Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw

Overview

General Information

Sample URL:https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a
Analysis ID:868926

Detection

Score:48
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Snort IDS alert for network traffic
HTML page contains hidden URLs or javascript code
Found iframes
Suspicious form URL found
HTML page is missing a favicon
Form action URLs do not match main URL

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 6584 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw MD5: 7BC7B4AEDC055BB02BCB52710132E9E1)
    • chrome.exe (PID: 6892 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2044 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8 MD5: 7BC7B4AEDC055BB02BCB52710132E9E1)
    • chrome.exe (PID: 2768 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6548 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8 MD5: 7BC7B4AEDC055BB02BCB52710132E9E1)
  • cleanup
No yara matches
No Sigma rule has matched
Timestamp:192.168.2.31.1.1.156166532027757 05/18/23-15:15:01.139059
SID:2027757
Source Port:56166
Destination Port:53
Protocol:UDP
Classtype:Potentially Bad Traffic
Timestamp:192.168.2.31.1.1.152036532027757 05/18/23-15:14:27.401152
SID:2027757
Source Port:52036
Destination Port:53
Protocol:UDP
Classtype:Potentially Bad Traffic

Click to jump to signature section

Show All Signature Results
Source: https://tirtalawoffice.com/HTTP Parser: Base64 decoded: https://tirtalawoffice.com:443
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.googletagmanager.com/ns.html?id=GTM-NLNCRSN
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4
Source: https://tirtalawoffice.com/HTTP Parser: Iframe src: https://c.sharethis.mgr.consensu.org/portal-v2.html
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://tirtalawoffice.com/HTTP Parser: Form action: /contact/fcf-assets/fcf.process.php
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: about:blankHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4HTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://c.sharethis.mgr.consensu.org/portal-v2.htmlHTTP Parser: No favicon
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: https://tirtalawoffice.com/HTTP Parser: Form action: //translate.googleapis.com/translate_voting?client=te tirtalawoffice googleapis
Source: C:\Program Files\Google\Chrome\Application\chrome.exeDirectory created: C:\Program Files\Google\GoogleUpdater
Source: chrome.exeMemory has grown: Private usage: 6MB later: 32MB

Networking

barindex
Source: TrafficSnort IDS: 2027757 ET DNS Query for .to TLD 192.168.2.3:52036 -> 1.1.1.1:53
Source: TrafficSnort IDS: 2027757 ET DNS Query for .to TLD 192.168.2.3:56166 -> 1.1.1.1:53
Source: unknownDNS traffic detected: queries for: clients2.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49986
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49864
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49985
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49984
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49983
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49982
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49981
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49980
Source: unknownNetwork traffic detected: HTTP traffic on port 49932 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49898 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49875 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49990 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49859
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49858
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49979
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49978
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49977
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49976
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49975
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49974
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49973
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49972
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49971
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49970
Source: unknownNetwork traffic detected: HTTP traffic on port 49967 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50004 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49909 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49943 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49969
Source: unknownNetwork traffic detected: HTTP traffic on port 49978 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49968
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49967
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49966
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49965
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49843
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49964
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49963
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49962
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49961
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49960
Source: unknownNetwork traffic detected: HTTP traffic on port 50015 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50040 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49966 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49989 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49933 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50028 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49805 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49838
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49959
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49837
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49958
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49836
Source: unknownNetwork traffic detected: HTTP traffic on port 49921 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49957
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49956
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49834
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49955
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49833
Source: unknownNetwork traffic detected: HTTP traffic on port 49887 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49954
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49832
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49953
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49831
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49952
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49951
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49864 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49950
Source: unknownNetwork traffic detected: HTTP traffic on port 49944 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49796 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49955 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49949
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49948
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49826
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49947
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49946
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49945
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49944
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49943
Source: unknownNetwork traffic detected: HTTP traffic on port 49922 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49945 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 50017 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49968 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50049 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50026 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49807 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49980 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49779
Source: unknownNetwork traffic detected: HTTP traffic on port 49885 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49899
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49898
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49897
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49896
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49895
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 49862 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49894
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49893
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49892
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49770
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49891
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49890
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49897 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49911 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49957 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49991 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49889
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49888
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49887
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49885
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49884
Source: unknownNetwork traffic detected: HTTP traffic on port 50038 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49883
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49882
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49881
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49880
Source: unknownNetwork traffic detected: HTTP traffic on port 49896 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49770 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50050 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49956 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50005 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49979 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49879
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49878
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49999
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49877
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49998
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49876
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49997
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49875
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49996
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49874
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49995
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49873
Source: unknownNetwork traffic detected: HTTP traffic on port 49923 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49994
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49872
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49993
Source: unknownNetwork traffic detected: HTTP traffic on port 50016 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49871
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49992
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49870
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49991
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49990
Source: unknownNetwork traffic detected: HTTP traffic on port 49874 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49934 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50027 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49869
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49868
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49989
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49867
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49988
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49866
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49987
Source: unknownNetwork traffic detected: HTTP traffic on port 50013 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50036 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49826 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49906 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49900 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49837 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49975 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49929 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49964 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49798 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49861 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49999 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49918 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49873 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49930 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50001 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49986 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49963 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50007
Source: unknownNetwork traffic detected: HTTP traffic on port 50037 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49798
Source: unknownNetwork traffic detected: HTTP traffic on port 50012 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50009
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49796
Source: unknownNetwork traffic detected: HTTP traffic on port 49952 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50001
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50000
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50003
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50002
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50005
Source: unknownNetwork traffic detected: HTTP traffic on port 49895 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50004
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50048 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49884 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49941 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49997 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49779 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49859 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49871 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49894 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50003 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49965 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49942 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49977 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49919 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49954 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50014 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49988 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50046 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49882 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49838 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49976 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49953 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50047 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49908 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50024 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49883 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49998 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49931 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50002 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49987 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49920 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49926 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49949 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50054
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49961 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49984 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50022 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50045 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49881 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49950 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49996 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50010 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49812 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49858 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49893 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49777 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49869 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50009 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50034 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49972 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49834 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49892 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49904 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49927 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49870 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49983 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49938 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50023 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50018
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50017
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50019
Source: unknownNetwork traffic detected: HTTP traffic on port 49813 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49951 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49974 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50032 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50010
Source: unknownNetwork traffic detected: HTTP traffic on port 49836 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49916 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50012
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50011
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50014
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50013
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50016
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50015
Source: unknownNetwork traffic detected: HTTP traffic on port 49939 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49868 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50029
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50028
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50021
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50020
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50023
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50022
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50024
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50027
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49879 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50026
Source: unknownNetwork traffic detected: HTTP traffic on port 49985 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50000 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49802 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50021 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49905 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49995 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50011 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50032
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50031
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50034
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50033
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50036
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50038
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50037
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49940 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50041
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50040
Source: unknownNetwork traffic detected: HTTP traffic on port 49973 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49891 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50033 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50045
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50047
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50046
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50049
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50048
Source: unknownNetwork traffic detected: HTTP traffic on port 49880 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 50050
Source: unknownNetwork traffic detected: HTTP traffic on port 49962 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49890 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49970 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50007 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49878 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49912 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49935 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49958 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49889 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49866 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49820 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49946 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50018 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49763 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49981 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49901 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49924 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49819 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49947 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49831 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50031 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49992 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49969 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49994 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50020 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50054 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49856 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49913 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49808 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 49865 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49942
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49820
Source: unknownNetwork traffic detected: HTTP traffic on port 49842 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49941
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49940
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49833 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49819
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49939
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49938
Source: unknownNetwork traffic detected: HTTP traffic on port 49810 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49937
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49936
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49935
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49813
Source: unknownNetwork traffic detected: HTTP traffic on port 49902 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49934
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49812
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49933
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49932
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49810
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49931
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49930
Source: unknownNetwork traffic detected: HTTP traffic on port 49925 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49971 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49936 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49876 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49960 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49808
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49929
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49807
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49928
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49927
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49805
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49926
Source: unknownNetwork traffic detected: HTTP traffic on port 50029 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49925
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49924
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49802
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49923
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49922
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49921
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 9.9.9.9
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 52.109.8.86
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 52.109.32.24
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 52.109.32.24
Source: unknownTCP traffic detected without corresponding DNS query: 52.109.8.86
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.221.95
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: bluefieldinvestment.orgConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: classification engineClassification label: mal48.win@28/327@29/404
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2044 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2044 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6548 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6548 --field-trial-handle=1772,i,650147632883143422,7808404008129058188,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Program Files\Google\GoogleUpdater
Source: C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXEFile created: C:\Users\user\AppData\Local\Microsoft\Office\16.0\Feedback
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exeDirectory created: C:\Program Files\Google\GoogleUpdater
Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
1
Drive-by Compromise
Windows Management InstrumentationPath Interception1
Process Injection
3
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local SystemExfiltration Over Other Network Medium2
Encrypted Channel
Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Extra Window Memory Injection
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable MediaExfiltration Over Bluetooth2
Non-Application Layer Protocol
Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)1
Obfuscated Files or Information
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared DriveAutomated Exfiltration3
Application Layer Protocol
Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data
Local AccountsAt (Windows)Logon Script (Mac)Logon Script (Mac)1
Extra Window Memory Injection
NTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput CaptureScheduled Transfer1
Ingress Tool Transfer
SIM Card SwapCarrier Billing Fraud

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw0%VirustotalBrowse
https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://bluefieldinvestment.org/0%Avira URL Cloudsafe
http://bluefieldinvestment.org/0%VirustotalBrowse
https://c.sharethis.mgr.consensu.org/portal-v2.html0%URL Reputationsafe
https://tirtalawoffice.com/1%VirustotalBrowse
https://c.sharethis.mgr.consensu.org/portal-v2.html0%VirustotalBrowse
NameIPActiveMaliciousAntivirus DetectionReputation
jsdelivr.map.fastly.net
151.101.193.229
truefalse
    unknown
    d2znr2yi078d75.cloudfront.net
    65.9.66.11
    truefalse
      high
      bluefieldinvestment.org
      188.114.97.3
      truefalse
        unknown
        popupsmart.com
        172.67.71.162
        truefalse
          unknown
          accounts.google.com
          142.250.185.77
          truefalse
            high
            beacons-handoff.gcp.gvt2.com
            142.250.180.99
            truefalse
              unknown
              tirtalawoffice.com
              41.216.185.51
              truefalse
                unknown
                region1.analytics.google.com
                216.239.32.36
                truefalse
                  high
                  beacons.gvt2.com
                  142.250.180.67
                  truefalse
                    unknown
                    stats.g.doubleclick.net
                    173.194.76.156
                    truefalse
                      high
                      embed.tawk.to
                      104.22.24.131
                      truefalse
                        high
                        va.tawk.to
                        104.22.25.131
                        truefalse
                          high
                          e2c48.gcp.gvt2.com
                          35.206.35.210
                          truefalse
                            unknown
                            httplogserver-lb.global.unified-prod.sharethis.net
                            3.68.25.145
                            truefalse
                              unknown
                              dlaj66hdiarg7.cloudfront.net
                              13.32.99.58
                              truefalse
                                high
                                code.jquery.com
                                69.16.175.10
                                truefalse
