster: eus-azsc-001.reverseproxy.onenote.com
                                                                                                                                                                                                                                                                          X-RoutingOfficeFE: ReverseProxyFrontEnd_IN_11
                                                                                                                                                                                                                                                                          X-RoutingOfficeVersion: 16.0.18723.40453
                                                                                                                                                                                                                                                                          X-RoutingSessionId: f88f008e-ebc3-47ec-bdda-be891a8bee7f
                                                                                                                                                                                                                                                                          X-RoutingCorrelationId: 0a1b8c9f-3b12-437e-99c2-83373260f748
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          P3P: CP="P3P is not supported anymore; see: https://msdn.microsoft.com/en-us/library/mt146424%28v=vs.85%29.aspx"
                                                                                                                                                                                                                                                                          x-correlationid: 0a1b8c9f-3b12-437e-99c2-83373260f748
                                                                                                                                                                                                                                                                          x-usersessionid: f88f008e-ebc3-47ec-bdda-be891a8bee7f
                                                                                                                                                                                                                                                                          x-officefe: AgavesFrontEnd_IN_4
                                                                                                                                                                                                                                                                          x-officeversion: 16.0.18725.40452
                                                                                                                                                                                                                                                                          x-officecluster: eus-000.appsforoffice.onenote.com
                                                                                                                                                                                                                                                                          x-partitioning-enabled: true
                                                                                                                                                                                                                                                                          strict-transport-security: max-age=31536000; includeSubDomains; preload
                                                                                                                                                                                                                                                                          content-security-policy-report-only: script-src 'nonce-gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic' https:; base-uri 'self' ; object-src 'none'; require-trusted-types-for 'script'; report-uri https://csp.microsoft.com/report/OneService-Agaves-prod
                                                                                                                                                                                                                                                                          x-content-type-options: nosniff
                                                                                                                                                                                                                                                                          x-azure-ref: 20250326T125412Z-17cccd5449bkk7bshC1EWR4rww0000000gpg00000000h3a6
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          Accept-Ranges: bytes
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC2801INData Raw: 0d 0a 0d 0a 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0d 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 2d 55 53 22 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 09 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 75 74 66 2d 38 22 3e 0d 0a 09 3c 74 69 74 6c 65 3e 3c 2f 74 69 74 6c 65 3e 0d 0a 09 0d 0a 09 3c 73 63 72 69 70 74 20 6e 6f 6e 63 65 3d 22 67 63 76 67 63 37 5a 45 59 4b 48 6a 46 79 72 58 51 65 41 74 65 35 61 52 74 78 39 74 62 67 41 41 22 20 74 79 70 65 3d 22 74 65 78 74 2f 6a 61 76 61 73 63 72 69 70 74 22 20 73 72 63 3d 22 68 74 74 70 73 3a 2f 2f 63 64 6e 2e 6f 6e 65 6e 6f 74 65 2e 6e 65 74 2f 6f 66 66 69 63 65 61 64 64 69 6e 73 2f 31 36 31 38 37 32 35 34 30 34 35 32 5f 53 63 72 69 70 74 73 2f 43 6f 6d 6d 6f 6e 44 69 61 67 6e 6f 73 74 69 63 73 2e 6a 73 22
                                                                                                                                                                                                                                                                          Data Ascii: <!DOCTYPE html><html lang="en-US"><head><meta charset="utf-8"><title></title><script nonce="gcvgc7ZEYKHjFyrXQeAte5aRtx9tbgAA" type="text/javascript" src="https://cdn.onenote.net/officeaddins/161872540452_Scripts/CommonDiagnostics.js"


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          9192.168.2.74984652.111.230.44435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC515OUTGET / HTTP/1.1
                                                                                                                                                                                                                                                                          Host: augloop.office.com
                                                                                                                                                                                                                                                                          Connection: Upgrade
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Cache-Control: no-cache
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Upgrade: websocket
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-WebSocket-Version: 13
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Sec-WebSocket-Key: yzAYbN7tIcSTpj5yT7Pupg==
                                                                                                                                                                                                                                                                          Sec-WebSocket-Extensions: permessage-deflate; client_max_window_bits
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC453INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Content-Length: 2
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Type: text/plain; charset=utf-8
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Server: Kestrel
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=15768000; includeSubDomains; preload
                                                                                                                                                                                                                                                                          X-RP-Instance: _D2Worker_332
                                                                                                                                                                                                                                                                          X-Frame-Options: SAMEORIGIN
                                                                                                                                                                                                                                                                          X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-RP-RouteId: GatewayFallback
                                                                                                                                                                                                                                                                          X-RP-ClusterId: BackendGatewayAperture
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC2INData Raw: 4f 4b
                                                                                                                                                                                                                                                                          Data Ascii: OK


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          10192.168.2.74985123.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC662OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000110.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC462INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Mon, 04 Mar 2024 06:27:54 GMT
                                                                                                                                                                                                                                                                          ETag: "0x4B895E43C1663E489850FC20D3E97389C5A0EEE9DBD7D5214B29C0484C6D0125"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/0721)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-neu-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=82086
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 969
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC969INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          11192.168.2.74985523.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC669OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2409.12011/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000138.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Thu, 19 Sep 2024 20:08:56 GMT
                                                                                                                                                                                                                                                                          ETag: "0xC00E4175135270F0809B50C783FB3CC66F968310E4C9F99D1B90D572E583D9D6"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/071A)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=78679
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 9258
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC9258INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 20 73 74 61 6e 64 61 6c 6f 6e 65 3d 22 79 65 73 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8" standalone="yes"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          12192.168.2.74985423.45.193.2194435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC669OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000128.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC444INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Server: Kestrel
                                                                                                                                                                                                                                                                          ETag: "0xD1E635C88418964F5B5343990A0B3E12C00F83346DF1CC540CC7B149B382FD98"
                                                                                                                                                                                                                                                                          Last-Modified: Thu, 27 Feb 2025 21:13:01 GMT
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=109996
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 2773
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC2773INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 20 73 74 61 6e 64 61 6c 6f 6e 65 3d 22 79 65 73 22 3f 3e 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 20 78 6d
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8" standalone="yes"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xm


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          13192.168.2.74986223.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC669OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2404.23003/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000096.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Wed, 24 Apr 2024 07:45:09 GMT
                                                                                                                                                                                                                                                                          ETag: "0xA75EDBF8D6FD6E64EC15A55BED859C6D856ED5E78B4556F6A89F2A5D9E7FAAD4"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/0770)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=91695
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 1626
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC1626INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          14192.168.2.74985323.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC669OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2503.17004/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000012.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC443INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Server: Kestrel
                                                                                                                                                                                                                                                                          ETag: "0xC187F83E4018AA59BD91F86337FD9434923D9D9BBB972E86223977D924ED695B"
                                                                                                                                                                                                                                                                          Last-Modified: Tue, 18 Mar 2025 17:51:00 GMT
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=52659
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 3844
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC3844INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 20 78 6d 6c 6e 73 3a 6f 76 3d 22 68 74 74 70 3a 2f 2f 73
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://s