                                  high
                                  www3.l.google.com
                                  142.250.185.110
                                  truefalse
                                    high
                                    d3oiwf0xhhk8m1.cloudfront.net
                                    143.204.98.51
                                    truefalse
                                      high
                                      thirdparty-logserver-lb.global.unified-prod.sharethis.net
                                      52.29.25.33
                                      truefalse
                                        unknown
                                        platform-api.sharethis.com
                                        13.32.99.78
                                        truefalse
                                          high
                                          www.google.co.uk
                                          142.250.185.99
                                          truefalse
                                            unknown
                                            count-server.sharethis.com
                                            13.32.121.95
                                            truefalse
                                              high
                                              www.google.com
                                              216.58.212.132
                                              truefalse
                                                high
                                                clients.l.google.com
                                                142.250.186.78
                                                truefalse
                                                  high
                                                  buttons-config.sharethis.com
                                                  unknown
                                                  unknownfalse
                                                    high
                                                    cdn.jsdelivr.net
                                                    unknown
                                                    unknownfalse
                                                      high
                                                      beacons.gcp.gvt2.com
                                                      unknown
                                                      unknownfalse
                                                        unknown
                                                        platform-cdn.sharethis.com
                                                        unknown
                                                        unknownfalse
                                                          high
                                                          clients2.google.com
                                                          unknown
                                                          unknownfalse
                                                            high
                                                            translate.google.com
                                                            unknown
                                                            unknownfalse
                                                              high
                                                              l.sharethis.com
                                                              unknown
                                                              unknownfalse
                                                                high
                                                                pd.sharethis.com
                                                                unknown
                                                                unknownfalse
                                                                  high
                                                                  c.sharethis.mgr.consensu.org
                                                                  unknown
                                                                  unknownfalse
                                                                    unknown
                                                                    NameMaliciousAntivirus DetectionReputation
                                                                    about:blankfalse
                                                                      low
                                                                      https://tirtalawoffice.com/falseunknown
                                                                      https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ&co=aHR0cHM6Ly90aXJ0YWxhd29mZmljZS5jb206NDQz&hl=en&v=wqcyhEwminqmAoT8QO_BkXCr&size=invisible&cb=17wy8aqavfr4false
                                                                        high
                                                                        http://bluefieldinvestment.org/false
                                                                        • 0%, Virustotal, Browse
                                                                        • Avira URL Cloud: safe
                                                                        unknown
                                                                        https://c.sharethis.mgr.consensu.org/portal-v2.htmlfalse
                                                                        • 0%, Virustotal, Browse
                                                                        • URL Reputation: safe
                                                                        unknown
                                                                        • No. of IPs < 25%
                                                                        • 25% < No. of IPs < 50%
                                                                        • 50% < No. of IPs < 75%
                                                                        • 75% < No. of IPs
                                                                        IPDomainCountryFlagASNASN NameMalicious
                                                                        142.250.185.77
                                                                        accounts.google.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        173.194.76.156
                                                                        stats.g.doubleclick.netUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.185.99
                                                                        www.google.co.ukUnited States
                                                                        15169GOOGLEUSfalse
                                                                        2.23.209.149
                                                                        unknownEuropean Union
                                                                        1273CWVodafoneGroupPLCEUfalse
                                                                        142.250.186.170
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        151.101.193.229
                                                                        jsdelivr.map.fastly.netUnited States
                                                                        54113FASTLYUSfalse
                                                                        104.22.25.131
                                                                        va.tawk.toUnited States
                                                                        13335CLOUDFLARENETUSfalse
                                                                        35.206.35.210
                                                                        e2c48.gcp.gvt2.comUnited States
                                                                        19527GOOGLE-2USfalse
                                                                        216.239.32.36
                                                                        region1.analytics.google.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        13.32.121.95
                                                                        count-server.sharethis.comUnited States
                                                                        16509AMAZON-02USfalse
                                                                        142.250.185.163
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        143.204.98.51
                                                                        d3oiwf0xhhk8m1.cloudfront.netUnited States
                                                                        16509AMAZON-02USfalse
                                                                        142.250.186.131
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        65.9.66.11
                                                                        d2znr2yi078d75.cloudfront.netUnited States
                                                                        16509AMAZON-02USfalse
                                                                        142.250.184.227
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.180.99
                                                                        beacons-handoff.gcp.gvt2.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        3.68.25.145
                                                                        httplogserver-lb.global.unified-prod.sharethis.netUnited States
                                                                        16509AMAZON-02USfalse
                                                                        104.22.24.131
                                                                        embed.tawk.toUnited States
                                                                        13335CLOUDFLARENETUSfalse
                                                                        142.250.186.138
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.186.78
                                                                        clients.l.google.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        9.9.9.9
                                                                        unknownUnited States
                                                                        19281QUAD9-AS-1USfalse
                                                                        34.104.35.123
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.186.36
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        172.217.18.8
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        216.58.212.132
                                                                        www.google.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        52.29.25.33
                                                                        thirdparty-logserver-lb.global.unified-prod.sharethis.netUnited States
                                                                        16509AMAZON-02USfalse
                                                                        172.67.71.162
                                                                        popupsmart.comUnited States
                                                                        13335CLOUDFLARENETUSfalse
                                                                        142.250.185.110
                                                                        www3.l.google.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.185.138
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        13.32.99.58
                                                                        dlaj66hdiarg7.cloudfront.netUnited States
                                                                        16509AMAZON-02USfalse
                                                                        13.32.99.78
                                                                        platform-api.sharethis.comUnited States
                                                                        16509AMAZON-02USfalse
                                                                        142.250.185.170
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        52.109.8.86
                                                                        unknownUnited States
                                                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                        52.109.32.24
                                                                        unknownUnited States
                                                                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                        239.255.255.250
                                                                        unknownReserved
                                                                        unknownunknownfalse
                                                                        188.114.97.3
                                                                        bluefieldinvestment.orgEuropean Union
                                                                        13335CLOUDFLARENETUSfalse
                                                                        41.216.185.51
                                                                        tirtalawoffice.comSouth Africa
                                                                        40065CNSERVERSUSfalse
                                                                        142.250.185.195
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        142.250.180.67
                                                                        beacons.gvt2.comUnited States
                                                                        15169GOOGLEUSfalse
                                                                        192.229.221.95
                                                                        unknownUnited States
                                                                        15133EDGECASTUSfalse
                                                                        142.250.184.238
                                                                        unknownUnited States
                                                                        15169GOOGLEUSfalse
                                                                        IP
                                                                        192.168.2.1
                                                                        Joe Sandbox Version:37.1.0 Beryl
                                                                        Analysis ID:868926
                                                                        Start date and time:2023-05-18 15:13:47 +02:00
                                                                        Joe Sandbox Product:CloudBasic
                                                                        Overall analysis duration:
                                                                        Hypervisor based Inspection enabled:false
                                                                        Report type:full
                                                                        Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                                        Sample URL:https://www.bing.com/ck/a?!&&p=f8a2d5c859978b76JmltdHM9MTY4NDI4MTYwMCZpZ3VpZD0yZGZmZTZiYS04YjY0LTY0NWItMzViMy1mNWFlOGE3NjY1NDImaW5zaWQ9NTEzNw&ptn=3&hsh=3&fclid=2dffe6ba-8b64-645b-35b3-f5ae8a766542&u=a1aHR0cDovL2JsdWVmaWVsZGludmVzdG1lbnQub3JnLw
                                                                        Analysis system description:Windows 10 64 bit version 1909 (MS Office 2019, IE 11, Chrome 104, Firefox 88, Adobe Reader DC 21, Java 8 u291, 7-Zip)
                                                                        Number of analysed new started processes analysed:13
                                                                        Number of new started drivers analysed:0
                                                                        Number of existing processes analysed:1
                                                                        Number of existing drivers analysed:0
                                                                        Number of injected processes analysed:0
                                                                        Technologies:
                                                                        • EGA enabled
                                                                        Analysis Mode:stream
                                                                        Analysis stop reason:Timeout
                                                                        Detection:MAL
                                                                        Classification:mal48.win@28/327@29/404
                                                                        • Exclude process from analysis (whitelisted): SIHClient.exe, SgrmBroker.exe, usocoreworker.exe, svchost.exe
                                                                        • Excluded IPs from analysis (whitelisted): 142.250.185.195, 2.23.209.149, 2.23.209.140, 2.23.209.182, 2.23.209.133, 2.23.209.130, 34.104.35.123, 142.250.186.138, 172.217.18.8, 142.250.186.99, 142.250.184.227, 142.250.184.238, 142.250.185.163, 142.250.186.170, 142.250.185.138, 142.250.181.234, 172.217.16.138, 172.217.18.10, 142.250.74.202, 142.250.185.170, 216.58.212.138, 142.250.185.106, 172.217.16.202, 142.250.184.234, 142.250.186.42, 216.58.212.170, 142.250.185.74, 142.250.184.202
                                                                        • Excluded domains from analysis (whitelisted): www.bing.com, fonts.googleapis.com, slscr.update.microsoft.com, fonts.gstatic.com, clientservices.googleapis.com, www-www.bing.com.trafficmanager.net, translate-pa.googleapis.com, e86303.dscx.akamaiedge.net, www.bing.com.edgekey.net, edgedl.me.gvt1.com, login.live.com, www.googletagmanager.com, translate.googleapis.com, www.gstatic.com, www.google-analytics.com
                                                                        • Not all processes where analyzed, report is missing behavior information
                                                                        File Type:data
                                                                        Category:dropped
                                                                        Size (bytes):576
                                                                        Entropy (8bit):5.060946394820425
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:530A404E6AE2590A5FE543C43FD564E4
                                                                        SHA1:2FFC3F1A217FEDB8A19E4BE3E8C349C0EC200135
                                                                        SHA-256:559B7AF737EE5D47C50E468052A6FB1C180312A3A92F627A2E1DDB71E5E5CCE0
                                                                        SHA-512:0EA40C936F2A9236BF97B57EB5CC7486B1A78DFA5DF1E81301FF87A7ACF7098365ACA7172E6EB85C3A6E99061AF1745F2D197AC765EE333E7796FA7D00FB7D2B
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.6...AAAAAAA...AAAAA...A.A.A/ALAAAAAAAAAAAbA5AtA.!.AGA.A.bbA.A`A.].A%A.A...A AHA...AVA.A.n.AKA.A6d.A.A.A6.A~AEA...6.A.A..Ab.A...A...A...An.LA..bA...A..bA..#A..bA5..A...6#.qA.^tA..&A.5.6..A..bA..A...6`.~A.G.6N..A..bA2..A...A6#.A.-.A.#.A...A.#cA...6*#.A.*bA..A...An..A...A..A..bA..A. bA..A.tbA.SAA.AbA.S.A.6.AF..A.L.A`..A...AN.A...A..(A.}.A...A.1.A...A..A...A...AV..A..AQ.yA._.AE.MA...A|.A...AU..A...6...A...6...A.?.6...A.H.A..A.9bAK.XA...A...A...A..DA..A...A.%bAZ.A.;b.q..A.#b...7A...Aw..A68.AAA.AtA.6..............................................D............
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (7036), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):7036
                                                                        Entropy (8bit):4.9763286880114945
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A96F881C9676DAB414EEB1322052B08D
                                                                        SHA1:07186F568A792F6F7F76302F1A235048B36A688B
                                                                        SHA-256:A61AA852517CE188CB1FBF8E4B0EAEF65AC467B5AD7331FA2125C07FDA3E6860
                                                                        SHA-512:6F7BDC1C7158C6C4852CF99268B8640EDE2FD6F2F1643D7A798DA7CEB4E142B32230E59CECFC52D695A6F9705654E69D3ADC9C78D625135DBE443CF1E6F44029
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://popupsmart.com/freechat_style.css
                                                                        Preview:@import "https://fonts.googleapis.com/css2?family=Inter:wght@400;500&display=swap";#freechatpopup{position:fixed;z-index:9999999;bottom:0;margin-bottom:40px;margin-left:40px;margin-right:40px;display:flex;flex-direction:column;max-height:calc(100vh - 60px)}.freechat-icon{display:flex;align-items:center;justify-content:center;padding:17px;background-color:#fa764f;color:#fff;cursor:pointer;border-radius:100%;transition:.3s;margin-left:10px;margin-right:10px;font-size:20px}.freechat-icon:hover{transform:rotate(360deg) scale(1.1);box-shadow:0 10px 30px}.freechat-popup{display:none;width:100%;min-width:450px;max-width:450px;border-radius:15px;margin-bottom:20px;background-color:#fff;box-shadow:0 10px 30px rgba(0,0,0,.12);overflow-y:auto}.freechat-popup::-webkit-scrollbar{width:5px;height:8px;background-color:#ddd}.freechat-popup::-webkit-scrollbar-thumb{background-color:#ccc;border-radius:10px}.freechat-popup-show{display:block}.freechat-popup-header{background-color:#edf5ff;padding:50px 50
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):102
                                                                        Entropy (8bit):4.779946729451902
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9E4D69E6AF30F6B9F9D3928474D1A6FB
                                                                        SHA1:E75D7CDFC4A1839B3FF51E7E955C2B1D4964E882
                                                                        SHA-256:3A829B0F3B44DF96F46B9162DA8116C6F4FE878FEBDAAB9F92916251951B00D6
                                                                        SHA-512:24192EDBA4987163CACB198970EE5C5496DEE7EEE586DB1D0BEE75A927710E7D48B097B04DF3CC12A4E630A28EFBB872B2F5EEA9F03CFFE363648B39BA5EFF98
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.google.com/recaptcha/api2/webworker.js?hl=en&v=wqcyhEwminqmAoT8QO_BkXCr
                                                                        Preview:importScripts('https://www.gstatic.com/recaptcha/releases/wqcyhEwminqmAoT8QO_BkXCr/recaptcha__en.js');
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 888 x 476, 8-bit colormap, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):198415
                                                                        Entropy (8bit):7.9910039474928505
                                                                        Encrypted:true
                                                                        SSDEEP:
                                                                        MD5:A6142EE12981686000DE155BA18B899E
                                                                        SHA1:E27747434033014B48C5FCF58B6DE9A3D83C52A4
                                                                        SHA-256:EE2DDDAAD5EAE931F0E49C9F6F41A127D13EF03257D1CD942811F1C904F8A436
                                                                        SHA-512:A6C74A8A52FAAC3DEE1BA773F648E34A47B5E8A955EAB1B292D2FCEE53EB6729BC9206F37F89BEB85DA8EE1F652F84883B499E079E8637DBE63BB77725367086
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://tirtalawoffice.com/images/office.PNG
                                                                        Preview:.PNG........IHDR...x.................gAMA......a.....sRGB.........pHYs..........o.d....PLTE...............M/.I-............#.....%.(................8-"Q2....3)...-".' .......?..........E+................."......;.........B..=1%.o]....}^5.tc........{jY..>........................}<.....~......M.QTF9..B..F..NA5...`.U......i.X.rwfT7(....@-..b9.w.pQ.}5.m.{.`mV:....y.kIG;0bC....(.....F.f..SwaFhH \=..J}fI..t...XA&.p..G2.w^>Q:!hQ6.vQ.f?.]]K:.x7A6,.....oGnS16#..uItZ8nN%}cA...zMbL3.`./...YgM-....qZ@..S.ziZF0H6$...}WbP?P>,U8...m|Z,.kvX1.k@..QqaPuT'fVF`G)...[.....u..f..x[.jQ=(.....K..WK@........o4..^...^RF._-...d...bM3.n\H.f4....j..|......Gi[N.x..V.y@.l&...h.T.....[....u...s....j...........a...z.......`.o=..lxL........y...........t.x.#..*Vj...=tpD..]e`6Ss......f?....IDATx..mL.w...O#=E..!.HKo.......r-Z..~9 @.d[...6..'.J8...*m!.3Q..AH>.#...+:6..e......bda.wc[=f.c.#..V3{_.}...S....TQ./&...u.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):75642
                                                                        Entropy (8bit):5.011582752554395
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:BB5F3F8136EC2154B73C02604FE6BD01
                                                                        SHA1:7B63DB15A7FD9E9EECF8D3AAEB1D5DAF33E5B173
                                                                        SHA-256:DC9B8766BA1AD9DF5F06C2DA364CE4736551D12B4F3878FF78F9FD8A4079BA41
                                                                        SHA-512:C934A2350A593182650AE94AA8476A30CAAA800DE55FC1911C460584CAB746FAD20F09EE4F95FD89FB233878796CAAFDF6584F84CC3EA2615FAC66E03E044EFE
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/css/max-widget.css
                                                                        Preview::root{--tawk-header-background-color:#03a84e;--tawk-header-text-color:#fff}html{font-family:Lato,sans-serif;font-size:1rem;font-weight:400;line-height:1.618;letter-spacing:normal;background:0 0;color:#242424;scroll-behavior:smooth}body{margin:0}a:active,a:hover{outline:none}a:focus{outline:1px solid #1f6885}.tawk-link,a{color:#03a84e;text-decoration:none;cursor:pointer}.tawk-link:hover,a:hover{color:#03a84e;text-decoration:underline}abbr[title]{border-bottom:none;text-decoration:underline}b,strong{font-weight:bolder}:not(pre)>code,:not(pre)>kbd,:not(pre)>samp{font-family:Lato,sans-serif;font-size:.812rem;color:#bf1212;white-space:nowrap}em{color:#bf1212}ins{background:#ffd;color:#545454}mark{background:rgba(109,55,218,.1);color:#03a84e}q{font-style:italic}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sup{top:-.5em}sub{bottom:.25em}audio,canvas,iframe,img,svg,video{vertical-align:middle}audio,canvas,img,video{max-width:100%;height:auto
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 35764, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):35764
                                                                        Entropy (8bit):7.993501773393349
                                                                        Encrypted:true
                                                                        SSDEEP:
                                                                        MD5:60F23230F1A8D5C3B7D25B73F5B5CE23
                                                                        SHA1:ED08ADA85D017893B9BCB8224E99154C6708F5D2
                                                                        SHA-256:22B6CDC450204C1CB32B31E679D812FEA1C17AC506A7B78DAEB12BD0AB25FDE8
                                                                        SHA-512:75F4BADD80DB1C1812BC9BBD412BFCEACB5ABC2BF69C6789066DA313027BB14B27C3809BA443EB801D300D7BA9D15F71E933B6BA4480CE070F52E4CCD3A2E6CE
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.gstatic.com/s/playfairdisplay/v30/nuFiD-vYSZviVYUb_rj3ij__anPXDTzYgA.woff2
                                                                        Preview:wOF2..............;8...B..............................$..0?HVAR.&.`?STAT...../`........j..v.0..~.6.$..T. .....0..[..Q.6.f.:o.@u.*...m..m#2.m.yF.r.E...^C7......24p...uj?.."..X.... .Y..^#.QE....u^.3..KY.........m...sR.-...y...Z..~4....A....n.).V...r..!F.4o..V.c.VZ...i..........@u.....-........D ..<.H.o......Q.I.M3...e.cL...X4.W....s...3 ...<B...C.KU...n..F.*..)Ua...../.....jN"..$.Kr.../q4h0....Bi.J.bR.b..(T.B...,X(G.....dc..-...[..M..V..R...d.........I(Q..Y..&R......HBB.$D..!A.P*6..o{8~...y.r.....H;-.......&.Yq.%..1..W.S.......1qj...31...!.QgF.W{!...B.8....3..../L..3.K...k.b..."...IT:-...o..h.....G..L...b!&...<.j@E.\O...U..rR.i.>_&.@G.m]]..&.h|.f..K......._(.81nC:..@..+...D.iyo.. ....'.e..Nw:........Wg...'..Z...Ypo.....Es<.0.&.k......^..,.*.h.Z...}N...=...Z.T....}g.I......b]....M..`Y..m.h.......q.NYK..xQ...T.sk}-o-.!K.o...a=.TtL.W...5g..e...q...:.B.%.S.kw.7..c0..O..[...$.f....T2k..B. ~...%......C.]...V.....tV......$.x.&.3O.:..t%L...