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          15192.168.2.74985223.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC662OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000111.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Referer: https://onenote.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Mon, 04 Mar 2024 06:23:27 GMT
                                                                                                                                                                                                                                                                          ETag: "0xA469F9CB0BD572336E79DA17C4D92777808887EC57EBF3B424F2A62F178652C6"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/072F)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=155293
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Content-Length: 985
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC985INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          16192.168.2.749863104.117.182.514435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC589OUTGET /ajax/jQuery/jquery-3.5.0.min.js HTTP/1.1
                                                                                                                                                                                                                                                                          Host: ajax.aspnetcdn.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: script
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://www.onenote.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC450INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Content-Type: application/javascript
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          ETag: "06faa87112d61:0"
                                                                                                                                                                                                                                                                          Last-Modified: Tue, 14 Apr 2020 15:26:14 GMT
                                                                                                                                                                                                                                                                          Timing-Allow-Origin: *
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=31043604
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Connection: Transfer-Encoding
                                                                                                                                                                                                                                                                          Akamai-GRN: 0.1eb67568.1742993652.e73d421
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC15934INData Raw: 30 30 30 30 42 35 39 36 0d 0a 2f 2a 21 20 6a 51 75 65 72 79 20 76 33 2e 35 2e 30 20 7c 20 28 63 29 20 4a 53 20 46 6f 75 6e 64 61 74 69 6f 6e 20 61 6e 64 20 6f 74 68 65 72 20 63 6f 6e 74 72 69 62 75 74 6f 72 73 20 7c 20 6a 71 75 65 72 79 2e 6f 72 67 2f 6c 69 63 65 6e 73 65 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 26 26 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3f 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3d 65 2e 64 6f 63 75 6d 65 6e 74 3f 74 28 65 2c 21 30 29 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 69 66 28 21 65 2e 64 6f 63 75 6d 65 6e 74 29 74 68 72 6f 77 20 6e 65 77 20 45 72 72 6f
                                                                                                                                                                                                                                                                          Data Ascii: 0000B596/*! jQuery v3.5.0 | (c) JS Foundation and other contributors | jquery.org/license */!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Erro
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC15904INData Raw: 6f 64 65 2c 66 3d 78 26 26 65 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 2c 70 3d 21 6e 26 26 21 78 2c 64 3d 21 31 3b 69 66 28 63 29 7b 69 66 28 79 29 7b 77 68 69 6c 65 28 6c 29 7b 61 3d 65 3b 77 68 69 6c 65 28 61 3d 61 5b 6c 5d 29 69 66 28 78 3f 61 2e 6e 6f 64 65 4e 61 6d 65 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 3d 3d 3d 66 3a 31 3d 3d 3d 61 2e 6e 6f 64 65 54 79 70 65 29 72 65 74 75 72 6e 21 31 3b 75 3d 6c 3d 22 6f 6e 6c 79 22 3d 3d 3d 68 26 26 21 75 26 26 22 6e 65 78 74 53 69 62 6c 69 6e 67 22 7d 72 65 74 75 72 6e 21 30 7d 69 66 28 75 3d 5b 6d 3f 63 2e 66 69 72 73 74 43 68 69 6c 64 3a 63 2e 6c 61 73 74 43 68 69 6c 64 5d 2c 6d 26 26 70 29 7b 64 3d 28 73 3d 28 72 3d 28 69 3d 28 6f 3d 28 61 3d 63 29 5b 53 5d 7c 7c 28 61 5b 53
                                                                                                                                                                                                                                                                          Data Ascii: ode,f=x&&e.nodeName.toLowerCase(),p=!n&&!x,d=!1;if(c){if(y){while(l){a=e;while(a=a[l])if(x?a.nodeName.toLowerCase()===f:1===a.nodeType)return!1;u=l="only"===h&&!u&&"nextSibling"}return!0}if(u=[m?c.firstChild:c.lastChild],m&&p){d=(s=(r=(i=(o=(a=c)[S]||(a[S
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC14660INData Raw: 6e 74 4c 6f 61 64 65 64 22 2c 42 29 2c 43 2e 72 65 6d 6f 76 65 45 76 65 6e 74 4c 69 73 74 65 6e 65 72 28 22 6c 6f 61 64 22 2c 42 29 2c 53 2e 72 65 61 64 79 28 29 7d 53 2e 66 6e 2e 72 65 61 64 79 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 46 2e 74 68 65 6e 28 65 29 5b 22 63 61 74 63 68 22 5d 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 53 2e 72 65 61 64 79 45 78 63 65 70 74 69 6f 6e 28 65 29 7d 29 2c 74 68 69 73 7d 2c 53 2e 65 78 74 65 6e 64 28 7b 69 73 52 65 61 64 79 3a 21 31 2c 72 65 61 64 79 57 61 69 74 3a 31 2c 72 65 61 64 79 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 28 21 30 3d 3d 3d 65 3f 2d 2d 53 2e 72 65 61 64 79 57 61 69 74 3a 53 2e 69 73 52 65 61 64 79 29 7c 7c 28 53 2e 69 73 52 65 61 64 79 3d 21 30 29 21 3d 3d 65 26 26 30 3c 2d 2d 53 2e
                                                                                                                                                                                                                                                                          Data Ascii: ntLoaded",B),C.removeEventListener("load",B),S.ready()}S.fn.ready=function(e){return F.then(e)["catch"](function(e){S.readyException(e)}),this},S.extend({isReady:!1,readyWait:1,ready:function(e){(!0===e?--S.readyWait:S.isReady)||(S.isReady=!0)!==e&&0<--S.
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 6d 6f 75 73 65 6f 76 65 72 22 2c 6d 6f 75 73 65 6c 65 61 76 65 3a 22 6d 6f 75 73 65 6f 75 74 22 2c 70 6f 69 6e 74 65 72 65 6e 74 65 72 3a 22 70 6f 69 6e 74 65 72 6f 76 65 72 22 2c 70 6f 69 6e 74 65 72 6c 65 61 76 65 3a 22 70 6f 69 6e 74 65 72 6f 75 74 22 7d 2c 66 75 6e 63 74 69 6f 6e 28 65 2c 69 29 7b 53 2e 65 76 65 6e 74 2e 73 70 65 63 69 61 6c 5b 65 5d 3d 7b 64 65 6c 65 67 61 74 65 54 79 70 65 3a 69 2c 62 69 6e 64 54 79 70 65 3a 69 2c 68 61 6e 64 6c 65 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 76 61 72 20 74 2c 6e 3d 65 2e 72 65 6c 61 74 65 64 54 61 72 67 65 74 2c 72 3d 65 2e 68 61 6e 64 6c 65 4f 62 6a 3b 72 65 74 75 72 6e 20 6e 26 26 28 6e 3d 3d 3d 74 68 69 73 7c 7c 53 2e 63 6f 6e 74 61 69 6e 73 28 74 68 69 73 2c 6e 29 29 7c
                                                                                                                                                                                                                                                                          Data Ascii: 00004000mouseover",mouseleave:"mouseout",pointerenter:"pointerover",pointerleave:"pointerout"},function(e,i){S.event.special[e]={delegateType:i,bindType:i,handle:function(e){var t,n=e.relatedTarget,r=e.handleObj;return n&&(n===this||S.contains(this,n))|
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC12INData Raw: 65 65 64 73 5b 72 2e 64 75 72 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: eeds[r.dur
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 61 74 69 6f 6e 5d 3a 72 2e 64 75 72 61 74 69 6f 6e 3d 53 2e 66 78 2e 73 70 65 65 64 73 2e 5f 64 65 66 61 75 6c 74 29 2c 6e 75 6c 6c 21 3d 72 2e 71 75 65 75 65 26 26 21 30 21 3d 3d 72 2e 71 75 65 75 65 7c 7c 28 72 2e 71 75 65 75 65 3d 22 66 78 22 29 2c 72 2e 6f 6c 64 3d 72 2e 63 6f 6d 70 6c 65 74 65 2c 72 2e 63 6f 6d 70 6c 65 74 65 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 6d 28 72 2e 6f 6c 64 29 26 26 72 2e 6f 6c 64 2e 63 61 6c 6c 28 74 68 69 73 29 2c 72 2e 71 75 65 75 65 26 26 53 2e 64 65 71 75 65 75 65 28 74 68 69 73 2c 72 2e 71 75 65 75 65 29 7d 2c 72 7d 2c 53 2e 66 6e 2e 65 78 74 65 6e 64 28 7b 66 61 64 65 54 6f 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 2c 72 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 66 69 6c 74 65 72 28 61
                                                                                                                                                                                                                                                                          Data Ascii: 00004000ation]:r.duration=S.fx.speeds._default),null!=r.queue&&!0!==r.queue||(r.queue="fx"),r.old=r.complete,r.complete=function(){m(r.old)&&r.old.call(this),r.queue&&S.dequeue(this,r.queue)},r},S.fn.extend({fadeTo:function(e,t,n,r){return this.filter(a
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC12INData Raw: 73 65 20 69 66 28 22 2a 22 21 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: se if("*"!
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC10251INData Raw: 30 30 30 30 32 37 46 46 0d 0a 3d 3d 75 26 26 75 21 3d 3d 6f 29 7b 69 66 28 21 28 61 3d 6c 5b 75 2b 22 20 22 2b 6f 5d 7c 7c 6c 5b 22 2a 20 22 2b 6f 5d 29 29 66 6f 72 28 69 20 69 6e 20 6c 29 69 66 28 28 73 3d 69 2e 73 70 6c 69 74 28 22 20 22 29 29 5b 31 5d 3d 3d 3d 6f 26 26 28 61 3d 6c 5b 75 2b 22 20 22 2b 73 5b 30 5d 5d 7c 7c 6c 5b 22 2a 20 22 2b 73 5b 30 5d 5d 29 29 7b 21 30 3d 3d 3d 61 3f 61 3d 6c 5b 69 5d 3a 21 30 21 3d 3d 6c 5b 69 5d 26 26 28 6f 3d 73 5b 30 5d 2c 63 2e 75 6e 73 68 69 66 74 28 73 5b 31 5d 29 29 3b 62 72 65 61 6b 7d 69 66 28 21 30 21 3d 3d 61 29 69 66 28 61 26 26 65 5b 22 74 68 72 6f 77 73 22 5d 29 74 3d 61 28 74 29 3b 65 6c 73 65 20 74 72 79 7b 74 3d 61 28 74 29 7d 63 61 74 63 68 28 65 29 7b 72 65 74 75 72 6e 7b 73 74 61 74 65 3a 22 70
                                                                                                                                                                                                                                                                          Data Ascii: 000027FF==u&&u!==o){if(!(a=l[u+" "+o]||l["* "+o]))for(i in l)if((s=i.split(" "))[1]===o&&(a=l[u+" "+s[0]]||l["* "+s[0]])){!0===a?a=l[i]:!0!==l[i]&&(o=s[0],c.unshift(s[1]));break}if(!0!==a)if(a&&e["throws"])t=a(t);else try{t=a(t)}catch(e){return{state:"p
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC12INData Raw: 30 30 30 30 30 30 30 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 00000000


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          17192.168.2.74986640.126.28.134435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:12 UTC1802OUTGET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=0b8c0379-a401-4592-817b-addd9f08b69e&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=HDVK6zZJo6cY73oZVAXiALeMrfrIVZziBo3Y1XfJPCU&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-781b-7094-9966-016889dc4b4b&state=eyJpZCI6IjAxOTVkMjg0LTc4MWItN2MxNi1iNGYzLWM5N2E0ZDQ2YTFiZSIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22 [TRUNCATED]
                                                                                                                                                                                                                                                                          Host: login.microsoftonline.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://oauth.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:13 UTC2801INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          Location: https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline_access&redirect_uri=https%3a%2f%2foauth.officeapps.live.com%2foa%2fOAuth.html&response_type=code&state=eyJpZCI6IjAxOTVkMjg0LTc4MWItN2MxNi1iNGYzLWM5N2E0ZDQ2YTFiZSIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&response_mode=fragment&nonce=0195d284-781b-7094-9966-016889dc4b4b&prompt=none&login_hint=urn%3aspo%3aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&code_challenge=7afNE74uXPCzqyPomAHDy3HZTv-Gf8pxmZgsDGhxRfc&code_challenge_method=S256&x-client-SKU=msal.js.browser&x-client-Ver=4.7.0&uaid=0b8c0379a4014592817baddd9f08b69e&msproxy=1&issuer=mso&tenant=consumers&ui_locales=en-US&client_info=1&epct=PAQABDgEAAABVrSpeuWamRam2jAF1XRQEZUD4qxabwiY9sk9F1WVcSi6UhKuKuGKWiAoj5r4gHiIhmJwLo7C5WkN_udQR0SminvExfJfraDrnCdxXBZQOFLibLrtcP0-HqpRifg_XT1BD-IxiwVjA2c7lo0n74uvrbQrvouScp5ysHZ5sh5mWbICiS6FiU2Sw4I0uwyAl8DUZ6BehUXbQ0 [TRUNCATED]
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                          x-ms-request-id: cc1bb047-c7b7-4e0d-8745-f437efe21902
                                                                                                                                                                                                                                                                          x-ms-ests-server: 2.1.20329.5 - WUS3 ProdSlices
                                                                                                                                                                                                                                                                          report-to: {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+chi"}]}
                                                                                                                                                                                                                                                                          nel: {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          x-ms-clitelem: 1,0,0,,
                                                                                                                                                                                                                                                                          x-ms-srs: 1.P
                                                                                                                                                                                                                                                                          Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Content-Security-Policy-Report-Only: object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-i1lmS19UMyHGgyKc49bswA' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
                                                                                                                                                                                                                                                                          X-XSS-Protection: 0
                                                                                                                                                                                                                                                                          Set-Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; expires=Fri, 25-Apr-2025 12:54:12 GMT; path=/; secure; HttpOnly; SameSite=None
                                                                                                                                                                                                                                                                          Set-Cookie: x-ms-gateway-slice=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Set-Cookie: stsservicecookie=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:12 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 1350
                                                                                                                                                                                                                                                                          2025-03-26 12:54:13 UTC1350INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6c 6f 67 69 6e 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 61 75 74 68 32 30 5f 61 75 74 68 6f 72 69 7a 65 2e 73 72 66 3f 63 6c 69 65 6e 74 5f 69 64 3d 32 34 33 63 36 33 61 33 2d 32 34 37 64 2d 34 31 63 35 2d 39 64 38 33 2d 37 37 38 38 63 34 33 66 31 63 34 33 26 61 6d 70 3b 73 63 6f 70 65 3d 65 30 33 61 31 33 65 65 2d 39 37 33 30 2d 34 63 61 65 2d 38 35 32 35 2d 34 37 35 35 39 63 38 63 66 31 38 61 25 32 66 2e 64 65 66 61 75 6c 74 2b 6f 70 65 6e 69 64 2b 70 72 6f 66 69 6c 65 2b 6f 66 66 6c 69 6e 65
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>Object moved</title></head><body><h2>Object moved to <a href="https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&amp;scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          18192.168.2.74989452.111.229.204435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:13 UTC839OUTGET /campaignmetadataaggregator?country=US&locale=en-US&app=2158&platform=Web&version=16.0.18718.41003&campaignParams=pageWidth%3D1280%26pageHeight%3D897%26screenWidth%3D1280%26screenHeight%3D1024%26colorDepth%3D24%26more%3Dtrue%26OFC_Audience%3DProduction%26Datacenter%3DPUS10%26TenantId%3D9188040d-6c67-4c5b-b112-36a304b66dad%26SelfTriggerActivity%3D%26&contentType=CampaignContent%3BDynamicSettings&puid=&OFC_FLIGHTS=&ageGroup=0&sessionUserType=2 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: messaging.engagement.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:13 UTC492INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:13 GMT
                                                                                                                                                                                                                                                                          Content-Type: text/plain; charset=utf-8
                                                                                                                                                                                                                                                                          Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Server: Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                          X-ActivityTraceId: ea31cad01f39d8b7bb1a0b657f9c4ab2
                                                                                                                                                                                                                                                                          X-ServiceCorrelationId: ea31cad0-1f39-d8b7-bb1a-0b657f9c4ab2
                                                                                                                                                                                                                                                                          X-Machine: OMEXNODE2000003__omexexternal-prod-eus-2-000_3
                                                                                                                                                                                                                                                                          X-BuildVersion: 25.4.10221.11438
                                                                                                                                                                                                                                                                          X-ServiceFabricRequestId: 9f61e4b8-932d-4346-a22d-bb7325990232
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          2025-03-26 12:54:13 UTC120INData Raw: 36 64 0d 0a 7b 22 43 61 6d 70 61 69 67 6e 43 6f 6e 74 65 6e 74 22 3a 7b 22 63 61 6d 70 61 69 67 6e 73 22 3a 5b 5d 7d 2c 22 44 79 6e 61 6d 69 63 53 65 74 74 69 6e 67 73 22 3a 7b 22 54 6d 73 4c 6f 61 64 54 69 6d 65 6f 75 74 22 3a 33 30 30 30 2c 22 54 65 61 63 68 69 6e 67 4d 65 73 73 61 67 65 43 6f 6f 6c 64 6f 77 6e 22 3a 33 36 30 30 7d 7d 0d 0a 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 6d{"CampaignContent":{"campaigns":[]},"DynamicSettings":{"TmsLoadTimeout":3000,"TeachingMessageCooldown":3600}}0


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          19192.168.2.74990423.45.193.2194435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC474OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2502.18015/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000128.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC444INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Server: Kestrel
                                                                                                                                                                                                                                                                          ETag: "0xD1E635C88418964F5B5343990A0B3E12C00F83346DF1CC540CC7B149B382FD98"
                                                                                                                                                                                                                                                                          Last-Modified: Thu, 27 Feb 2025 21:13:01 GMT
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=109994
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 2773
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC2773INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 20 73 74 61 6e 64 61 6c 6f 6e 65 3d 22 79 65 73 22 3f 3e 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 20 78 6d
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8" standalone="yes"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xm


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          20192.168.2.74990523.45.193.2194435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC474OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2503.17004/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000012.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC443INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Server: Kestrel
                                                                                                                                                                                                                                                                          ETag: "0xC187F83E4018AA59BD91F86337FD9434923D9D9BBB972E86223977D924ED695B"
                                                                                                                                                                                                                                                                          Last-Modified: Tue, 18 Mar 2025 17:51:00 GMT
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=52567
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 3844
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC3844INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 20 78 6d 6c 6e 73 3a 6f 76 3d 22 68 74 74 70 3a 2f 2f 73
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:ov="http://s


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          21192.168.2.74990723.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC474OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2404.23003/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000096.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Wed, 24 Apr 2024 07:45:09 GMT
                                                                                                                                                                                                                                                                          ETag: "0xA75EDBF8D6FD6E64EC15A55BED859C6D856ED5E78B4556F6A89F2A5D9E7FAAD4"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/0770)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=91693
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 1626
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC1626INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          22192.168.2.74990823.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC474OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.2409.12011/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000138.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Thu, 19 Sep 2024 20:08:56 GMT
                                                                                                                                                                                                                                                                          ETag: "0xC00E4175135270F0809B50C783FB3CC66F968310E4C9F99D1B90D572E583D9D6"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/071A)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=78677
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 9258
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC9258INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 20 73 74 61 6e 64 61 6c 6f 6e 65 3d 22 79 65 73 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="UTF-8" standalone="yes"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          23192.168.2.74990623.51.57.2124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC467OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000110.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC462INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Mon, 04 Mar 2024 06:27:54 GMT
                                                                                                                                                                                                                                                                          ETag: "0x4B895E43C1663E489850FC20D3E97389C5A0EEE9DBD7D5214B29C0484C6D0125"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/0721)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-neu-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=82084
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 969
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC969INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          24192.168.2.74990323.45.193.2194435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC467OUTGET /033f92d3-bc6d-439a-858a-a17acf70360a/1.0.0.5/en-us_web/manifest_web.xml HTTP/1.1
                                                                                                                                                                                                                                                                          Host: fa000000111.resources.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC463INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Last-Modified: Mon, 04 Mar 2024 06:23:27 GMT
                                                                                                                                                                                                                                                                          ETag: "0xA469F9CB0BD572336E79DA17C4D92777808887EC57EBF3B424F2A62F178652C6"
                                                                                                                                                                                                                                                                          Server: ECAcc (chd/072F)
                                                                                                                                                                                                                                                                          X-CID: 11
                                                                                                                                                                                                                                                                          X-Ms-ApiVersion: Distribute 1.2
                                                                                                                                                                                                                                                                          X-Ms-Region: prod-eus-z1
                                                                                                                                                                                                                                                                          Content-Type: text/xml
                                                                                                                                                                                                                                                                          Cache-Control: public, max-age=155321
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:14 GMT
                                                                                                                                                                                                                                                                          Content-Length: 985
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          X-CID: 2
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:54:14 UTC985INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0d 0a 3c 4f 66 66 69 63 65 41 70 70 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 61 70 70 66 6f 72 6f 66 66 69 63 65 2f 31 2e 31 22 0d 0a 20 20 78 6d 6c 6e 73 3a 78 73 69 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 31 2f 58 4d 4c 53 63 68 65 6d 61 2d 69 6e 73 74 61 6e 63 65 22 0d 0a 20 20 78 6d 6c 6e 73 3a 62 74 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 6f 66 66 69 63 65 2f 6f 66 66 69 63 65 61 70 70 62 61 73 69 63 74 79 70 65 73 2f 31 2e 30 22 0d 0a 20 20 78 6d 6c 6e 73 3a 63 6f 6e
                                                                                                                                                                                                                                                                          Data Ascii: <?xml version="1.0" encoding="utf-8"?><OfficeApp xmlns="http://schemas.microsoft.com/office/appforoffice/1.1" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:bt="http://schemas.microsoft.com/office/officeappbasictypes/1.0" xmlns:con