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (942), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):942
                                                                        Entropy (8bit):5.084774434771727
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:5F434BDD806571A4E1B385BEE9316FF6
                                                                        SHA1:CA69E13015A6B7769E4174179DC8BEFD4C543C43
                                                                        SHA-256:FC129F67C34D70578DC66A2AC6BE2D44011EAB5A05077797B8E56DBC2F2C9867
                                                                        SHA-512:DE40DF12DB1C2A24636FFB80A1AF523B3F981FE314A886C9D9A6DD48F0F756219D62A8036FAD9B3F17150028E22C1C7B16212E39EBA2A9FA5902BD36995B7473
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-4fe9d5dd.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-4fe9d5dd"],{"9f3e":function(a,t,e){"use strict";var s={name:"base-frame"},n=e("2877"),l=Object(n.a)(s,(function(a,t){var e=t._c;return e("div",{ref:"tawk-main-panel",staticClass:"tawk-main-panel tawk-custom-flex-1",class:[t.data.class,t.data.staticClass]},[e("div",t._g({directives:[{name:"tawk-scroll",rawName:"v-tawk-scroll"}],ref:"tawk-chat-panel",staticClass:"tawk-chat-panel tawk-custom-flex-1 ps--active-y"},t.listeners),[e("div",{ref:"tawk-inner-panel",staticClass:"tawk-chat-panel-inner tawk-flex tawk-flex-column"},[t._t("default")],2)]),t._t("unseen-message-count")],2)}),[],!0,null,null,null);t.a=l.exports},dbd1:function(a,t,e){"use strict";var s={name:"base-body"},n=e("2877"),l=Object(n.a)(s,(function(){var a=this,t=a.$createElement;return(a._self._c||t)("div",{staticClass:"tawk-body",attrs:{id:"tawk-body"}},[a._t("default")],2)}),[],!1,null,null,null);t.a=l.exports}}]);
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (4509)
                                                                        Category:downloaded
                                                                        Size (bytes):254216
                                                                        Entropy (8bit):5.554476692803064
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9C0A44E6BFF755CEFD15B17CD50B3BCD
                                                                        SHA1:B84DF192F56B73692F9B84745E1E8CC604B1FA22
                                                                        SHA-256:396E537324202DC05EF355A3A587C7328E65711209F603BFE53504D05481042E
                                                                        SHA-512:07D623B55E93543778715084F97A15DDC2674ABCEB2CD80DA031C48319B290210781EA70A0A996086A7E41931710D61298AA539E510A821AEC6795F74C01E23F
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtag/js?id=GT-MK52KJL
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"4",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0},{"function":"__c","vtp_value":"undefined"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_cross_domain","priority":23,"vtp_rules":["list","tirtalawoffice\\.com","^tirtalawoffice\\.com","tirtalawoffice\\.com$","^tirtalawoffice\\.com$","tirtalawoffice.com"],"tag_id":20},{"function":"__ogt_1p_data_v2","priority":13,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (1573)
                                                                        Category:downloaded
                                                                        Size (bytes):52082
                                                                        Entropy (8bit):5.515813845174423
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:4507839525A19180914799B08FB5FA5B
                                                                        SHA1:738D7E47E47A102E67D09EFA63408D21AAF02245
                                                                        SHA-256:E7B90D32907F89C49E9E2A2CCCA95133277F756F13A14187936D9B948FF67B44
                                                                        SHA-512:124BB24B26EDE426AC7EF14DB40FF894DDEA6EB9C7A5BF408FD83B116BD55EC86B51B6839D5EEC7EC0F481AAB940795006005B4534DFF6CC0F3A6560F7CF9BEA
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.google-analytics.com/analytics.js
                                                                        Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var aa=this||self,n=function(a,b){a=a.split(".");var c=aa;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};function p(){for(var a=q,b={},c=0;c<a.length;++c)b[a[c]]=c;return b}function r(){var a="ABCDEFGHIJKLMNOPQRSTUVWXYZ";a+=a.toLowerCase()+"0123456789-_";return a+"."}var q,u;.function ba(a){function b(k){for(;d<a.length;){var m=a.charAt(d++),l=u[m];if(null!=l)return l;if(!/^[\s\xa0]*$/.test(m))throw Error("Unknown base64 encoding at char: "+m);}return k}q=q||r();u=u||p();for(var c="",d=0;;){var e=b(-1),f=b(0),h=b(64),g=b(64);if(64===g&&-1===e)return c;c+=String.fromCharCode(e<<2|f>>4);64!=h&&(c+=String.fromCharCode(f<<4&240|h>>2),64!=g&&(c+=String.fromCharCode(h<<6&192|g)))}};var v={},w=function(a){v.TAGGING=v.TAGGING||[];v.TAGGING[a]=!0};var y=function(a,b){
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):2123
                                                                        Entropy (8bit):5.387164056562538
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:53E028BBB527641048546D3584CF8F3C
                                                                        SHA1:79CB6133C79B46FADB53457616FCE416A5C9FAB0
                                                                        SHA-256:C3D3A7F7138509721A7272273D3AA5263DC5931D5A0AB46E24511B726F55351B
                                                                        SHA-512:512071A53FEFA131EB73B0129F63092C55C9B42489B79D08AC3B90C74A7EB78B5C33CFE0599A5D5EB05ECBAA033A6E3A3B2598B83355211CB0009CC1E216005B
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/6424636a31ebfa0fe7f5631f/1gsn29gk4
                                                                        Preview:(function(global){..global.$_Tawk_AccountKey='6424636a31ebfa0fe7f5631f';..global.$_Tawk_WidgetId='1gsn29gk4';..global.$_Tawk_Unstable=false;..global.$_Tawk = global.$_Tawk || {};..(function (w){..function l() {...if (window.$_Tawk.init !== undefined) {....return;...}....window.$_Tawk.init = true;....var files = [....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-main.js',....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-vendor.js',....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-vendors.js',....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-common.js',....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-runtime.js',....'https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-app.js'...];....if (typeof Promise === 'undefined') {....files.unshift('https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-promise-polyfill.js');...}....if (typeof Symbol === 'undefined' || typeof Symbol.iterator === 'undefined') {....files.unshift('https://embed.tawk.to/_s/v4/app/6
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (32014)
                                                                        Category:downloaded
                                                                        Size (bytes):302554
                                                                        Entropy (8bit):5.261763046012447
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:7BB7AAC0CAC89A90304AF1C72EB4F50D
                                                                        SHA1:729F6F8CA5787D89743B0ED7EB27FD76406BF985
                                                                        SHA-256:F5C06455E539DCD889F7F05D709B5ADC76C444099FE57F431365AF2FC57E803B
                                                                        SHA-512:ED26BF873A3C5B2E48D8B3C955240A46D8F7D7F3C635AB138179B999DBADC77802285879CB1A833F703059762C346066090A9A740BFE881F56D6D95F2DCA7F30
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://cdn.jsdelivr.net/emojione/2.2.7/lib/js/emojione.min.js
                                                                        Preview:/*! emojione 02-12-2016 */.!function(a){a.emojioneList={":kiss_ww:":{unicode:["1f469-200d-2764-fe0f-200d-1f48b-200d-1f469","1f469-2764-1f48b-1f469"],fname:"1f469-2764-1f48b-1f469",uc:"1f469-200d-2764-fe0f-200d-1f48b-200d-1f469",isCanonical:!0},":couplekiss_ww:":{unicode:["1f469-200d-2764-fe0f-200d-1f48b-200d-1f469","1f469-2764-1f48b-1f469"],fname:"1f469-2764-1f48b-1f469",uc:"1f469-200d-2764-fe0f-200d-1f48b-200d-1f469",isCanonical:!1},":kiss_mm:":{unicode:["1f468-200d-2764-fe0f-200d-1f48b-200d-1f468","1f468-2764-1f48b-1f468"],fname:"1f468-2764-1f48b-1f468",uc:"1f468-200d-2764-fe0f-200d-1f48b-200d-1f468",isCanonical:!0},":couplekiss_mm:":{unicode:["1f468-200d-2764-fe0f-200d-1f48b-200d-1f468","1f468-2764-1f48b-1f468"],fname:"1f468-2764-1f48b-1f468",uc:"1f468-200d-2764-fe0f-200d-1f48b-200d-1f468",isCanonical:!1},":family_mmbb:":{unicode:["1f468-200d-1f468-200d-1f466-200d-1f466","1f468-1f468-1f466-1f466"],fname:"1f468-1f468-1f466-1f466",uc:"1f468-200d-1f468-200d-1f466-200d-1f466",isCanonica
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):858
                                                                        Entropy (8bit):5.160514036190716
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E3F5E90FA57764CD951DB1B1BC688EDD
                                                                        SHA1:B620A8A9CBBDF976AE6A605EBAC91107E7ADC178
                                                                        SHA-256:03E42B95E9049816D901EABBE2A2247DEDA61A85972E3A50E3C8274E6C5FE39B
                                                                        SHA-512:394A233B18E93D298807E54B137355F9C6F68A89287AD75CB0D331592DBC9B8C529FA0ECD370FF6F30C2EFA34AF77EEEE88B62A2A7005EBF8FA9BF12F703A30F
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/telegram.svg
                                                                        Preview:<?xml version="1.0" encoding="utf-8" ?>. Generator: Adobe Illustrator 24.0.1, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Warstwa_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. viewBox="0 0 47 47" style="enable-background:new 0 0 47 47;" xml:space="preserve">.<style type="text/css">...st0{fill:#FFFFFF;}.</style>.<path class="st0" d="M23.5,0.6C10.8,0.6,0.6,10.8,0.6,23.5s10.3,22.9,22.9,22.9s22.9-10.3,22.9-22.9S36.2,0.6,23.5,0.6z M34.9,13.2..l-4.3,21.9c0,0-0.2,1-1.4,1c-0.7,0-1-0.3-1-0.3L22.4,31l-3.9,3.9c0,0-0.2,0.1-0.4,0.1c-0.1,0-0.2,0-0.3,0l1.1-6.8l0,0l11.3-10.4..c0.3-0.2,0.3-0.5,0.1-0.8h0c-0.2-0.3-0.6-0.3-0.8-0.1l-15.1,9l0,0l-5.8-1.6c0,0-1-0.3-1-1.2c0-0.7,1.1-1.1,1.1-1.1L33,12.3..c0,0,0.7-0.3,1.3-0.3c0.3,0,0.7,0.1,0.7,0.6C35,12.9,34.9,13.2,34.9,13.2z"/>.</svg>.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (25228), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):25228
                                                                        Entropy (8bit):5.545275407830557
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:5118E4EFF99867B199027E7EE49BD481
                                                                        SHA1:7F315AB10B9D0CA73A98A810C272F405F87EC014
                                                                        SHA-256:7DB470720BC87269E9BF81C2DA2649D4F59D54EB54CA5ED4547855758D6688A0
                                                                        SHA-512:0F0E1417061B7157E5F32D660798C1A5815722F9EE27189FA72A95A7A820F71C7269D7CA42E430C75F41D55695D8BD68B4D74231479E846911714746AC8CCA59
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/_/translate_http/_/ss/k=translate_http.tr.69JJaQ5G5xA.L.W.O/d=0/rs=AN8SPfpC36MIoWPngdVwZ4RUzeJYZaC7rg/m=el_main_css
                                                                        Preview:.VIpgJd-ZVi9od-ORHb-OEVmcd{left:0;top:0;height:39px;width:100%;z-index:10000001;position:fixed;border:none;border-bottom:1px solid #6B90DA;margin:0;box-shadow:0 0 8px 1px #999}.VIpgJd-ZVi9od-xl07Ob-OEVmcd{z-index:10000002;border:none;position:fixed;box-shadow:0 3px 8px 2px #999}.VIpgJd-ZVi9od-SmfZ-OEVmcd{z-index:10000000;border:none;margin:0}.goog-te-gadget{font-family:arial;font-size:11px;color:#666;white-space:nowrap}.goog-te-gadget img{vertical-align:middle;border:none}.goog-te-gadget-simple{background-color:#FFF;border-left:1px solid #D5D5D5;border-top:1px solid #9B9B9B;border-bottom:1px solid #E8E8E8;border-right:1px solid #D5D5D5;font-size:10pt;display:inline-block;padding-top:1px;padding-bottom:2px;cursor:pointer}.goog-te-gadget-icon{margin-left:2px;margin-right:2px;width:19px;height:19px;border:none;vertical-align:middle}.goog-te-combo{margin-left:4px;margin-right:4px;vertical-align:baseline}.goog-te-gadget .goog-te-combo{margin:4px 0}.VIpgJd-ZVi9od-l4eHX-hSRGPd,.VIpgJd-ZVi9od-