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          25192.168.2.74991113.107.246.724435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:15 UTC752OUTPOST /officeaddins/RemoteUls.ashx HTTP/1.1
                                                                                                                                                                                                                                                                          Host: www.onenote.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 552
                                                                                                                                                                                                                                                                          X-UserSessionId: f88f008e-ebc3-47ec-bdda-be891a8bee7f
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          Content-Type: application/json
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://www.onenote.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: same-origin
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://www.onenote.com/officeaddins/learningtools/?et=
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:15 UTC552OUTData Raw: 7b 22 54 22 3a 31 37 34 32 39 39 33 36 35 34 33 38 37 2c 22 4c 22 3a 5b 7b 22 47 22 3a 36 31 36 30 38 35 36 2c 22 54 22 3a 30 2c 22 4d 22 3a 22 4f 6e 4c 6f 61 64 22 2c 22 43 22 3a 32 30 30 33 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 36 31 36 30 38 35 37 2c 22 54 22 3a 34 2c 22 4d 22 3a 22 55 73 65 72 41 67 65 6e 74 3a 20 4d 6f 7a 69 6c 6c 61 2f 35 2e 30 20 28 57 69 6e 64 6f 77 73 20 4e 54 20 31 30 2e 30 3b 20 57 69 6e 36 34 3b 20 78 36 34 29 20 41 70 70 6c 65 57 65 62 4b 69 74 2f 35 33 37 2e 33 36 20 28 4b 48 54 4d 4c 2c 20 6c 69 6b 65 20 47 65 63 6b 6f 29 20 43 68 72 6f 6d 65 2f 31 33 34 2e 30 2e 30 2e 30 20 53 61 66 61 72 69 2f 35 33 37 2e 33 36 22 2c 22 43 22 3a 32 30 30 33 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 36 34 33 36 36 32 38 2c 22 54 22 3a
                                                                                                                                                                                                                                                                          Data Ascii: {"T":1742993654387,"L":[{"G":6160856,"T":0,"M":"OnLoad","C":2003,"D":50},{"G":6160857,"T":4,"M":"UserAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36","C":2003,"D":50},{"G":6436628,"T":
                                                                                                                                                                                                                                                                          2025-03-26 12:54:15 UTC1172INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:15 GMT
                                                                                                                                                                                                                                                                          Content-Type: text/plain
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          X-RoutingOfficeCluster: eus-azsc-000.reverseproxy.onenote.com
                                                                                                                                                                                                                                                                          X-RoutingOfficeFE: ReverseProxyFrontEnd_IN_8
                                                                                                                                                                                                                                                                          X-RoutingOfficeVersion: 16.0.18723.40453
                                                                                                                                                                                                                                                                          X-RoutingSessionId: f88f008e-ebc3-47ec-bdda-be891a8bee7f
                                                                                                                                                                                                                                                                          X-RoutingCorrelationId: 81452a5b-9145-480b-9152-feecec25208e
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          x-correlationid: 81452a5b-9145-480b-9152-feecec25208e
                                                                                                                                                                                                                                                                          x-usersessionid: f88f008e-ebc3-47ec-bdda-be891a8bee7f
                                                                                                                                                                                                                                                                          x-officefe: AgavesFrontEnd_IN_6
                                                                                                                                                                                                                                                                          x-officeversion: 16.0.18725.40452
                                                                                                                                                                                                                                                                          x-officecluster: eus-000.appsforoffice.onenote.com
                                                                                                                                                                                                                                                                          x-partitioning-enabled: true
                                                                                                                                                                                                                                                                          strict-transport-security: max-age=31536000; includeSubDomains; preload
                                                                                                                                                                                                                                                                          x-buls-suppressionetag: N/A
                                                                                                                                                                                                                                                                          x-buls-suppressedtags:
                                                                                                                                                                                                                                                                          x-content-type-options: nosniff
                                                                                                                                                                                                                                                                          x-download-options: noopen
                                                                                                                                                                                                                                                                          content-disposition: attachment
                                                                                                                                                                                                                                                                          x-content-type-options: nosniff
                                                                                                                                                                                                                                                                          x-azure-ref: 20250326T125415Z-17cccd5449b4tm5chC1EWRr5980000000gpg00000000fyes
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          Accept-Ranges: bytes


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          26192.168.2.74993940.126.28.134435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:21 UTC1891OUTGET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=4e4fd511-ce24-44ac-8e48-28c5f2dc9b90&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=HBqh2uO71gpacuuDSzg7TpXt3GBdzPOikDTDhgUTwqk&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-99b8-7fd9-b8da-d733f54c2a8d&state=eyJpZCI6IjAxOTVkMjg0LTk5YjgtNzEwZC05MGY3LWE3NDU4ZmU3ZjQ1YiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22 [TRUNCATED]
                                                                                                                                                                                                                                                                          Host: login.microsoftonline.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://oauth.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
                                                                                                                                                                                                                                                                          2025-03-26 12:54:21 UTC2723INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          Location: https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline_access&redirect_uri=https%3a%2f%2foauth.officeapps.live.com%2foa%2fOAuth.html&response_type=code&state=eyJpZCI6IjAxOTVkMjg0LTk5YjgtNzEwZC05MGY3LWE3NDU4ZmU3ZjQ1YiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&response_mode=fragment&nonce=0195d284-99b8-7fd9-b8da-d733f54c2a8d&prompt=none&login_hint=urn%3aspo%3aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&code_challenge=YOH5XAApzCFpcjfvqjMY7g1rpb71wuYOsbB1qvbLPSk&code_challenge_method=S256&x-client-SKU=msal.js.browser&x-client-Ver=4.7.0&uaid=4e4fd511ce2444ac8e4828c5f2dc9b90&msproxy=1&issuer=mso&tenant=consumers&ui_locales=en-US&client_info=1&epct=PAQABDgEAAABVrSpeuWamRam2jAF1XRQEsuQKbQYdPyc2qtkbWVDfljDDxbI57NFjXVwSgyIzpF5taouupOk1vGb5ouIyalUcQxAx1AGmdSOYFNHQTRnZ877YsOF7M73Hjlj4zfUPHnP7Ct-EO0XKGOKigMSZA-4nSB2gQO3EZPErPQef1-Gis48DCRhTZypL2b7MEyBsql-eGHdimFmgz [TRUNCATED]
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                          x-ms-request-id: bdee23bf-01c7-41bd-9fee-f5bea072b301
                                                                                                                                                                                                                                                                          x-ms-ests-server: 2.1.20329.5 - SCUS ProdSlices
                                                                                                                                                                                                                                                                          report-to: {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+chi"}]}
                                                                                                                                                                                                                                                                          nel: {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          x-ms-clitelem: 1,0,0,,
                                                                                                                                                                                                                                                                          x-ms-srs: 1.P
                                                                                                                                                                                                                                                                          Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Content-Security-Policy-Report-Only: object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-54if_2AcuyH9Cl-QryfyTQ' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
                                                                                                                                                                                                                                                                          X-XSS-Protection: 0
                                                                                                                                                                                                                                                                          Set-Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; expires=Fri, 25-Apr-2025 12:54:21 GMT; path=/; secure; HttpOnly; SameSite=None
                                                                                                                                                                                                                                                                          Set-Cookie: x-ms-gateway-slice=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:21 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 1350
                                                                                                                                                                                                                                                                          2025-03-26 12:54:21 UTC1350INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6c 6f 67 69 6e 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 61 75 74 68 32 30 5f 61 75 74 68 6f 72 69 7a 65 2e 73 72 66 3f 63 6c 69 65 6e 74 5f 69 64 3d 32 34 33 63 36 33 61 33 2d 32 34 37 64 2d 34 31 63 35 2d 39 64 38 33 2d 37 37 38 38 63 34 33 66 31 63 34 33 26 61 6d 70 3b 73 63 6f 70 65 3d 65 30 33 61 31 33 65 65 2d 39 37 33 30 2d 34 63 61 65 2d 38 35 32 35 2d 34 37 35 35 39 63 38 63 66 31 38 61 25 32 66 2e 64 65 66 61 75 6c 74 2b 6f 70 65 6e 69 64 2b 70 72 6f 66 69 6c 65 2b 6f 66 66 6c 69 6e 65
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>Object moved</title></head><body><h2>Object moved to <a href="https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&amp;scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          27192.168.2.74994952.108.8.124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:33 UTC456OUTGET /suite/RemoteTelemetry.ashx?usid=6e978169-98b0-08db-1683-11f39403677b HTTP/1.1
                                                                                                                                                                                                                                                                          Host: common.online.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:54:33 UTC1241INHTTP/1.1 400 Bad Request
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                          Content-Type: text/html
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          Set-Cookie:
                                                                                                                                                                                                                                                                          Set-Cookie: PUS4-ARRAffinity=b145aafa45ce702eae4a52d8161384b5e81d113f011df316ab42e0dee0fb49dd;Path=/;Domain=common.online.office.com; samesite=none; secure; partitioned; httponly
                                                                                                                                                                                                                                                                          X-CorrelationId: 320e04ae-e916-427a-876a-973e1eb91563
                                                                                                                                                                                                                                                                          X-UserSessionId: 6e978169-98b0-08db-1683-11f39403677b
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          X-OfficeFE: BL6PEPF000222F2
                                                                                                                                                                                                                                                                          X-OfficeVersion: 16.0.18710.41009
                                                                                                                                                                                                                                                                          X-OfficeCluster: PUS4
                                                                                                                                                                                                                                                                          X-Partitioning-Enabled: true
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-Download-Options: noopen
                                                                                                                                                                                                                                                                          Content-Disposition: attachment
                                                                                                                                                                                                                                                                          X-OFFICEFD: BL6PEPF00021CA9
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          X-MSEdge-Flight: 2i49=afd_wacinfra4,2i4a=afd_wacinfra5,2oge=afd_wordcapacity_3,5e4w=afd_excelslicetest_control
                                                                                                                                                                                                                                                                          X-MSEdge-Features: afd_waccluster,afd_excelslice_control,afd_wacinfra4,afd_wacinfra5,afd_wordcapacity_3,afd_excelslicetest_control
                                                                                                                                                                                                                                                                          X-MSEdge-Ref: Ref A: 8370555684A5444199F7931FACA0AC0D Ref B: EWR311000108025 Ref C: 2025-03-26T12:54:33Z
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:32 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          2025-03-26 12:54:33 UTC14INData Raw: 39 0d 0a 42 61 64 20 52 65 71 75 65 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 9Bad Reque
                                                                                                                                                                                                                                                                          2025-03-26 12:54:33 UTC7INData Raw: 32 0d 0a 73 74 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 2st
                                                                                                                                                                                                                                                                          2025-03-26 12:54:33 UTC5INData Raw: 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                          Data Ascii: 0


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          28192.168.2.74996340.126.28.134435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:42 UTC1891OUTGET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=ff7e1408-d504-4158-8cd8-f4edf2e3f729&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=EfNgJeWUgGyvxl-mDCqJ-yR58ekTsaEADmfZhGAazI4&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-ede7-77fb-b56b-8d76b626de53&state=eyJpZCI6IjAxOTVkMjg0LWVkZTYtNzVhNi05ZjRhLTdlYmFjM2U1ZjY3ZiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22 [TRUNCATED]
                                                                                                                                                                                                                                                                          Host: login.microsoftonline.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://oauth.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
                                                                                                                                                                                                                                                                          2025-03-26 12:54:43 UTC2723INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          Location: https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline_access&redirect_uri=https%3a%2f%2foauth.officeapps.live.com%2foa%2fOAuth.html&response_type=code&state=eyJpZCI6IjAxOTVkMjg0LWVkZTYtNzVhNi05ZjRhLTdlYmFjM2U1ZjY3ZiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&response_mode=fragment&nonce=0195d284-ede7-77fb-b56b-8d76b626de53&prompt=none&login_hint=urn%3aspo%3aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&code_challenge=kTpjug5HpyDUv4nYaDtMJ4RqCB8f1PlyGKsEFGb-DCI&code_challenge_method=S256&x-client-SKU=msal.js.browser&x-client-Ver=4.7.0&uaid=ff7e1408d50441588cd8f4edf2e3f729&msproxy=1&issuer=mso&tenant=consumers&ui_locales=en-US&client_info=1&epct=PAQABDgEAAABVrSpeuWamRam2jAF1XRQE-sqy-hjhJY235fCF2XLM0X53cei5qjek8iS3FII3cfAKG_Yw7f4v3GMpHFxcaDr58PCMva5WXV32KAgLeBJdSynuoGARkRNza5rQlPgC6iW-lpqb_Q8H03JTLvEqUGU2doAgJnoTKWemqAG7UyK8XGH0rprjabaPKQxlv-fpxxrtdWJME0MBH [TRUNCATED]
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                          x-ms-request-id: 018897d6-6ac9-4997-adb8-aedc98317f01
                                                                                                                                                                                                                                                                          x-ms-ests-server: 2.1.20329.5 - SCUS ProdSlices
                                                                                                                                                                                                                                                                          report-to: {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+chi"}]}
                                                                                                                                                                                                                                                                          nel: {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          x-ms-clitelem: 1,0,0,,
                                                                                                                                                                                                                                                                          x-ms-srs: 1.P
                                                                                                                                                                                                                                                                          Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Content-Security-Policy-Report-Only: object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-7D9CqvajiJTTrKGOjvFVvg' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
                                                                                                                                                                                                                                                                          X-XSS-Protection: 0
                                                                                                                                                                                                                                                                          Set-Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; expires=Fri, 25-Apr-2025 12:54:43 GMT; path=/; secure; HttpOnly; SameSite=None
                                                                                                                                                                                                                                                                          Set-Cookie: x-ms-gateway-slice=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:42 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 1350
                                                                                                                                                                                                                                                                          2025-03-26 12:54:43 UTC1350INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6c 6f 67 69 6e 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 61 75 74 68 32 30 5f 61 75 74 68 6f 72 69 7a 65 2e 73 72 66 3f 63 6c 69 65 6e 74 5f 69 64 3d 32 34 33 63 36 33 61 33 2d 32 34 37 64 2d 34 31 63 35 2d 39 64 38 33 2d 37 37 38 38 63 34 33 66 31 63 34 33 26 61 6d 70 3b 73 63 6f 70 65 3d 65 30 33 61 31 33 65 65 2d 39 37 33 30 2d 34 63 61 65 2d 38 35 32 35 2d 34 37 35 35 39 63 38 63 66 31 38 61 25 32 66 2e 64 65 66 61 75 6c 74 2b 6f 70 65 6e 69 64 2b 70 72 6f 66 69 6c 65 2b 6f 66 66 6c 69 6e 65
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>Object moved</title></head><body><h2>Object moved to <a href="https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&amp;scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          29192.168.2.74997140.126.28.134435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:54:46 UTC1891OUTGET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=66f5292e-92f4-4a6e-a158-3d441f77515a&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=RuEWUuglZ9hU-2PCcEiSXcoZRLiqyXu1H6jw_a_DmPY&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d284-fa46-79ad-9b7e-1a34db938360&state=eyJpZCI6IjAxOTVkMjg0LWZhNDYtNzhjMC04MTY4LTUwZmIwYzk0YTIzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22 [TRUNCATED]
                                                                                                                                                                                                                                                                          Host: login.microsoftonline.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://oauth.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
                                                                                                                                                                                                                                                                          2025-03-26 12:54:46 UTC2723INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          Location: https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline_access&redirect_uri=https%3a%2f%2foauth.officeapps.live.com%2foa%2fOAuth.html&response_type=code&state=eyJpZCI6IjAxOTVkMjg0LWZhNDYtNzhjMC04MTY4LTUwZmIwYzk0YTIzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&response_mode=fragment&nonce=0195d284-fa46-79ad-9b7e-1a34db938360&prompt=none&login_hint=urn%3aspo%3aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&code_challenge=6BCv51mjZr9wIGsFCuSCNZJ89BdlBI4XN5wZgIReCh0&code_challenge_method=S256&x-client-SKU=msal.js.browser&x-client-Ver=4.7.0&uaid=66f5292e92f44a6ea1583d441f77515a&msproxy=1&issuer=mso&tenant=consumers&ui_locales=en-US&client_info=1&epct=PAQABDgEAAABVrSpeuWamRam2jAF1XRQESx9V3zgAT6PT109jRsE_KWDHEFp0N9IlWpM1ZhFZ9POhx-0R1_OYP59TWlh_Mx_gpqG1ky_t3zGxzRcaqZ6fh3RA8-58JRgBbUcoOw3bju_bptPetzj3z_TEfR-nMGgR97UIMLbbNfNlScKIRAm-IDZ8eeSvoRFglD1-dgnoPV5S50DnfCeuo [TRUNCATED]
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                          x-ms-request-id: 5ace20b1-e99d-4ac2-8e93-3d51f4550102
                                                                                                                                                                                                                                                                          x-ms-ests-server: 2.1.20329.5 - NCUS ProdSlices
                                                                                                                                                                                                                                                                          report-to: {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+chi"}]}
                                                                                                                                                                                                                                                                          nel: {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          x-ms-clitelem: 1,0,0,,
                                                                                                                                                                                                                                                                          x-ms-srs: 1.P
                                                                                                                                                                                                                                                                          Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Content-Security-Policy-Report-Only: object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-3wjR76DfIL1FyMXUyZ-8zQ' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
                                                                                                                                                                                                                                                                          X-XSS-Protection: 0
                                                                                                                                                                                                                                                                          Set-Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; expires=Fri, 25-Apr-2025 12:54:46 GMT; path=/; secure; HttpOnly; SameSite=None
                                                                                                                                                                                                                                                                          Set-Cookie: x-ms-gateway-slice=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:54:46 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 1350
                                                                                                                                                                                                                                                                          2025-03-26 12:54:46 UTC1350INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6c 6f 67 69 6e 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 61 75 74 68 32 30 5f 61 75 74 68 6f 72 69 7a 65 2e 73 72 66 3f 63 6c 69 65 6e 74 5f 69 64 3d 32 34 33 63 36 33 61 33 2d 32 34 37 64 2d 34 31 63 35 2d 39 64 38 33 2d 37 37 38 38 63 34 33 66 31 63 34 33 26 61 6d 70 3b 73 63 6f 70 65 3d 65 30 33 61 31 33 65 65 2d 39 37 33 30 2d 34 63 61 65 2d 38 35 32 35 2d 34 37 35 35 39 63 38 63 66 31 38 61 25 32 66 2e 64 65 66 61 75 6c 74 2b 6f 70 65 6e 69 64 2b 70 72 6f 66 69 6c 65 2b 6f 66 66 6c 69 6e 65
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>Object moved</title></head><body><h2>Object moved to <a href="https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&amp;scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          30192.168.2.74998840.126.28.134435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC1891OUTGET /consumers/oauth2/v2.0/authorize?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2F.default%20openid%20profile%20offline_access&redirect_uri=https%3A%2F%2Foauth.officeapps.live.com%2Foa%2FOAuth.html&client-request-id=748b13bf-01af-4b40-869f-ca76e4538997&response_mode=fragment&response_type=code&x-client-SKU=msal.js.browser&x-client-VER=4.7.0&x-app-name=OfficeOnline&x-app-ver=PRODUCTION.100:%2020250320.5%20V3&client_info=1&code_challenge=0rq8G6LyusZy84tamqJKJhXix1wH0byR4VAhvgqeXts&code_challenge_method=S256&prompt=none&domain_hint=9188040d-6c67-4c5b-b112-36a304b66dad&login_hint=urn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&X-AnchorMailbox=UPN%3Aurn%3Aspo%3Aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&nonce=0195d285-3599-730b-9ed3-8aca50e73466&state=eyJpZCI6IjAxOTVkMjg1LTM1OTgtN2IxYi04MGYzLWNkYmJiOWFiZWYzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&claims=%7B%22access_token%22%3A%7B%22xms_cc%22 [TRUNCATED]
                                                                                                                                                                                                                                                                          Host: login.microsoftonline.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          Upgrade-Insecure-Requests: 1
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: navigate
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: iframe
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://oauth.officeapps.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC2723INHTTP/1.1 302 Found
                                                                                                                                                                                                                                                                          Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                          Pragma: no-cache
                                                                                                                                                                                                                                                                          Content-Type: text/html; charset=utf-8
                                                                                                                                                                                                                                                                          Expires: -1
                                                                                                                                                                                                                                                                          Location: https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline_access&redirect_uri=https%3a%2f%2foauth.officeapps.live.com%2foa%2fOAuth.html&response_type=code&state=eyJpZCI6IjAxOTVkMjg1LTM1OTgtN2IxYi04MGYzLWNkYmJiOWFiZWYzNiIsIm1ldGEiOnsiaW50ZXJhY3Rpb25UeXBlIjoic2lsZW50In19&response_mode=fragment&nonce=0195d285-3599-730b-9ed3-8aca50e73466&prompt=none&login_hint=urn%3aspo%3aanon%23d279e5ccb2f3f49cf1d9f13c94865ca3b0d1f5049ed4a633da1839afbb6b478a&code_challenge=IQkj4M5X-zzZSIbRUEQNJC0JLiQCo3NjtVnq_5zMO2c&code_challenge_method=S256&x-client-SKU=msal.js.browser&x-client-Ver=4.7.0&uaid=748b13bf01af4b40869fca76e4538997&msproxy=1&issuer=mso&tenant=consumers&ui_locales=en-US&client_info=1&epct=PAQABDgEAAABVrSpeuWamRam2jAF1XRQENZf2lq0AfXXxDIwkG5baecnKMJ6tL0czMUYDSNs5GyY2ayELIHHeRBpNA-hb-aSlFU3nbL4NEZdhGG5HsTa1dgGjFFE1UzgfAD4xkXh7vUKtPecwfocqSpfXGsCe6hlfHJshN7hPFDo7B8wnLy14WOvpChbNXBLok71eG2nUiaFQ5UnXo-CSd [TRUNCATED]
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000; includeSubDomains
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                          x-ms-request-id: 6bdf1a25-451f-40c8-a19e-de901c9a9402
                                                                                                                                                                                                                                                                          x-ms-ests-server: 2.1.20329.5 - NCUS ProdSlices
                                                                                                                                                                                                                                                                          report-to: {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+chi"}]}
                                                                                                                                                                                                                                                                          nel: {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
                                                                                                                                                                                                                                                                          x-ms-clitelem: 1,0,0,,
                                                                                                                                                                                                                                                                          x-ms-srs: 1.P
                                                                                                                                                                                                                                                                          Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                          Content-Security-Policy-Report-Only: object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-N6ye59KA-U1CNHWBuFcElA' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
                                                                                                                                                                                                                                                                          X-XSS-Protection: 0
                                                                                                                                                                                                                                                                          Set-Cookie: fpc=Al1JH8b0X3tIkUFtD4xQW3c; expires=Fri, 25-Apr-2025 12:55:01 GMT; path=/; secure; HttpOnly; SameSite=None
                                                                                                                                                                                                                                                                          Set-Cookie: x-ms-gateway-slice=estsfd; path=/; secure; samesite=none; httponly
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:00 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 1350
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC1350INData Raw: 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 3c 74 69 74 6c 65 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 3c 2f 74 69 74 6c 65 3e 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0d 0a 3c 68 32 3e 4f 62 6a 65 63 74 20 6d 6f 76 65 64 20 74 6f 20 3c 61 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 6c 6f 67 69 6e 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 61 75 74 68 32 30 5f 61 75 74 68 6f 72 69 7a 65 2e 73 72 66 3f 63 6c 69 65 6e 74 5f 69 64 3d 32 34 33 63 36 33 61 33 2d 32 34 37 64 2d 34 31 63 35 2d 39 64 38 33 2d 37 37 38 38 63 34 33 66 31 63 34 33 26 61 6d 70 3b 73 63 6f 70 65 3d 65 30 33 61 31 33 65 65 2d 39 37 33 30 2d 34 63 61 65 2d 38 35 32 35 2d 34 37 35 35 39 63 38 63 66 31 38 61 25 32 66 2e 64 65 66 61 75 6c 74 2b 6f 70 65 6e 69 64 2b 70 72 6f 66 69 6c 65 2b 6f 66 66 6c 69 6e 65
                                                                                                                                                                                                                                                                          Data Ascii: <html><head><title>Object moved</title></head><body><h2>Object moved to <a href="https://login.live.com/oauth20_authorize.srf?client_id=243c63a3-247d-41c5-9d83-7788c43f1c43&amp;scope=e03a13ee-9730-4cae-8525-47559c8cf18a%2f.default+openid+profile+offline