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):74292
                                                                        Entropy (8bit):5.2580531479722215
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:89188756A8E20DBD2B0140C3C94ED26A
                                                                        SHA1:D40D9D3D3201E27E8FEE34E48A6B57B4266B0618
                                                                        SHA-256:023077D134C53A612AF90EFDBF65F7AE210B74CB3FD1148998EFA4582D151978
                                                                        SHA-512:E41021FA15DA35ECBA451BC6966749DA7DC8C26D3537AE3656843663A114649ED811D0B3085219C732A6E094EA166B529C2C194BE5DB7B97DBE0829D18140504
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-32507910.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-32507910"],{3558:function(t,e,a){"use strict";var s=a("bfec").a,i=a("2877"),r=Object(i.a)(s,(function(){var t=this,e=t.$createElement,a=t._self._c||e;return a("base-frame",{staticClass:"tawk-chat-view",on:{"&scroll":function(e){return t.handleScrollProcess.apply(null,arguments)}}},[a("base-header",{ref:"tawk-base-header",staticClass:"tawk-padding-remove-bottom"},[a("chat-header",{ref:"tawk-home-header",staticClass:"tawk-flex-none"})],1),a("base-body",{ref:"tawk-base-body"},[a("chat-body",{ref:"chat-body",attrs:{isLoading:t.isLoading,messageBlocks:t.messageBlocks,barMessageRerence:t.barMessageId,emojiEnabled:t.emojiEnabled},on:{imageLoaded:t.imageLoaded}}),a("transition-group",{attrs:{name:"list"}},t._l(t.agentTyping,(function(e,s){return a("div",{key:s},[a("div",{staticClass:"tawk-flex tawk-flex-middle tawk-margin-small-bottom"},[a("tawk-avatar",{staticClass:"tawk-message-profile",attrs:{size:"small",src:e,alt:""+t.$i18n("chat","age
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:JSON data
                                                                        Category:downloaded
                                                                        Size (bytes):421515
                                                                        Entropy (8bit):5.098485007885545
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:F40D27F81EBA06CDEA1C764AFC118844
                                                                        SHA1:56AEE1FA86825B865FBBDB7D8784500734E01A4C
                                                                        SHA-256:73AB0229695813C9661E0B793DC8B2209AFA7BDAA88D88753046C76193756678
                                                                        SHA-512:5DF3C3154E46A319AF2E33D4387F2A081E7273AC4E1C76F5EB671FF25422F0200AFD87ED6EC6257D45021A9AA301B766162340ECAE679456BCF66936069B1AC1
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://c.sharethis.mgr.consensu.org/v2/vendor-list.json
                                                                        Preview:{"gvlSpecificationVersion":2,"vendorListVersion":196,"tcfPolicyVersion":2,"lastUpdated":"2023-05-11T16:05:24Z","purposes":{"1":{"id":1,"name":"Store and/or access information on a device","description":"Cookies, device identifiers, or other information can be stored or accessed on your device for the purposes presented to you.","descriptionLegal":"Vendors can:\n* Store and access information on the device such as cookies and device identifiers presented to a user."},"2":{"id":2,"name":"Select basic ads","description":"Ads can be shown to you based on the content you.re viewing, the app you.re using, your approximate location, or your device type.","descriptionLegal":"To do basic ad selection vendors can:\n* Use real-time information about the context in which the ad will be shown, to show the ad, including information about the content and the device, such as: device type and capabilities, user agent, URL, IP address\n* Use a user.s non-precise geolocation data\n* Control the fre
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 579 x 660, 8-bit colormap, non-interlaced
                                                                        Category:dropped
                                                                        Size (bytes):96510
                                                                        Entropy (8bit):7.983370934757009
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:0A101B1C6A8F19ADC4A400E37809C0A5
                                                                        SHA1:5EFEECF6EF909158475E430ADB65AF2761482250
                                                                        SHA-256:FF13B079F19227C4752B85EDF20C2DDD944038B3BE0FFC919A2BC6E1611B64E7
                                                                        SHA-512:54C41E73B95B2AEA46CD3338436789E85B91AF9D5629EB4ACF28A765DCF69A93C0621090EA9A769587FDAAD0DCBB0405EE17FA18C44472C222FD2D39B4968437
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.PNG........IHDR...C.........0..>....gAMA......a.....sRGB.........pHYs..........o.d....PLTE...!"!....................................................................................................................................(#.............wm\......~vc......~lrzt...|.w.......t....................."*1pcRR..//(T4...v1............N{W9eWG.fQ......hmb._D%..w..pM3406^;.<'......~I..qvjIF:&. _c]...o..gC%SJMRXKN<,]_QFKF................pK..Mo<<?....s]-pr...[N=...7?-cto...^C0...@1!0Y^.rN...No....~c}..MYv..............d.......................................pw.hR}..MQ_...x........w...S.........R zG.."P...&w...U..wQM.....v %t.J...............H_.......G..}..g..w...v.+'.MJ.w..........e....^t..w.~h.....c...p?t.u{.$i.f.......4=......C\3....X\.....W1g`.u........b\.....Z.K.BT....VuV....p..x.r....n.k.I...|....u.IDATx...\T...7)p.8>.......H.....O....`C.....x.@.......!.D..!9>SL1I.-P....:i.T..G..cv......._............g..~k...q.".(..".(.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (1573)
                                                                        Category:downloaded
                                                                        Size (bytes):217530
                                                                        Entropy (8bit):5.595365643665054
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:D62445872AD42666BAC3840F7DA64CB3
                                                                        SHA1:189873F0252C9D92D137F0B79C6950C395F8CA2F
                                                                        SHA-256:FFEA0CF1484FBE59BE4CE5589334D626FDDF343222B68A9B962C8B5DB82B7E28
                                                                        SHA-512:F5D677425370E8BFBDDB97A39213D5B569A3B68BA49E15E3CC35FE31F7CFF7B3A9064060181C7DD696BEDD93265146EBD718B5F778E260E55DE6C375A80D10F5
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://translate.googleapis.com/_/translate_http/_/js/k=translate_http.tr.en_GB.nJ61eUDAmoU.O/d=1/exm=el_conf/ed=1/rs=AN8SPfo9D_k_b9R8Pgzoj96Rp0uSRadPIw/m=el_main
                                                                        Preview:"use strict";this.default_tr=this.default_tr||{};(function(_){var window=this;.try{._.Sg=function(a){return _.Da?_.Ea?_.Ea.brands.some(function(b){return(b=b.brand)&&-1!=b.indexOf(a)}):!1:!1};_.Tg=function(){return _.Fa()?_.Sg("Microsoft Edge"):_.u("Edg/")};_.Ug=function(){return _.u("Firefox")||_.u("FxiOS")};_.Vg=function(){return _.Fa()?_.Sg("Chromium"):(_.u("Chrome")||_.u("CriOS"))&&!_.Ia()||_.u("Silk")};_.Wg=function(){return _.u("Safari")&&!(_.Vg()||(_.Fa()?0:_.u("Coast"))||_.Ga()||_.Ia()||_.Tg()||(_.Fa()?_.Sg("Opera"):_.u("OPR"))||_.Ug()||_.u("Silk")||_.u("Android"))};._.Xg=function(){return _.u("Android")&&!(_.Vg()||_.Ug()||_.Ga()||_.u("Silk"))};_.Zg=function(a,b){_.Yg?a[_.Yg]=b:void 0!==a.g?a.g=b:Object.defineProperties(a,{g:{value:b,configurable:!0,writable:!0,enumerable:!1}});return a};_.$g=function(a){return a instanceof _.Hc&&a.constructor===_.Hc?a.g:"type_error:SafeUrl"};_.ah=_.Ug();_.bh=_.La()||_.u("iPod");_.ch=_.u("iPad");_.dh=_.Xg();_.eh=_.Vg();_.fh=_.Wg()&&!_.Ma();_.gh
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:MPEG ADTS, layer III, v1, 128 kbps, 44.1 kHz, Monaural
                                                                        Category:downloaded
                                                                        Size (bytes):6687
                                                                        Entropy (8bit):7.697682604744796
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:55342729BD838D323E62CD653754B56E
                                                                        SHA1:BF0D5EDF44A931711804B5208A08CB17B7CB4B4A
                                                                        SHA-256:080B933225D445901CA6B5BD03F7B660339AABC98DA5547F21186D95E6022B9A
                                                                        SHA-512:E57274AFE1565D2DAC2B7B8C9E770D8C0980A4C73AD6C500E807D5AD5412B7E69B47B2633C265BB6318BC52B8A0CC4CE27AE15ED4EA25846DEA7FF6EB9DE579A
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/assets/audio/chat_sound.mp3
                                                                        Preview:......S...!....A..d.(@..[...M3...=3.......C?.......39.N.Y..2...,.=1....... ..L.....N..,..L..L-6...a}.X....Zw..}... ._..."...!.....A..y:.."#"I..@..?o..{&C/... x8]....=.k..&OD..BG.,..D!n+i.'.%...KQ.I.!......Qa..eSk.*.!..e...x...Z..._...5Nk#.c.&.....6..J.(.....RI...."..........O...r.....s..G....b.....Y. .F.Jcn...K.h..i8.......R.1..E...`..e*/)@hu..R...6.(...#p..#.G........<3|.z.W\...*(v..#....M..._J.... .....5...V.?7@.xO?Q.g.e.**:f~p`....~R.../..."....{..*...).......3.~yhDs.+.X>?kP....G.._&2..-...:.-.....X.k..8R....{.."?.....9......8.Q7.-~..=.O..`....h...0%..%X....t..."^Y..Y.......?.....(`.F..... .,...b.k......q.[......K.9.T..-.G.lk......+q.\MNl.X.\:3B<&.`......E..-.0..L..6.u..3-.Y\......~......5:*.......bxB..............+..h...wA.f^.Z.... C.`...&9.t..........C.p..D............"x.pt. .. ..t..NS.........S....@!W.`.$.._..q.`a...0.zt...AC....`m....e.. .x|......!..u...!a..C..&..~........J..".h...I.A..._...X@$.[.).U.D..77....%..M...+.E.......&%....[.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (56403), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):56403
                                                                        Entropy (8bit):5.9076936793253925
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:83F90C5A4C20AFB44429FA346FBADC10
                                                                        SHA1:7C278EC721D3880FBAFAADEBA9EE80BDF294B014
                                                                        SHA-256:952833E41BA7A4B64C31A2D7B07DDE81BF5BBACF5CBB967821CFE459D0C4A0D8
                                                                        SHA-512:4F0D19678A6758E67CB82652D49EE92A3646C3B4B68B93253C3E468E88506BB8AD78942D7BE244B390BDD29A0D00026AD561C040C1B557067EDC7887FE7119EE
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/recaptcha/releases/wqcyhEwminqmAoT8QO_BkXCr/styles__ltr.css
                                                                        Preview:.goog-inline-block{position:relative;display:-moz-inline-box;display:inline-block}* html .goog-inline-block{display:inline}*:first-child+html .goog-inline-block{display:inline}.recaptcha-checkbox{border:none;font-size:1px;height:28px;margin:4px;width:28px;overflow:visible;outline:0;vertical-align:text-bottom}.recaptcha-checkbox-border{-webkit-border-radius:2px;-moz-border-radius:2px;border-radius:2px;background-color:#fff;border:2px solid #c1c1c1;font-size:1px;height:24px;position:absolute;width:24px;z-index:1}.recaptcha-checkbox-borderAnimation{background-image:url(data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFQAAANICAYAAABZl8i8AAAABmJLR0QA/wD/AP+gvaeTAAAACXBIWXMAAABIAAAASABGyWs+AAAACXZwQWcAAABUAAADSAC4K4y8AAA4oElEQVR42u2dCZRV1ZX3q5iE4IQIiKQQCKBt0JLEIUZwCCk7pBNFiRMajZrIl9aOLZ8sY4CWdkDbT2McooaAEmNixFhpaYE2dCiLScWiQHCgoGQoGQuhGArKKl7V+c5/n33fO/V4w733nVuheXuv9V/rrnvP2Xud3zvTPee+ewsKxMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExP4OdtlT6ztAbRWvvLy8A3QkwxzH6tBGMMexI
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):8784
                                                                        Entropy (8bit):5.4728243406878825
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:DED9E825F1ED7E9767F7BBAC31A94A46
                                                                        SHA1:49597FE680988BCCBEFA3DF0DC3AD0B2CD5E8900
                                                                        SHA-256:C4357480EB37BAE9DB3F92E201944795E820FD28CF4815DED5000B59573012C4
                                                                        SHA-512:33E93B96C2A860A96044C7A5C7ECF551CD79E29893F3171212055EF0EEEE3F40BA533025706BDBBD7A1479321419503C08B7BB4DEAFB9153B48440BC0194E878
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:"https://fonts.googleapis.com/css?family=Open+Sans:300,400,700&display=swap"
                                                                        Preview:/* cyrillic-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSKmu1aB.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSumu1aB.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. font-display: swap;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSOmu1aB.woff2) format('woff2');. unicode-range: U+1F00-1FFF;.}./* greek
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (4509)
                                                                        Category:downloaded
                                                                        Size (bytes):251191
                                                                        Entropy (8bit):5.555161715427449
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:DC3882B3D5BBE38D894CACD829BAD669
                                                                        SHA1:F2ADFC5A6EA3E08671F08ADEFC9C64805D7D87E9
                                                                        SHA-256:E2054C6D1CD9196F8A38639E48C7F456D4F00FF945C42D4731CBA7F12E59E2C1
                                                                        SHA-512:A95A378BAE9C59EA72431D09DD36A33193BBB3C6091D8FB73DEBF1826114B1285F024AE942B0FAA3183DE082F3E8E605E6B8E70792959DD6DCB0C21E3C359B5C
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtag/js?id=G-4NSWPYW7GM&l=dataLayer&cx=c
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"4",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0},{"function":"__c","vtp_value":"c"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_cross_domain","priority":23,"vtp_rules":["list","tirtalawoffice\\.com","^tirtalawoffice\\.com","tirtalawoffice\\.com$","^tirtalawoffice\\.com$","tirtalawoffice.com"],"tag_id":20},{"function":"__ogt_1p_data_v2","priority":13,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Unicode text, UTF-8 text, with very long lines (65464)
                                                                        Category:downloaded
                                                                        Size (bytes):211420
                                                                        Entropy (8bit):5.319412557832879
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:27A109773B0FDD12C9737166EB5719C2
                                                                        SHA1:8977473CEB692A49BAC7A9A3C010D82C48857995
                                                                        SHA-256:ABD9F756AB6F8D858E73F4B8D8194ED99333D58FCADAFBB50CAC353FBAF9A03F
                                                                        SHA-512:95B588920E95867BB41CAC0916218ECEEA81AA40B7FA482419E90FCEB516F5D9B15DB010B202504DC67E74CCC9D770ADDD611E174BD2CDA71379D14BD0F85153
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-vendors.js
                                                                        Preview:/*! For license information please see twk-chunk-vendors.js.LICENSE */.(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-vendors"],{"00ee":function(t,e,n){var r={};r[n("b622")("toStringTag")]="z",t.exports="[object z]"===String(r)},"01b4":function(t,e){var n=function(){this.head=null,this.tail=null};n.prototype={add:function(t){var e={item:t,next:null};this.head?this.tail.next=e:this.head=e,this.tail=e},get:function(){var t=this.head;if(t)return this.head=t.next,this.tail===t&&(this.tail=null),t.item}},t.exports=n},"0366":function(t,e,n){var r=n("e330"),o=n("59ed"),i=n("40d5"),a=r(r.bind);t.exports=function(t,e){return o(t),void 0===e?t:i?a(t,e):function(){return t.apply(e,arguments)}}},"06cf":function(t,e,n){var r=n("83ab"),o=n("c65b"),i=n("d1e7"),a=n("5c6c"),s=n("fc6a"),l=n("a04b"),c=n("1a2d"),u=n("0cfb"),h=Object.getOwnPropertyDescriptor;e.f=r?h:function(t,e){if(t=s(t),e=l(e),u)try{return h(t,e)}catch(t){}if(c(t,e))return a(!o(i.f,t,e),t[e])}},"07ac":function(t,e,n){var r=n("23e
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 37924, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):37924
                                                                        Entropy (8bit):7.993065497078468
                                                                        Encrypted:true
                                                                        SSDEEP:
                                                                        MD5:E08BE6D5D433944F7AD52902E4D24DB5
                                                                        SHA1:E2600C1D60D12D397B3EE44411A021231D71E974
                                                                        SHA-256:450F3BA4E47EE174BD9692B396F264B907D37D2528F53911760F3D0EDB785F7E
                                                                        SHA-512:9C8DE3A1E131CFFD6AC63691E6A514D35D978570B9CE63A6861E1CCDB34D3621BFEDCD2337BA3854DF0F636E5B3D8C490F126E81641CFFD20EAA23A976E39F06
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.gstatic.com/s/inter/v12/UcC73FwrK3iLTeHuS_fvQtMwCp50KnMa1ZL7.woff2
                                                                        Preview:wOF2.......$......l...............................U.......?HVAR.?.`?STAT.8.../l.....P..{..4.0..f.6.$..d. ..\. ..[uYq.k.]>'...?.Y........V...S0.M..(j........"c..&..c."..o(3......Q...0.{R_@#.ZLo......D...r..[..-d*h....u?.c;O.#....R.X....Q#..2"l.7.R...?.i.S.%...m.g..f.{!...|6....}...]..H.....3.j[9....4..&...I.$y..m..s.~...{....fU..9.Q...#.......U.q.ai....]....g.{v......%>..{.......}....Y..%.....Y..I.H*.o.'N.8?..*F.I..q.?...G.A.. @.A.G!..DP...0gc.C..Mi.vn.vnFZvc...6.e;.....z..k.?...q..c.k};.......Ih"Z'.O..$...f|.W..6.E....F`w#.Q....E.2......#.!...".......dn.&..i...../u[/uS..R.9I..k..t^.mf5..r.zO...J...c...#F.tp..~?..,..../...m[.8.ngY.....P..*....Q.>1..<k..#...QP:.d[...P.A.X...X....^Ik{!.. ....P....D...y~*....w...........|.._.....-<....iwJ....c...........T....<.g.....%.....'\..9g.....~...B`..U.5.7....t.*.8.b0..I$.....8.$X..r.=.c.............r)..D.....CVr.R.Y.%U.S.........d.$...#]v........K..C..o..&3....8b..G.!.(...4B....D.m#.6......2<..#..&....
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:JSON data
                                                                        Category:downloaded
                                                                        Size (bytes):10384
                                                                        Entropy (8bit):4.956143819497171
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:2B0240F513ECD24FE5C61FB0BF5C8474
                                                                        SHA1:4D91EC38EFD3228367B94373A43D97905BA8BDC7
                                                                        SHA-256:769124E06DEFAA69292D34404C79B1E29638540A0EF64FBDE18920227E46BCD9
                                                                        SHA-512:9FA46A60C15E346DDD2D7413471676B478D4315327884283D17B3D8617C0F473711E30DD00B231D22B4184EECBF3DF9EC33B7829605EF2A661972B57D1A27ADE
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://c.sharethis.mgr.consensu.org/v2/cmp-list.json
                                                                        Preview:{"lastUpdated":"2023-05-11T17:03:06Z","cmps":{"2":{"id":2,"name":"AppConsent by SFBX. ","isCommercial":true},"3":{"id":3,"name":"LiveRamp","isCommercial":true},"5":{"id":5,"name":"Usercentrics.com","isCommercial":true},"6":{"id":6,"name":"Sourcepoint Technologies, Inc.","isCommercial":true},"7":{"id":7,"name":"Didomi","isCommercial":true},"9":{"id":9,"name":"Admiral","isCommercial":true},"10":{"id":10,"name":"Quantcast International Limited","isCommercial":true},"14":{"id":14,"name":"Yahoo EMEA Limited","isCommercial":false},"18":{"id":18,"name":"Evidon, Inc.","isCommercial":true},"21":{"id":21,"name":"Traffective GmbH","isCommercial":true},"23":{"id":23,"name":"Conversant Europe Ltd.","deletedDate":"2023-04-03T00:00:00Z","isCommercial":true},"25":{"id":25,"name":"ShareThis, Inc.","isCommercial":true},"27":{"id":27,"name":"Associated Newspapers Ltd","isCommercial":true},"28":{"id":28,"name":"OneTrust LLC","isCommercial":true},"30":{"id":30,"name":"Rich Audience International SL","dele
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):247
                                                                        Entropy (8bit):4.785419397050517
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:6E55F7BAB3BB372072554343A0C1D4B0
                                                                        SHA1:BE30F39430F76E106F2F4EF3A771FE3946E2F22E
                                                                        SHA-256:4D4DF3F45A5A490DE5F5307B2D4CA5C09FB00A4995BC613F5B29EAEA34F494EA
                                                                        SHA-512:A16B61E152C8DC8BEFDD57DFAA5FAE6DE7CD8DADC262B82786F03A5F6CA8216FDB4F6118EB9E6807A6E52826A3466663D2178F3DB22EE8A89F58AC4474DE355E
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://count-server.sharethis.com/v2.0/get_counts?cb=window.__sharethis__.cb&url=https%3A%2F%2Ftirtalawoffice.com%2F
                                                                        Preview:(function(){window.__sharethis__.cb({"clicks":{"all":20,"facebook":2,"youtube":18},"total":67,"shares":{"all":47,"facebook":8,"linkedin":1,"messenger":1,"pinterest":1,"print":2,"twitter":17,"whatsapp":17},"ourl":"https://tirtalawoffice.com/"})})()
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):514
                                                                        Entropy (8bit):4.652760602700894
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:DEECDAA377907DB5CC1722FC831670A1
                                                                        SHA1:4E39E0FD5742CC1460E24620DF4A360ABB71290E
                                                                        SHA-256:9A83C65BDD0FF9488AF9D25720686457EA7295C9C44F9F1D285A0C9EC89BAB99
                                                                        SHA-512:99EA54787E6FDC2E8118961E23EDCD81D56E5CDB2BA0892CCB9FF7F254718D50B699697B1A937BEA31D62A4399A36B597A0ECDEBF72568EF561211FA35207553
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/sharethis.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m30 26.8c2.7 0 4.8 2.2 4.8 4.8s-2.1 5-4.8 5-4.8-2.3-4.8-5c0-0.3 0-0.7 0-1.1l-11.8-6.8c-0.9 0.8-2.1 1.3-3.4 1.3-2.7 0-5-2.3-5-5s2.3-5 5-5c1.3 0 2.5 0.5 3.4 1.3l11.8-6.8c-0.1-0.4-0.2-0.8-0.2-1.1 0-2.8 2.3-5 5-5s5 2.2 5 5-2.3 5-5 5c-1.3 0-2.5-0.6-3.4-1.4l-11.8 6.8c0.1 0.4 0.2 0.8 0.2 1.2s-0.1 0.8-0.2 1.2l11.9 6.8c0.9-0.7 2.1-1.2 3.3-1.2z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 599 x 426, 8-bit colormap, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):110224
                                                                        Entropy (8bit):7.971241072557307
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:665E11BE80D9CB9C7A90F452952DDDE1
                                                                        SHA1:A008660991248A91E44E1E3B4777D0EF32048792
                                                                        SHA-256:4FEC9D95CF92F60FD7FC6F6DDB71602225D29FF6047242954978C2BDFCC6F373
                                                                        SHA-512:67C1FA15FBB82B063D49642DFEE3C9C60013A7E1082696E8681A8E8A00C8DCCD3B61E81EBFB749389B74AA5F0023D5335704C35426E03A16882049EE43982401
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://tirtalawoffice.com/images/walhi.PNG
                                                                        Preview:.PNG........IHDR...W.................gAMA......a.....sRGB.........pHYs..........o.d....PLTE...""(+0g//4+2l..$&'-......+*0@M....hS-4n6B.....7r=>>.5x.....</9w# 5@O.(,a...2=|..AEEFS..]S6:9....j\.1}9F.H44...GKJK=;xNF.!u....Af&'QLRO8&'#"B.}j.bR@-,'...fW...727.vd......3...f.Fk...~TK.Hj1.!.cZ.YM.oa.6....MX."'8.q.!#JVZZ.(.............U89.*n.....{.le..n..~....~w.tnlKH8@x.P.`FE.:Y......vUR.0G.pZAI..`.zm.([.>......8J#-bbc....VT.F.RBE...eu.~_[U./.hb16D.a|.Ba.....n.................mA?2.YT`.a:8..V.........-E...zyy....Gh.....8UH.......XMQ.a.hu.}........\k..}.........jTS........@\.S......mno.Tq.sq............US1....u....~1 9.......Ty.{=..`kt}fh......Z...u&@...].(t|.W[.dk......u....k.YD........G.Uu.........0M^#E..=T.vU..Z...R`k....d..Rgu6Q..pj@['G'p..J.av.......s..=?a.d.PMu.................K..r......x..g..)_.........Gt......J.".I.;.x....IDATx...P.W....$.X./:5s.0|..u....F..m.QTs..6.".E.=..+Z.".4..!.H.D..M.O/ ...lg.Hw.mF.j..F..*=5..J.S..c..?..z.!9g.?`C.....z.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (65466)