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          31192.168.2.74999223.57.90.1124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC494OUTOPTIONS /api/report?FrontEnd=AFD&DestinationEndpoint=Edge-Prod-BL2r8b&DC=&FileSource= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onenoteonline.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Access-Control-Request-Method: POST
                                                                                                                                                                                                                                                                          Access-Control-Request-Headers: content-type
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC319INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Content-Type: text/html
                                                                                                                                                                                                                                                                          Content-Length: 7
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:01 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Headers: content-type
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC7INData Raw: 4f 50 54 49 4f 4e 53
                                                                                                                                                                                                                                                                          Data Ascii: OPTIONS


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          32192.168.2.74999323.44.136.1544435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC606OUTOPTIONS /api/report?FrontEnd=AkamaiCDNWorldWide&DestinationEndpoint=PISCATAWAY&ASN=20940&Country=US&Region=NJ&RequestIdentifier=0.90872c17.1742993656.6021300&TotalRTCDNTime=89&CompressionType=gzip&FileSize=5978 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: m365cdn.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Origin: https://res-1.cdn.office.net
                                                                                                                                                                                                                                                                          Access-Control-Request-Method: POST
                                                                                                                                                                                                                                                                          Access-Control-Request-Headers: content-type
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC319INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Content-Type: text/html
                                                                                                                                                                                                                                                                          Content-Length: 7
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:01 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Headers: content-type
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC7INData Raw: 4f 50 54 49 4f 4e 53
                                                                                                                                                                                                                                                                          Data Ascii: OPTIONS


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          33192.168.2.74999123.44.201.1344435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:01 UTC505OUTOPTIONS /api/report?FrontEnd=AFD&DestinationEndpoint=Edge-Prod-EWR31r5d&DC=PUS10&FileSource= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onenoteonline.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Origin: https://usc-onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          Access-Control-Request-Method: POST
                                                                                                                                                                                                                                                                          Access-Control-Request-Headers: content-type
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC319INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Content-Type: text/html
                                                                                                                                                                                                                                                                          Content-Length: 7
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:01 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Headers: content-type
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC7INData Raw: 4f 50 54 49 4f 4e 53
                                                                                                                                                                                                                                                                          Data Ascii: OPTIONS