                                                                        Category:downloaded
                                                                        Size (bytes):197429
                                                                        Entropy (8bit):5.254714303919162
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A9ACEF5DB79DF87D4A97EF0644902D48
                                                                        SHA1:E12501304CDDDD5F1BEEE918C68284EADDE212E7
                                                                        SHA-256:CF838191C065EB8A98B4C32690462D2828259C796C95157A27CFCD3DF9DC71ED
                                                                        SHA-512:31B22F998DB273509C806C457159D7E40E843483A7A2675A54309EF3090E13C4537A54A2BB92EDA55D980D60A9E284306506C6AAD5653DEE895B3300CABA9025
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-common.js
                                                                        Preview:/*! For license information please see twk-chunk-common.js.LICENSE */.(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-common"],{"028e":function(t,e,n){"use strict";(function(t){n.d(e,"a",(function(){return h}));var i=n("5868"),o=n("7f46"),r=n("e8f9"),a=n("f0b0"),s=n("27a6");function c(t,e){var n=Object.keys(t);if(Object.getOwnPropertySymbols){var i=Object.getOwnPropertySymbols(t);e&&(i=i.filter((function(e){return Object.getOwnPropertyDescriptor(t,e).enumerable}))),n.push.apply(n,i)}return n}function u(t){for(var e=1;e<arguments.length;e++){var n=null!=arguments[e]?arguments[e]:{};e%2?c(Object(n),!0).forEach((function(e){l(t,e,n[e])})):Object.getOwnPropertyDescriptors?Object.defineProperties(t,Object.getOwnPropertyDescriptors(n)):c(Object(n)).forEach((function(e){Object.defineProperty(t,e,Object.getOwnPropertyDescriptor(n,e))}))}return t}function l(t,e,n){return e in t?Object.defineProperty(t,e,{value:n,enumerable:!0,configurable:!0,writable:!0}):t[e]=n,t}function d(t,e){for(var
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 770 x 486, 8-bit colormap, non-interlaced
                                                                        Category:dropped
                                                                        Size (bytes):153191
                                                                        Entropy (8bit):7.958483593457786
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:BB7EDB87B612FE96A0288AE42CB83843
                                                                        SHA1:4E4BCFEAE3C3676CF1EEB30DD958BD1F2AC69E63
                                                                        SHA-256:49068699AF6A35E63D4CADD6636183CFB87B1317520038B5C889E5C247194199
                                                                        SHA-512:DCF841C449C2680BFBBB719DD4D86D8B1CE2E66D8F653EB6DFBEB7C337868E7E684BB81A6CE813ABABBB9AF8D2F5602840D83273F750974CDD72CB4D8D593678
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.PNG........IHDR..............(.7....gAMA......a.....sRGB.........pHYs..........o.d....PLTE..."!..........! ....#" 542 ..21/..................$#!...... ..........$$"0/-('%.........!!.......'&$"" %%#431+*(...))'.........##!...)(&............/.,...#. -,).-+........................ !"..............""....""$......!.....-)#'%!% .$!".(.......%#.*%.*#.N5.0,!3/&/'.*'!&!.!..%..!..1*..@..%..2.%....6/.9/.>2.W:...])#.%...55+..D=6)...73(&%'=5..7.....'6).[B.JB&...YO+B8..=C;"../.<I:.E5.bG...X..)....HPA...H.l.jK..|#\K.wV.I=.>).<-...Tvf/.t(.y!..QWF..h.F..RG$..M.t.91"..bs\#P?..e.iW%qP..p*.N}[.6$..p...R..Y....`.{a".x5~k.dP...7..)m_...A`R&.F.z+cX-.KnU..g$..PQH+..7...B<+..U..IC....$..1..EW;'..B..;bB+..7..8..0.r6..9J7).;c>..?..@.)./~U4lL2.5P0...H..?.^6.....x.i<vI)OON..f.......GB2.uB..............}..=...........Q.Yuut..L.d``_..G......q..R.:"...1.w..R.IDATx...TT..?..........4..P.C......9.%1.Xcf..A#A.?......&A..4C.J!&.A."(..H..~.#=.9.;...Vz...+]...V[.................<....$.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (38135), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):38135
                                                                        Entropy (8bit):5.032466977032757
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:F1216623B93F4CEE059C5617354220B2
                                                                        SHA1:57BDE0E4098FAEBD89C3581167B761C0AC450EDB
                                                                        SHA-256:B959AD2221D60430F98667E34F19AC4830D2A4E82D086AAFEC1D1C92AAF1A9BC
                                                                        SHA-512:644A9A47A322E7EB4F43817F456A702BCDF5869F6CF4805C67EA4EF6B61B0D4F2D4679FF568CC8DCD9345F5DE1688DDDD2BEA26A91A1A079A459D5D908D4332D
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/css/message-preview.css
                                                                        Preview::root{--tawk-header-background-color:#03a84e;--tawk-header-text-color:#fff}html{font-family:Lato,sans-serif;font-size:1rem;font-weight:400;line-height:1.618;letter-spacing:normal;background:0 0;color:#242424;scroll-behavior:smooth}body{margin:0}a:active,a:hover{outline:none}a:focus{outline:1px solid #1f6885}.tawk-link,a{color:#03a84e;text-decoration:none;cursor:pointer}.tawk-link:hover,a:hover{color:#03a84e;text-decoration:underline}abbr[title]{border-bottom:none;text-decoration:underline}b,strong{font-weight:bolder}:not(pre)>code,:not(pre)>kbd,:not(pre)>samp{font-family:Lato,sans-serif;font-size:.812rem;color:#bf1212;white-space:nowrap}em{color:#bf1212}ins{background:#ffd;color:#545454}mark{background:rgba(109,55,218,.1);color:#03a84e}q{font-style:italic}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sup{top:-.5em}sub{bottom:.25em}audio,canvas,iframe,img,svg,video{vertical-align:middle}audio,canvas,img,video{max-width:100%;height:auto
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (7068), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):7068
                                                                        Entropy (8bit):5.120284586962699
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:FAC25FF2D2C405E1AC7E156DCA1F819C
                                                                        SHA1:9E7C83D4EEFE4F64B4F1C43D15F21B248697A125
                                                                        SHA-256:97CA66991150A4C1263837600FE4338F33D96B74979CD7740AB07D22B883B8E0
                                                                        SHA-512:10EFCD0F95A4F60519F3D94CDC6D96235D4B85CA9BBCED78D2571B3EE5946D860415C1BAADDA71983F8124A628FAF6CFCEE478947CF647510FA5ADAC821529D1
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-2c78ba82.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-2c78ba82"],{"5a60":function(t,e,n){"use strict";var r=n("eb24").a,o=n("2877"),a=Object(o.a)(r,void 0,void 0,!1,null,null,null);e.a=a.exports},eb24:function(t,e,n){"use strict";(function(t){var r=n("2b0e"),o=n("f0b0");function a(t,e){return function(t){if(Array.isArray(t))return t}(t)||function(t,e){var n=null==t?null:"undefined"!=typeof Symbol&&t[Symbol.iterator]||t["@@iterator"];if(null!=n){var r,o,a=[],i=!0,s=!1;try{for(n=n.call(t);!(i=(r=n.next()).done)&&(a.push(r.value),!e||a.length!==e);i=!0);}catch(t){s=!0,o=t}finally{try{i||null==n.return||n.return()}finally{if(s)throw o}}return a}}(t,e)||function(t,e){if(t){if("string"==typeof t)return i(t,e);var n=Object.prototype.toString.call(t).slice(8,-1);return"Object"===n&&t.constructor&&(n=t.constructor.name),"Map"===n||"Set"===n?Array.from(t):"Arguments"===n||/^(?:Ui|I)nt(?:8|16|32)(?:Clamped)?Array$/.test(n)?i(t,e):void 0}}(t,e)||function(){throw new TypeError("Invalid attempt to d
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):121
                                                                        Entropy (8bit):4.69769680485545
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:DA5BB1DC647470204DF0E49F5AFAC2DE
                                                                        SHA1:F5CBF596CA5E4FE208E4C55AF6E45B71F9FEBBE8
                                                                        SHA-256:705186BECC9E0A306A6B4867AE2768AA9DD3B8C12393D9F9C52029E9A6FCF31C
                                                                        SHA-512:D9C0EDA8C93DF421F8147960FF4B00F8EACD8791B8386B020F04D0478C6B7A4328767A82B52B8CFBB7C3A44CB55CEC488C2D1008670BEE709D67D8BDBD887C39
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-main.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["main"],[],[["56d7","runtime","vendor","chunk-vendors","chunk-common"]]]);
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 404 x 591, 8-bit colormap, non-interlaced
                                                                        Category:dropped
                                                                        Size (bytes):55523
                                                                        Entropy (8bit):7.9892902533174475
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:CB481302D511668628542FD38A6D1882
                                                                        SHA1:4D10260A7F4E12F57FA2D5DD29F1996521F8E93D
                                                                        SHA-256:E476729B09212ED8DE7D567EB62CB1AADB3F6F7F6057CAF4270CFDC81CDA86E5
                                                                        SHA-512:0055517AEB9D6F7272F8C24E504E4517A81FB1418A0AC73906F045DCC5CBCEA601C6AE10537AF6F9123E4A32E65D92ACEBCFE0BDD414059548D3A8A7C68F6C9D
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.PNG........IHDR.......O.....l.......gAMA......a.....sRGB.........pHYs..........o.d....PLTE#'.<1.%'....!%..u......."&.......$(....$%..o...."""7/..'.....f..o.;Y....().@...w.223..C............................e............4<20).*0''-!:A9...z.|...07*AF=...z........ ) ...*$..........gohFMCaia...t|u.|W...........{lwo.........O....QYOKTII0.]cZ........ ...............Z.I.V_T....`.....[V6.X{..M.x4........[WW...|.......upl.z{Y..M#"n..!L..wJ.z.zO).X/.^~;./8Z..."#o.Y.C..?$.3z.h?.... #NMLN.....m.........%5.../Z.B=-......h2..p!W43%o.yY.T..9)"z.....Tb[.\<*6{........r`X.I.....P........i..j@|10[Q@e..E...Xy...c,..o.z8U.........f%2Xoi.........pW.h..wr.....|`H/...$7H.....|.....l......z|..~`/.....~.qW\{........Lf..=7..q....5..........Xz.~...7.c+W......#k.ga.......n.......i......d....m..9k0|.J.....oD.n......Wy.....rF....P....9.q...lIDATx..Z............Y.2LI.....<....p...b....R....T..P...nll;./.n.c...R")9..*Eh.P.E...w.y.o.?...n~....%..~.ts.3.p.&..I...a.....\.%
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 10520, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):10520
                                                                        Entropy (8bit):7.974461934258174
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:054B3B66812D0A4B87FFC6776F0A42F1
                                                                        SHA1:683EB11F2439B9EDC3290899FB47806166B5182E
                                                                        SHA-256:F4D4FCB3CDD9F021BCA50BEDB83DE05B77FD23B3C98AD36B103FEA8C0744EA71
                                                                        SHA-512:FE5C3D64F6D8949F58C37B550A2CF9093E32BFF58231D7B168D11178CD592A7313AEB5A07BAB5636173D64CC67C7D6B986B62BABD934DAA9106C7DE13587D93F
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/assets/fonts/tawk-font-icon-2.woff2?55755728=
                                                                        Preview:wOF2......).......J...(..........................T.V............X...T..6.$..$. ...........CE.b.8.0.;B.us.2ET.N...<.c..;.V..Gu.Jl!.eG..+}..c..^.Q.V..y..s...y.B.Sn.H...R.&vy...\j..d..[z....$....{..W..<C.I.8.8..o.\......E....(K)[^.......I.%.$!...b.A..j........fe[1:..Yl..U...G...!......$y....O....'...1....>..n.w...lA..GA.a`........s../!..{1....%.....o.O...R.:x*..RS...+.........p.....(* ....;v........t....VW=.X.m2DS.TI..~.li..-.......Va:T.4e..}.....~...o.{.../!.,V..0m..S.=.E..?.......4y.@..B.....)llj.....`_ko...t...T.......B...k..#t.vW'....i.3k..HE......H...V.e.2..H:..d..J..A..A)t.......i.).y)..e.e8]....SC.d.a..A*.b.........6q..xF..;.@......!v.. .e.@..t....#.j.1@.........p.:!.~.|.."...'....|..+..`...n.~T_.(.HqL.dp......^R.......J.AFm..Up...)..3..f[le...9.\Dn......" ($,"*&..5z.5....C....DHEDELEBEJEFENEAEIEEEMECEKE....=*.T...R1.bL..).3*.T,.XR.B.*.kT.S.A.&.[TlS.C...{T.7....KI..m.....-S...p...."._Ix.4...9PZ.M..R......P..9.......cr.Vf*r..&.;.I.i....hN$X.....@LM...
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (884), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):884
                                                                        Entropy (8bit):5.5398102584539695
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:79BCE42B7D5DA826645E4058A62CF615
                                                                        SHA1:641440C124D93D795530836AD93D3CD6EB193F3F
                                                                        SHA-256:1717ADFB5495BF48991310A3CEE9032EF422E816ECC6B90BE26A3B19206E0777
                                                                        SHA-512:6550FF06BAB29BE4F17E8CF9C5B458F0B8703ECE152C07A09E2DD994D7EF11DE6B313B11A29BF439BC0FBF856EB077A2A0BAB5BEB0F1BA9C3CCDE8956E2CDEBB
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.google.com/recaptcha/api.js?render=6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ
                                                                        Preview:/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.google.com/recaptcha/api2/';(cfg['render']=cfg['render']||[]).push('6LdsyvEkAAAAAAIrac0sEGveCymuP_oxlbLzrlAZ');w['__google_recaptcha_client']=true;var d=document,po=d.createElement('script');po.type='text/javascript';po.async=true;po.src='https://www.gstatic.com/recaptcha/releases/wqcyhEwminqmAoT8QO_BkXCr/recaptcha__en.js';po.crossOrigin='anonymous';po.integrity='sha384-vl/8YmDHOItetW8MAXs9oyIDH1Yih0iwYfiAcyXqRbulOnFqquQtr1hJC2UM6oMW';var e=d.querySelector('script[nonce]'),n=e&&(e['nonce']||e.getAttribute('nonce'));if(n){po.setAttribute('nonce',n);}var s=d.getElementsByTagName('script')[0];s.parentNode.insertBefore(po, s);})();
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (2271)
                                                                        Category:downloaded
                                                                        Size (bytes):103218
                                                                        Entropy (8bit):5.5489381135216735
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E072C8497452B2D85FF6D215F2B69AFD
                                                                        SHA1:A4969E2279C502FE677EDE6CAD5B35BBF702F4C1
                                                                        SHA-256:335785C0D27EBACCE748CCCE156A5C06BD1BF17EE458C93325277A93E2FAFA4E
                                                                        SHA-512:B4A3DE23B1DBA55C31C200997B63236A59993AE6565079BB338A2BBCDE030CF460AF2844BFF081A5FF6319295FE6FDDF63E33E58D8F4CB9CED56B23AF3F3D657
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtm.js?id=GTM-NLNCRSN
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__u","vtp_component":"URL","vtp_enableMultiQueryKeys":false,"vtp_enableIgnoreEmptyQueryParam":false},{"function":"__u","vtp_component":"HOST","vtp_enableMultiQueryKeys":false,"vtp_enableIgnoreEmptyQueryParam":false},{"function":"__u","vtp_component":"PATH","vtp_enableMultiQueryKeys":false,"vtp_enableIgnoreEmptyQueryParam":false},{"function":"__f","vtp_component":"URL"},{"function":"__e"}],. "tags":[],. "predicates":[],. "rules":[].},."runtime":[ .]...........};.../*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var ba,ca=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},fa=function(a){var b="undefined"!=typeof Symbol&&Symbol.iterator&&a[Symbol.iterator];if(b)return b.call(a);if("number"==typeof a.length)return{next:ca(a)};throw Error(String(a)+" is not an iterable or Arr
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (1896), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):1896
                                                                        Entropy (8bit):5.201308680488664
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:53B161453204A85260FCD969EE91512B
                                                                        SHA1:AEC7CDCC73E2E16CE5E1A8B8F492BC35ECD869C7
                                                                        SHA-256:10E45F65E7A5699EEFA50214BA86493E58EBBBCCFE9B9A96D755E14C93AF4C3F
                                                                        SHA-512:7F83E28E8A7C434674EC2A37F266CD7A635EC017D45484043E9197C51CB2E0816D9436B712C97DC0C0A45AD9D6F82E2DF429205959B6269458206211AE87772D
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://buttons-config.sharethis.com/js/638b8cff4b058f001938c85e.js
                                                                        Preview:window.__sharethis__.init({"ts":1682064300205,"analytics":{"enabled":true,"ts":1680202896706,"updated_at":"2023-03-30T19:01:36.706Z"},"gdpr-compliance-tool-v2":{"color":"#000000","display":"always","enabled":true,"gear_position":"bottom_right","background_color":"#fccb00","gear_color":"#1273de","language":"en","publisher_purposes":[{"id":1,"legitimate_interest":false},{"id":2,"legitimate_interest":false},{"id":3,"legitimate_interest":false},{"id":4,"legitimate_interest":false},{"id":5,"legitimate_interest":false},{"id":6,"legitimate_interest":false},{"id":7,"legitimate_interest":false},{"id":8,"legitimate_interest":false},{"id":9,"legitimate_interest":false},{"id":10,"legitimate_interest":false}],"scope":"publisher","text_color":"#ffffff","ts":1680199997711,"updated_at":"2023-03-30T18:13:17.711Z","privacy_policy_url":"tirtalawoffice.com","publisher_name":"Tirta Law Office"},"powr-social-feed":{"enabled":true,"ts":1678640570863,"updated_at":"2023-03-12T17:02:50.863Z","token":"eyJ0eXAiOi
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 690x87, components 3
                                                                        Category:dropped
                                                                        Size (bytes):12905
                                                                        Entropy (8bit):7.942176571447596
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A6D0FEEE928A87A1625E0079A31DEE7A
                                                                        SHA1:D04449E56A235EC2D3191907A45D8204C22260FC
                                                                        SHA-256:630A4BC0A222D851FC22CBF10128932BD3822BC5DACE359E6B98204D9AC54E67
                                                                        SHA-512:C281B8536E8FF9517188DAE7E18AA08C4D3372B9FFBB129AA8BA33BC1EE9E0989D2BAC23BD7E3A73AF6B5CD673205D0A0185D73C05962780BA4813AD55930CC5
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:......JFIF................................................................"..."*%%*424DD\.................................................."..."*%%*424DD\......W...."...................................................+...H...9]!8........Z.>..X......'.q.W.7{........s.R.. ...:.....y..8.O.eOK..........^.2R..g.+1ak%...Q?~...V.kc....w./4....Qe!.R..9..@..........Qy..3.Y.i]l...9.....^.=...R..G..M..8..8....;.......F...v.OY..%..E.m?..m.=/.|.......W..; .....R.gH'l.....ns.X..4D..k$^............W.<.... .)-.+.|O....5..Y...2......n.....14v...1e..CEX..o...[.....Y.{cCu.....8u.>t.4..r.'....^9.:e....7k..;..../7W..z_..u^...Q{1c2.X.}f..o.T.B.....L..<..i.a...}%U......Zx...{A$.z..]...96Z1.x.1%..U......B...qZ&......>iNMst..}.w..W.....Gn.;.[..c$.VP.r]...96Z1..^......s...u..c&.u.%U.o.t_....tQZ....u.....d....;......J....*g.z..g%..r.H%jym.OM.K)Q.]..n.r.....t.....@........R..D......1.Od@...........{..................................................................................
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:HTML document, ASCII text, with very long lines (1980)
                                                                        Category:downloaded
                                                                        Size (bytes):2149
                                                                        Entropy (8bit):5.185180041651522
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9365E702F77F7C441AA689E8FCC3CFD1
                                                                        SHA1:83D42ACE36C8248D719AF498DC333603FF02A65F
                                                                        SHA-256:8BC62C9EF81390AF989B3829ACE60AAE916E299DAB9DF7EC5E49DB2D07A956B6
                                                                        SHA-512:30371E7AC6E862A4A75D3C2FABFBB1EBA459CFA261C3F55625D37F506456C67E004E541EE667320B50D16CB9AAEFC85E3E130499508005B0A7FCBC74E4D338BF
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://c.sharethis.mgr.consensu.org/portal-v2.html
                                                                        Preview:<html>. <head>. <title>GDPR Consent Management</title>. <script></script>. </head>. <body>. <script type="text/javascript">. !function(e){var t={};function n(o){if(t[o])return t[o].exports;var r=t[o]={i:o,l:!1,exports:{}};return e[o].call(r.exports,r,r.exports,n),r.l=!0,r.exports}n.m=e,n.c=t,n.d=function(e,t,o){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:o})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var o=Object.create(null);if(n.r(o),Object.defineProperty(o,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var r in e)n.d(o,r,function(t){return e[t]}.bind(null,r));return o},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (61668), with escape sequences
                                                                        Category:downloaded
                                                                        Size (bytes):1987086
                                                                        Entropy (8bit):5.497263145332398
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A313A5B53DC186D4A2A0881D17C78706
                                                                        SHA1:C6655E02F8042A2A620673A28CD7FF19805A6A14
                                                                        SHA-256:DE1254DB705DFDBAF8729128A1542F529BFB652E18F641B4BC95913291AED189
                                                                        SHA-512:93481EE869AD1518227436617AC87B23AF0380E546BE23BF437BD31BD9CFF20E3CDBD943255F16CBFE450A9823ADF42590D7D50E7A8E67FF7A059BE56A355088
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://c.sharethis.mgr.consensu.org/cmp-v2.js
                                                                        Preview:!function(e){var t={};function n(r){if(t[r])return t[r].exports;var i=t[r]={i:r,l:!1,exports:{}};return e[r].call(i.exports,i,i.exports,n),i.l=!0,i.exports}n.m=e,n.c=t,n.d=function(e,t,r){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:r})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var r=Object.create(null);if(n.r(r),Object.defineProperty(r,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var i in e)n.d(r,i,function(t){return e[t]}.bind(null,i));return r},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},n.p="/",n(n.s=534)}([function(e,t,n){"use strict";e.exports=n(502)},function(e,t){"function"==typeof Objec
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:dropped
                                                                        Size (bytes):771
                                                                        Entropy (8bit):4.431681224701858
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:2B10A062E719C64B686E2E8FCDC216DC
                                                                        SHA1:38BD37FA3975F4D5B849763359481D8B31BB80BA
                                                                        SHA-256:EFC737B4F58CFE73A9BD0E57D7570365701381DA31E628B269E7217A0CE3359D
                                                                        SHA-512:051C60863A4D101A5C081ABAFF67F1874E3714DA62E2DAA3BF24C08DA49225FE9906A95B33957B9F91186ED23DE539EC494A1C96ED6CF55709A8845EAE858AF1
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m37.3 20q0 4.7-2.3 8.6t-6.3 6.2-8.6 2.3q-2.4 0-4.8-0.7 1.3-2 1.7-3.6 0.2-0.8 1.2-4.7 0.5 0.8 1.7 1.5t2.5 0.6q2.7 0 4.8-1.5t3.3-4.2 1.2-6.1q0-2.5-1.4-4.7t-3.8-3.7-5.7-1.4q-2.4 0-4.4 0.7t-3.4 1.7-2.5 2.4-1.5 2.9-0.4 3q0 2.4 0.8 4.1t2.7 2.5q0.6 0.3 0.8-0.5 0.1-0.1 0.2-0.6t0.2-0.7q0.1-0.5-0.3-1-1.1-1.3-1.1-3.3 0-3.4 2.3-5.8t6.1-2.5q3.4 0 5.3 1.9t1.9 4.7q0 3.8-1.6 6.5t-3.9 2.6q-1.3 0-2.2-0.9t-0.5-2.4q0.2-0.8 0.6-2.1t0.7-2.3 0.2-1.6q0-1.2-0.6-1.9t-1.7-0.7q-1.4 0-2.3 1.2t-1 3.2q0 1.6 0.6 2.7l-2.2 9.4q-0.4 1.5-0.3 3.9-4.6-2-7.5-6.3t-2.8-9.4q0-4.7 2.3-8.6t6.2-6.2 8.6-2.3 8.6 2.3 6.3 6.2 2.3 8.6z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (65472)
                                                                        Category:downloaded
                                                                        Size (bytes):77752
                                                                        Entropy (8bit):5.160311002958796
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:7DCB496E4882926F93F2E73FA87062C0
                                                                        SHA1:F84D8F772336F305BBBD882A1E5D48D9AA8BD16A
                                                                        SHA-256:5958B8F2069B0A3292ED7A9DB46B8109ADAC7E81591238557125893EE7E87BB7
                                                                        SHA-512:3E70F465D49D4E3AC339E99D99B37BDD2F03442859876CEB09296446EA4410197EDF78A59A78A18248DEA88ED02D761CFBCAB99C35F75CC173A11D395BA389F0
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-vendor.js
                                                                        Preview:/*! For license information please see twk-vendor.js.LICENSE */.(window.tawkJsonp=window.tawkJsonp||[]).push([["vendor"],{"2b0e":function(t,e,n){"use strict";(function(t){var n=Object.freeze({});function r(t){return null==t}function o(t){return null!=t}function i(t){return!0===t}function a(t){return"string"==typeof t||"number"==typeof t||"symbol"==typeof t||"boolean"==typeof t}function s(t){return null!==t&&"object"==typeof t}var c=Object.prototype.toString;function u(t){return"[object Object]"===c.call(t)}function l(t){var e=parseFloat(String(t));return e>=0&&Math.floor(e)===e&&isFinite(t)}function f(t){return o(t)&&"function"==typeof t.then&&"function"==typeof t.catch}function p(t){return null==t?"":Array.isArray(t)||u(t)&&t.toString===c?JSON.stringify(t,null,2):String(t)}function d(t){var e=parseFloat(t);return isNaN(e)?t:e}function v(t,e){for(var n=Object.create(null),r=t.split(","),o=0;o<r.length;o++)n[r[o]]=!0;return e?function(t){return n[t.toLowerCase()]}:function(t){return n[t
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):930
                                                                        Entropy (8bit):4.642019664508243
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A6DD475FAB8BEE89C437306D85760B82
                                                                        SHA1:F4CFD4783F3CB43788226D4A79F6BB4D3D7B105B
                                                                        SHA-256:BAAD6B3794B4D4606830EE71D028B5B342439A702A3869B2BBEA041F1975996A
                                                                        SHA-512:AA74C24D3E6DBA0D2A5983D627D7096AE48946548027D0B812F46817EC93FB03520B2253FBF25954F518144254DC7F5E618D3807E33F0D010A1BA6F3034A55C5
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/gmail.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" width="42" height="45" viewBox="0 0 42 45">. <g fill="none" fill-rule="evenodd">. <polygon points="0 45 0 0 42 0 42 45"/>. <path fill="#FFF" fill-rule="nonzero" d="M4.73110465,6.27906977 C2.66164441,6.27906977 0.976744186,8.09899684 0.976744186,10.3343023 L0.976744186,10.7180012 L21,26.1046512 L41.0232558,10.7180012 L41.0232558,10.3343023 C41.0232558,8.09899684 39.3383556,6.27906977 37.2688954,6.27906977 L4.73110465,6.27906977 Z M5.44156644,8.08139535 L36.5551764,8.08139535 L21,19.7965116 L5.44156644,8.08139535 Z M0.976744186,12.6118498 L0.976744186,34.6656977 C0.976744186,36.9010031 2.66164441,38.7209302 4.73110465,38.7209302 L37.2688954,38.7209302 C39.3383556,38.7209302 41.0232558,36.9010031 41.0232558,34.6656977 L41.0232558,12.6118498 L36.0174419,16.4593932 L36.0174419,36.9186047 L5.98255814,36.9186047 L5.98255814,16.4593932 L0.976744186,12.6118498 Z"/>. </g>.</svg>.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (16814), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):16814