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          34192.168.2.74999423.44.136.1544435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC582OUTPOST /api/report?FrontEnd=AkamaiCDNWorldWide&DestinationEndpoint=PISCATAWAY&ASN=20940&Country=US&Region=NJ&RequestIdentifier=0.90872c17.1742993656.6021300&TotalRTCDNTime=89&CompressionType=gzip&FileSize=5978 HTTP/1.1
                                                                                                                                                                                                                                                                          Host: m365cdn.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 1487
                                                                                                                                                                                                                                                                          Content-Type: application/reports+json
                                                                                                                                                                                                                                                                          Origin: https://res-1.cdn.office.net
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC1487OUTData Raw: 5b 7b 22 61 67 65 22 3a 35 31 35 30 39 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 34 33 35 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 68 74 74 70 73 3a 2f 2f 6f 6e 65 6e 6f 74 65 2e 6f 66 66 69 63 65 61 70 70 73 2e 6c 69 76 65 2e 63 6f 6d 2f 22 2c 22 73 61 6d 70 6c 69 6e 67 5f 66 72 61 63 74 69 6f 6e 22 3a 30 2e 30 31 2c 22 73 65 72 76 65 72 5f 69 70 22 3a 22 32 33 2e 34 34 2e 31 33 36 2e 31 37 39 22 2c 22 73 74 61 74 75 73 5f 63 6f 64 65 22 3a 32 30 30 2c 22 74 79 70 65 22 3a 22 6f 6b 22 7d 2c 22 74 79 70 65 22 3a 22 6e 65 74 77 6f 72 6b 2d 65 72 72 6f 72
                                                                                                                                                                                                                                                                          Data Ascii: [{"age":51509,"body":{"elapsed_time":435,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"https://onenote.officeapps.live.com/","sampling_fraction":0.01,"server_ip":"23.44.136.179","status_code":200,"type":"ok"},"type":"network-error
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC399INHTTP/1.1 429 Too Many Requests
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000
                                                                                                                                                                                                                                                                          Request-Context: appId=cid-v1:27277200-e19a-465d-951d-bb90a149c996
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:02 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          35192.168.2.74999523.44.201.1344435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC481OUTPOST /api/report?FrontEnd=AFD&DestinationEndpoint=Edge-Prod-EWR31r5d&DC=PUS10&FileSource= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onenoteonline.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 3002
                                                                                                                                                                                                                                                                          Content-Type: application/reports+json
                                                                                                                                                                                                                                                                          Origin: https://usc-onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC3002OUTData Raw: 5b 7b 22 61 67 65 22 3a 35 37 30 33 39 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 31 33 38 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 22 2c 22 73 61 6d 70 6c 69 6e 67 5f 66 72 61 63 74 69 6f 6e 22 3a 31 2e 30 2c 22 73 65 72 76 65 72 5f 69 70 22 3a 22 35 32 2e 31 30 38 2e 39 2e 31 32 22 2c 22 73 74 61 74 75 73 5f 63 6f 64 65 22 3a 35 30 30 2c 22 74 79 70 65 22 3a 22 68 74 74 70 2e 65 72 72 6f 72 22 7d 2c 22 74 79 70 65 22 3a 22 6e 65 74 77 6f 72 6b 2d 65 72 72 6f 72 22 2c 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 2f 2f 75 73 63 2d 6f 6e 65 6e 6f 74 65 2e 6f 66
                                                                                                                                                                                                                                                                          Data Ascii: [{"age":57039,"body":{"elapsed_time":138,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"","sampling_fraction":1.0,"server_ip":"52.108.9.12","status_code":500,"type":"http.error"},"type":"network-error","url":"https://usc-onenote.of
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC399INHTTP/1.1 429 Too Many Requests
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000
                                                                                                                                                                                                                                                                          Request-Context: appId=cid-v1:41ca65cb-08a6-4a29-94ab-18b081ee8b8b
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:02 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          36192.168.2.74999623.57.90.1124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC470OUTPOST /api/report?FrontEnd=AFD&DestinationEndpoint=Edge-Prod-BL2r8b&DC=&FileSource= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: onenoteonline.nel.measure.office.net
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 2983
                                                                                                                                                                                                                                                                          Content-Type: application/reports+json
                                                                                                                                                                                                                                                                          Origin: https://onenote.officeapps.live.com
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC2983OUTData Raw: 5b 7b 22 61 67 65 22 3a 35 30 32 39 37 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 35 32 39 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 68 74 74 70 73 3a 2f 2f 6f 6e 65 6e 6f 74 65 2e 6f 66 66 69 63 65 61 70 70 73 2e 6c 69 76 65 2e 63 6f 6d 2f 6f 2f 6f 6e 65 6e 6f 74 65 66 72 61 6d 65 2e 61 73 70 78 3f 75 69 3d 65 6e 2d 55 53 26 72 73 3d 65 6e 2d 55 53 26 77 6f 70 69 73 72 63 3d 68 74 74 70 73 25 33 41 25 32 46 25 32 46 6d 79 2e 6d 69 63 72 6f 73 6f 66 74 70 65 72 73 6f 6e 61 6c 63 6f 6e 74 65 6e 74 2e 63 6f 6d 25 32 46 70 65 72 73 6f 6e 61 6c 25 32 46 61 31
                                                                                                                                                                                                                                                                          Data Ascii: [{"age":50297,"body":{"elapsed_time":529,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"https://onenote.officeapps.live.com/o/onenoteframe.aspx?ui=en-US&rs=en-US&wopisrc=https%3A%2F%2Fmy.microsoftpersonalcontent.com%2Fpersonal%2Fa1
                                                                                                                                                                                                                                                                          2025-03-26 12:55:02 UTC399INHTTP/1.1 429 Too Many Requests
                                                                                                                                                                                                                                                                          Content-Length: 0
                                                                                                                                                                                                                                                                          x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000
                                                                                                                                                                                                                                                                          Request-Context: appId=cid-v1:c242839f-7b23-4fcd-8b70-f19e1d322576
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:02 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Access-Control-Allow-Credentials: false
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: *
                                                                                                                                                                                                                                                                          Access-Control-Allow-Methods: GET, OPTIONS, POST
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: *


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          37192.168.2.74999952.108.8.124435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:03 UTC920OUTPOST /suite/RemoteUls.ashx?usid=6e978169-98b0-08db-1683-11f39403677b&officeserverversion= HTTP/1.1
                                                                                                                                                                                                                                                                          Host: common.online.office.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          Content-Length: 704
                                                                                                                                                                                                                                                                          sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                                                                                                                                                                                                                                                                          Content-Type: text/plain;charset=UTF-8
                                                                                                                                                                                                                                                                          sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Origin: https://onedrive.live.com
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Referer: https://onedrive.live.com/
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          Cookie: PUS13-ARRAffinity=e3973c517cd78e8e542b264086f3b2c4b5a7ab94cef1d9a8c532c9ece01a0e1f; PUS8-ARRAffinity=1746292d8d8c76796a3568d9374b489eff5aa0bc7fbdc8d5bac6eef49b899742
                                                                                                                                                                                                                                                                          2025-03-26 12:55:03 UTC704OUTData Raw: 7b 22 54 22 3a 31 37 34 32 39 39 33 36 37 31 38 32 30 2c 22 4c 22 3a 5b 7b 22 47 22 3a 35 30 37 33 32 36 38 36 31 2c 22 54 22 3a 37 34 38 37 2c 22 4d 22 3a 22 46 65 74 63 68 69 6e 67 20 6d 61 6e 69 66 65 73 74 20 66 72 6f 6d 20 43 44 4e 20 77 61 73 20 73 75 63 63 65 73 73 66 75 6c 20 66 6f 72 20 4f 6e 65 4e 6f 74 65 20 69 6e 20 4d 53 49 54 20 77 69 74 68 20 65 78 70 6f 73 75 72 65 20 31 30 20 77 69 74 68 20 72 65 6d 61 69 6e 69 6e 67 20 72 65 74 72 79 20 63 6f 75 6e 74 20 31 2e 22 2c 22 43 22 3a 33 30 32 37 2c 22 44 22 3a 35 30 7d 2c 7b 22 47 22 3a 35 30 37 33 32 36 38 36 30 2c 22 54 22 3a 37 34 38 38 2c 22 4d 22 3a 22 50 61 72 73 69 6e 67 20 6d 61 6e 69 66 65 73 74 20 66 72 6f 6d 20 43 44 4e 20 77 61 73 20 73 75 63 63 65 73 73 66 75 6c 20 66 6f 72 20 4f
                                                                                                                                                                                                                                                                          Data Ascii: {"T":1742993671820,"L":[{"G":507326861,"T":7487,"M":"Fetching manifest from CDN was successful for OneNote in MSIT with exposure 10 with remaining retry count 1.","C":3027,"D":50},{"G":507326860,"T":7488,"M":"Parsing manifest from CDN was successful for O
                                                                                                                                                                                                                                                                          2025-03-26 12:55:03 UTC4644INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          Content-Type: text/plain
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          Set-Cookie:
                                                                                                                                                                                                                                                                          Set-Cookie: PUS4-ARRAffinity=77fbfb420bc79df9aba6515ec56552af2299ef4bd3df60576391e6f50e3fb5d4;Path=/;Domain=common.online.office.com; samesite=none; secure; partitioned; httponly
                                                                                                                                                                                                                                                                          X-CorrelationId: dda9492c-8c85-4ed3-ae61-8a937861196a
                                                                                                                                                                                                                                                                          X-UserSessionId: 6e978169-98b0-08db-1683-11f39403677b
                                                                                                                                                                                                                                                                          Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                          X-OfficeFE: BL6PEPF000222C0
                                                                                                                                                                                                                                                                          X-OfficeVersion: 16.0.18710.41009
                                                                                                                                                                                                                                                                          X-OfficeCluster: PUS4
                                                                                                                                                                                                                                                                          X-Partitioning-Enabled: true
                                                                                                                                                                                                                                                                          Access-Control-Allow-Origin: https://onedrive.live.com
                                                                                                                                                                                                                                                                          Access-Control-Expose-Headers: X-EndSession, X-CorrelationId, X-OfficeFE, X-NewKey, X-bULS-SuppressionETag, X-bULS-SuppressedTags
                                                                                                                                                                                                                                                                          Cross-Origin-Resource-Policy: cross-origin
                                                                                                                                                                                                                                                                          X-bULS-SuppressionETag: 3446F01DD18F16CB80609621A6A1DCA89020D1DE
                                                                                                                                                                                                                                                                          X-bULS-SuppressedTags: 378069,1671813,2208151,2209344,3249545,3290144,4273285,4285850,4298965,4298968,4298969,4751696,5018275,5306497,5904476,6375195,6572226,6948167,7463498,8194017,8458642,16799123,17044289,17085210,17085216,17162522,17358857,17387682,19214611,19243470,19707039,19743902,19939648,20486158,21627712,21631370,22401293,22410500,22558617,22558879,22598977,22680210,22680213,22680214,22836558,22922182,22946650,23385666,23881934,23909858,24133723,24401375,24462656,24515087,25514973,25531993,33592839,34388130,35682372,36472266,36546380,36546381,36546382,36569418,36708451,36773964,36791688,36811158,36811159,36963655,37259477,37288035,37307491,37754499,37856259,37876293,37876294,37889309,38293640,38535900,38543496,38580697,38637954,38922202,39076766,39076767,39105358,39408129,39613840,39966341,40437001,40777251,40935455,40957978,40957979,41003225,41207258,41473876,41502555,41711299,41952657,41964821,41964885,42272991,42496725,42513088,42815875,42857251,50406866,50431969,50622685,51451613,51504083,516670 [TRUNCATED]
                                                                                                                                                                                                                                                                          X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                          X-Download-Options: noopen
                                                                                                                                                                                                                                                                          Content-Disposition: attachment
                                                                                                                                                                                                                                                                          X-OFFICEFD: BL6PEPF00021C9F
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          X-MSEdge-Flight: 2i49=afd_wacinfra4,2i4a=afd_wacinfra5,5e4w=afd_excelslicetest_control
                                                                                                                                                                                                                                                                          X-MSEdge-Features: afd_waccluster,afd_wacinfra4,afd_wacinfra5,afd_excelslicetest_control
                                                                                                                                                                                                                                                                          X-MSEdge-Ref: Ref A: CD7223EBD92F45529AD8D4D242F79C6D Ref B: EWR311000106039 Ref C: 2025-03-26T12:55:03Z
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:03 GMT
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Content-Length: 0


                                                                                                                                                                                                                                                                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                          38192.168.2.75001813.107.246.384435156C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                          2025-03-26 12:55:16 UTC406OUTGET /officeaddins/RemoteUls.ashx HTTP/1.1
                                                                                                                                                                                                                                                                          Host: www.onenote.com
                                                                                                                                                                                                                                                                          Connection: keep-alive
                                                                                                                                                                                                                                                                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                          Accept: */*
                                                                                                                                                                                                                                                                          Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                          Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                          Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                          Sec-Fetch-Storage-Access: active
                                                                                                                                                                                                                                                                          Accept-Encoding: gzip, deflate, br, zstd
                                                                                                                                                                                                                                                                          Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                          2025-03-26 12:55:16 UTC1172INHTTP/1.1 500
                                                                                                                                                                                                                                                                          Date: Wed, 26 Mar 2025 12:55:16 GMT
                                                                                                                                                                                                                                                                          Content-Type: text/html
                                                                                                                                                                                                                                                                          Content-Length: 1208
                                                                                                                                                                                                                                                                          Connection: close
                                                                                                                                                                                                                                                                          Cache-Control: private
                                                                                                                                                                                                                                                                          X-RoutingOfficeCluster: eus-azsc-001.reverseproxy.onenote.com
                                                                                                                                                                                                                                                                          X-RoutingOfficeFE: ReverseProxyFrontEnd_IN_11
                                                                                                                                                                                                                                                                          X-RoutingOfficeVersion: 16.0.18723.40453
                                                                                                                                                                                                                                                                          X-RoutingSessionId: 10332ad6-f876-4f03-b7fd-efe4e24bd0ae
                                                                                                                                                                                                                                                                          X-RoutingCorrelationId: d54d3267-031f-4e4e-a310-68e44658f046
                                                                                                                                                                                                                                                                          P3P: CP="CAO DSP COR ADMa DEV CONi TELi CUR PSA PSD TAI IVDi OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR"
                                                                                                                                                                                                                                                                          x-correlationid: d54d3267-031f-4e4e-a310-68e44658f046
                                                                                                                                                                                                                                                                          x-usersessionid: 10332ad6-f876-4f03-b7fd-efe4e24bd0ae
                                                                                                                                                                                                                                                                          x-officefe: AgavesFrontEnd_IN_4
                                                                                                                                                                                                                                                                          x-officeversion: 16.0.18725.40452
                                                                                                                                                                                                                                                                          x-officecluster: eus-000.appsforoffice.onenote.com
                                                                                                                                                                                                                                                                          x-partitioning-enabled: true
                                                                                                                                                                                                                                                                          strict-transport-security: max-age=31536000; includeSubDomains; preload
                                                                                                                                                                                                                                                                          x-buls-suppressionetag: N/A
                                                                                                                                                                                                                                                                          x-buls-suppressedtags:
                                                                                                                                                                                                                                                                          x-invalidulsjson:
                                                                                                                                                                                                                                                                          x-content-type-options: nosniff
                                                                                                                                                                                                                                                                          x-download-options: noopen
                                                                                                                                                                                                                                                                          content-disposition: attachment
                                                                                                                                                                                                                                                                          x-content-type-options: nosniff
                                                                                                                                                                                                                                                                          x-azure-ref: 20250326T125516Z-17cccd5449bvj9xqhC1EWRh59s0000000grg00000000azpw
                                                                                                                                                                                                                                                                          X-Cache: CONFIG_NOCACHE
                                                                                                                                                                                                                                                                          2025-03-26 12:55:16 UTC1208INData Raw: 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 57 33 43 2f 2f 44 54 44 20 58 48 54 4d 4c 20 31 2e 30 20 53 74 72 69 63 74 2f 2f 45 4e 22 20 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 54 52 2f 78 68 74 6d 6c 31 2f 44 54 44 2f 78 68 74 6d 6c 31 2d 73 74 72 69 63 74 2e 64 74 64 22 3e 0d 0a 3c 68 74 6d 6c 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 31 39 39 39 2f 78 68 74 6d 6c 22 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 43 6f 6e 74 65 6e 74 2d 54 79 70 65 22 20 63 6f 6e 74 65 6e 74 3d 22 74 65 78 74 2f 68 74 6d 6c 3b 20 63 68 61 72 73 65 74 3d 69 73 6f 2d 38 38 35 39 2d 31 22 2f 3e 0d 0a 3c 74 69 74 6c 65 3e 35 30 30 20 2d 20 49 6e 74
                                                                                                                                                                                                                                                                          Data Ascii: <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"><html xmlns="http://www.w3.org/1999/xhtml"><head><meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"/><title>500 - Int


                                                                                                                                                                                                                                                                          020406080s020406080100

                                                                                                                                                                                                                                                                          Click to jump to process

                                                                                                                                                                                                                                                                          020406080s0.0050100150MB

                                                                                                                                                                                                                                                                          Click to jump to process

                                                                                                                                                                                                                                                                          Target ID:0
                                                                                                                                                                                                                                                                          Start time:08:53:51
                                                                                                                                                                                                                                                                          Start date:26/03/2025
                                                                                                                                                                                                                                                                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          Wow64 process (32bit):false
                                                                                                                                                                                                                                                                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
                                                                                                                                                                                                                                                                          Imagebase:0x7ff778810000
                                                                                                                                                                                                                                                                          File size:3'388'000 bytes
                                                                                                                                                                                                                                                                          MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                                                                                                                                                                                                                                                                          Has elevated privileges:true
                                                                                                                                                                                                                                                                          Has administrator privileges:true
                                                                                                                                                                                                                                                                          Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Has exited:false

                                                                                                                                                                                                                                                                          Target ID:1
                                                                                                                                                                                                                                                                          Start time:08:53:52
                                                                                                                                                                                                                                                                          Start date:26/03/2025
                                                                                                                                                                                                                                                                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          Wow64 process (32bit):false
                                                                                                                                                                                                                                                                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2192,i,8304551701378974237,13015741462274710447,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2204 /prefetch:3
                                                                                                                                                                                                                                                                          Imagebase:0x7ff778810000
                                                                                                                                                                                                                                                                          File size:3'388'000 bytes
                                                                                                                                                                                                                                                                          MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                                                                                                                                                                                                                                                                          Has elevated privileges:true
                                                                                                                                                                                                                                                                          Has administrator privileges:true
                                                                                                                                                                                                                                                                          Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Has exited:false

                                                                                                                                                                                                                                                                          Target ID:5
                                                                                                                                                                                                                                                                          Start time:08:53:58
                                                                                                                                                                                                                                                                          Start date:26/03/2025
                                                                                                                                                                                                                                                                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                          Wow64 process (32bit):false
                                                                                                                                                                                                                                                                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://onedrive.live.com/:o:/g/personal/A19E0D27A159B01D/EjrRUOhvrVRPjf7frmHTxHoBOP8hIZH3Py3RVZphI8BRhg?resid=A19E0D27A159B01D!se850d13aad6f4f548dfedfae61d3c47a&ithint=onenote&e=VRLCee&migratedtospo=true&redeem=aHR0cHM6Ly8xZHJ2Lm1zL28vYy9hMTllMGQyN2ExNTliMDFkL0VqclJVT2h2clZSUGpmN2ZybUhUeEhvQk9QOGhJWkgzUHkzUlZacGhJOEJSaGc_ZT1WUkxDZWU"
                                                                                                                                                                                                                                                                          Imagebase:0x7ff778810000
                                                                                                                                                                                                                                                                          File size:3'388'000 bytes
                                                                                                                                                                                                                                                                          MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                                                                                                                                                                                                                                                                          Has elevated privileges:true
                                                                                                                                                                                                                                                                          Has administrator privileges:true
                                                                                                                                                                                                                                                                          Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                          Reputation:low
                                                                                                                                                                                                                                                                          Has exited:true
                                                                                                                                                                                                                                                                          There is hidden Windows Behavior. Click on Show Windows Behavior to show it.
                                                                                                                                                                                                                                                                          There is hidden Windows Behavior. Click on Show Windows Behavior to show it.

                                                                                                                                                                                                                                                                          No disassembly