                                                                        Entropy (8bit):5.45547326716596
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:3FD68B27902043CBF7D50FA19809BABB
                                                                        SHA1:C3CF7276B06A8232EDF73734D91813D46CDFDB09
                                                                        SHA-256:1017110C7FF8F11157F5189D5BF4921401B313563AF4B250163628C4FC5F26D5
                                                                        SHA-512:CF1BD9D093FA0281169418932A3A857F3CB6A255F0AC7343528899A16192D5C4CBC31BFE036008C61A97B7C54C47B3E3C015872D9DF19DBDAF530545FEBDBAB7
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-696bc286.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-696bc286"],{"6fd1":function(t,i,e){"use strict";(function(t){var o=e("2f62"),a=e("f0b0"),s=e("5a60"),n=e("ff3f"),r=e("87dd");function c(t,i){var e=Object.keys(t);if(Object.getOwnPropertySymbols){var o=Object.getOwnPropertySymbols(t);i&&(o=o.filter((function(i){return Object.getOwnPropertyDescriptor(t,i).enumerable}))),e.push.apply(e,o)}return e}function h(t){for(var i=1;i<arguments.length;i++){var e=null!=arguments[i]?arguments[i]:{};i%2?c(Object(e),!0).forEach((function(i){l(t,i,e[i])})):Object.getOwnPropertyDescriptors?Object.defineProperties(t,Object.getOwnPropertyDescriptors(e)):c(Object(e)).forEach((function(i){Object.defineProperty(t,i,Object.getOwnPropertyDescriptor(e,i))}))}return t}function l(t,i,e){return i in t?Object.defineProperty(t,i,{value:e,enumerable:!0,configurable:!0,writable:!0}):t[i]=e,t}i.a={name:"MinimizeWidget",components:{IFrame:s.a,TawkBadge:a.TawkBadge,TawkButton:a.TawkButton,MinContent:n.a},mixins:[r.a],d
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 773 x 503, 8-bit colormap, non-interlaced
                                                                        Category:dropped
                                                                        Size (bytes):114106
                                                                        Entropy (8bit):7.97878940982765
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A8B76754DE09BDE61AE67C6D4C53ACEB
                                                                        SHA1:EDF0EE86B6EAB0AD14C5AA338804F3C78A3C2B69
                                                                        SHA-256:6EEC8CBD1340923960A769B536D722C8378B179805D5250CBE086550C0D1E449
                                                                        SHA-512:94AAC28698D047107948FB4ADFDF20AA519A86CB0207F80EE0A1C12C272583F36070B12D8392BA5CABF0F3449FB312FF60524A92C4FD60057026EAB05B33CAA2
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.PNG........IHDR..............~.p....gAMA......a.....sRGB.........pHYs..........o.d....PLTE.."..%........(.. ..#...........!........)..+........&...........!................. ...........$.....#........&#....(..'...........#..*...........#...........#.....%.....)..!..(.. . -..&wZ/..-..,...!%1..+..0..&......%,@4".........+.$8#(6.....0...{]1........5...(+8 (<."3......)1D.. ..'..!.."..%6<M+/<7:D...........&rV,jP,07J...8. ......1(./4C?@G=BPJ6.)))( ..b6RRU...0-'RB+.u=..CHIO.|@Y&.\G+R<!>2#B7&.g513=+#.!#)J<'..JbM.cJ$)(!66)ZB$pY5A>3"$"B/.....n9.......a:(.....R..W.O..t$....iY&&.^[[Xkjh@....lCHVccc.\?!(1.0.Y:62..JN].k< .%..IB3XZb.}t2.'.ziK$"..&3..urqfS6..P.....H..L..quq`UN@ZL5.{P..J)..OI6......fZB\VF).(..ascE..~..IFB.qChdU}iG.sO........\R&".......[._.U.........i......f.e.......n......}....v...........s...^..>...................... ......CIDATx..{tSu.>..!.|M...8CGBY..O'[z9.....I.rjS.6%...R.W$.....F..XE.*....t.J..X.Y(...@.pQ@.._._........s.5-.......I.|.....>...h'..^.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):731
                                                                        Entropy (8bit):4.313542757345312
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:0AF2FB38987598376C99E21AF17ADE45
                                                                        SHA1:BFBDFD0B1A2DCEF714E347928BD11B8410DC7CA2
                                                                        SHA-256:7C93346D4F681A0BE90D1DFC19346382A4700F1810F41CAA54415688DEE1777F
                                                                        SHA-512:9D07AE02A477C1E58C1E118269ED15F6B9D2BF78385C66780ED1105A67C2B053865F4023AE7F862BA0F4C995BFD634F55E5473C01291941EB35C694DB0906433
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/twitter.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m31.5 11.7c1.3-0.8 2.2-2 2.7-3.4-1.4 0.7-2.7 1.2-4 1.4-1.1-1.2-2.6-1.9-4.4-1.9-1.7 0-3.2 0.6-4.4 1.8-1.2 1.2-1.8 2.7-1.8 4.4 0 0.5 0.1 0.9 0.2 1.3-5.1-0.1-9.4-2.3-12.7-6.4-0.6 1-0.9 2.1-0.9 3.1 0 2.2 1 3.9 2.8 5.2-1.1-0.1-2-0.4-2.8-0.8 0 1.5 0.5 2.8 1.4 4 0.9 1.1 2.1 1.8 3.5 2.1-0.5 0.1-1 0.2-1.6 0.2-0.5 0-0.9 0-1.1-0.1 0.4 1.2 1.1 2.3 2.1 3 1.1 0.8 2.3 1.2 3.6 1.3-2.2 1.7-4.7 2.6-7.6 2.6-0.7 0-1.2 0-1.5-0.1 2.8 1.9 6 2.8 9.5 2.8 3.5 0 6.7-0.9 9.4-2.7 2.8-1.8 4.8-4.1 6.1-6.7 1.3-2.6 1.9-5.3 1.9-8.1v-0.8c1.3-0.9 2.3-2 3.1-3.2-1.1 0.5-2.3 0.8-3.5 1z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (687)
                                                                        Category:downloaded
                                                                        Size (bytes):418012
                                                                        Entropy (8bit):5.6868268118868395
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9FFB885C65F054C894EB7798C7FEBB9E
                                                                        SHA1:23DB992670CEB314EA5E405CC7B30376231D1CC0
                                                                        SHA-256:353893C6DFD213C596C69A8955F505AB7A0D3324A7DF583B489472C7E86CC512
                                                                        SHA-512:F3A7EC938F51094B4867C44E808A3A66919932B893C5FD5EAE8670C66F79B10C8D0A1E36FB376F40DA36033EEB9AD5FDFBC6A58A32F8288EBA673C15E06F57FF
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/recaptcha/releases/wqcyhEwminqmAoT8QO_BkXCr/recaptcha__en.js
                                                                        Preview:(function(){/*.. Copyright 2005, 2007 Bob Ippolito. All Rights Reserved.. Copyright The Closure Library Authors.. SPDX-License-Identifier: MIT.*/./*. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. SPDX-License-Identifier: Apache-2.0.*/.var M=function(){return[function(R,c,z,t,Q,T,F,Y,d){if(((Y=[83,5,9],R)>>1&15)<Y[1]&&6<=(R-3&15))a:{for(T=t(c(),41),Q=0;Q<T.length;Q++)if(T[Q].src&&I[37](19).test(T[Q].src)){d=Q;break a}d=-1}if(4==(R^14)>>4&&z&c)throw Error();if(1>((R^Y[0])&3)&&(R|7)>=Y[2]){if(t!=z&&"number"!==typeof t)throw Error("Value of float/double field must be a number|null|undefined, found "+typeof t+c+t);d=t}if(3==R+(24<=((R|4)&27)&&12>(R<<1&12)&&(T=[1,0,!0],Q<t.startTime&&(t.endTime=Q+t.endTime-t.startTime,t.startTime=Q),.t.progress=(Q-t.startTime)/(t.endTime-t.startTime),t.progress>T[0]&&(t.progress=T[0]),f[47](2,T[1],t.progress,t),t.progress==T[0]?(t.A=z,m[3
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):8256
                                                                        Entropy (8bit):5.484915191235322
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E0EB8DD76B3C151893E7F64EAE1466A9
                                                                        SHA1:62E15C01DF3614B64E562553E3604E2C92E6CCE1
                                                                        SHA-256:124F165A1243B48BD2AC21CEBD8852C818C5DEB7692FBFB5C80F5D5B72625DA9
                                                                        SHA-512:B550316CB54547B0137857A956E7AECBC97D81D792077B459246A444D721D62FAEE220FB6DF8BE9199FB30D4FFD18721CE71ADF42AA9EA216D7D69007073E30C
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:"https://fonts.googleapis.com/css?family=Open+Sans:300,400,600"
                                                                        Preview:/* cyrillic-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSKmu1aB.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSumu1aB.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Open Sans';. font-style: normal;. font-weight: 300;. font-stretch: 100%;. src: url(https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTSOmu1aB.woff2) format('woff2');. unicode-range: U+1F00-1FFF;.}./* greek */.@font-face {. font-family: 'Open Sans';. font-style: normal;
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with CRLF, LF line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):16877
                                                                        Entropy (8bit):4.645662233860109
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:585BA00B2C167B90C210161454F843B5
                                                                        SHA1:89EE8372CC6D5EB307CF5840B70D8F3DAB3C57F2
                                                                        SHA-256:E924FFE8BCC65483510A22A7286BD6D4D204E72FFE5927EEC50158F7A7BE50C0
                                                                        SHA-512:A88B3A67285FE475E0CE72101A549C253CFA97BC5B7020279E0F6DA2BD0E315CB823C5A4D1FCFA2A8C3CAE4D944E3E638F632F801D81EE3FDE8BC6EA59563922
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/languages/en.js
                                                                        Preview:(function(global){var Language = {};....Language.pluralFormFunction = function (n) {...if (n === 1) {....return 'one';...}....return 'other';..};....Language.form = {};..Language.form.SaveButton = { message : 'Save' };.Language.form.SubmitButton = { message : 'Submit' };.Language.form.StartChatButton = { message : 'Start Chat' };.Language.form.CancelButton = { message : 'Cancel' };.Language.form.CloseButton = { message : 'Close' };.Language.form.SendButton = { message : 'Send' };.Language.form.EmailPlaceholder = { message : 'Email Address' };.Language.form.QuestionPlaceholder = { message : 'your query..' };.Language.form.DepartmentsPlaceholder = { message : 'select department..' };.Language.form.MessagePlaceholder = { message : 'your message..' };.Language.form.NameErrorMessage = { message : 'Name must be provided.' };.Language.form.EmailErrorMessage = {
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format, TrueType, length 6220, version 0.0
                                                                        Category:downloaded
                                                                        Size (bytes):6220
                                                                        Entropy (8bit):7.889789574771998
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9826398573B96C5B9F622A61CB0B36F3
                                                                        SHA1:7992FB29DFDEAEED0F137ED8F802D9D26F8A6391
                                                                        SHA-256:78E2178802884FF609360C8B3221BECF13DEDFCC0FA130E187D9351573DFE0AD
                                                                        SHA-512:52903A28EF82A9C913B26E3B45728968A9A99A6B7E6E90DA73D836594667DE1AC54F23DD2AAD635740AE77062D1B25CF6057D2FDAC7C0F5CFA229CC85A31D429
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://tirtalawoffice.com/fonts/flaticon/font/Flaticon.woff
                                                                        Preview:wOFF.......L......$.........................FFTM...0............OS/2.......I...`O.].cmap.......J...J....cvt ...`...........Dgasp...(............glyf.......'....j.4.head...0...0...6..R.hhea...`.......$....hmtx.......&...*...xloca...d..."...":L3.maxp....... ... .j..name..............=2post.......U....u...x.c`d``...^...6_....@.ZI.q......L....\...4.P...x.c`d``<...........L@..*`...n............................@......x.c`a|.8......1.....J.e.dha``b`ef..F....HsMah`P...x....=... 5HJ....C8.....x.c.. ................3e..........o..;..x.c```f.`..F..p....|... ........>r....+|d....c~..z `dc.s......*`.X1...........D...*.*.*.*.l.Z.............v.6......x.Yk.$Gu.S.......{....{_........u..l....6vl^?.I....@0.##..$.B"........RlC...$....l..@.. .#...~.D...^]U].u..}..P..B..k.#.l>.dk.....G....9F.H.e.Y..sJ./w.m...7...#.}.-p.....q6MZ........k.=.w.g......%....Gy....^..............d.e{..d.i+..%P2...L..?..d6..8..z..|.yZ.........&.&....d..Cz...K,...'.%(.*.6n.3qe8.>....O{].f..j:iBo...:..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (2054)
                                                                        Category:downloaded
                                                                        Size (bytes):205364
                                                                        Entropy (8bit):4.917846600373663
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:F2A0B527F1C8D3296F40FD5EFFE78902
                                                                        SHA1:02827793E30938E29C6A1476CFABA4FA09051FEB
                                                                        SHA-256:47D522563A9F514094EE94EBCEE33B1AB88BA91D5639393BEECD18BE1FD27C15
                                                                        SHA-512:A7842F06F20B02B56EE0F36C05834CBE9E7D3F3EB08110AFF535869F3B2867E7EECC340CCA904DCD2B1186CB1B0869FD521410C22871C3924CC104CEB07A3115
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-api.sharethis.com/js/sharethis.js
                                                                        Preview:if (!Date.now) {. Date.now = function now() {. return new Date().getTime();. };.}..(function(funcName, baseObj) {. "use strict";.. // The public function name defaults to window.docReady. // but you can modify the last line of this function to pass in a different object or method name. // if you want to put them in a different namespace and those will be used instead of . // window.docReady(...). funcName = funcName || "docReady";. baseObj = baseObj || window;. var readyList = [];. var readyFired = false;. var readyEventHandlersInstalled = false;. . // call this when the document is ready. // this function protects itself against being called more than once. function ready() {. if (!readyFired) {.. // this must be set to true before we start calling callbacks. readyFired = true;. for (var i = 0; i < readyList.length; i++) {.. // if a callback here happens to add new ready handlers,. // the docReady() function will see that it already f
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:TrueType Font data, 11 tables, 1st "OS/2", 14 names, Macintosh, type 1 string, icomoon
                                                                        Category:downloaded
                                                                        Size (bytes):102868
                                                                        Entropy (8bit):6.498925933121704
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:2B47CB1E807C10BE1FBF49B51C560913
                                                                        SHA1:B76BA9478788FE65C08FA9ABF643294D4DB80741
                                                                        SHA-256:8889D14CE56D4B03EECC48280E647E598ADA53FCE9FC4F3EB8E884237CE2ACFD
                                                                        SHA-512:4381192DD5E76D1EE050901B54D83C90EFA1C2878CB37E9DFD691279466D1756D26E67276202FC4DC9FFEC366E2B33E94817D17B4783A9E2254622465D24A183
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://tirtalawoffice.com/fonts/icomoon/icomoon.ttf?srf3rx
                                                                        Preview:...........0OS/2...........`cmap/r&.........gasp............glyf..`.........head..$i.......6hhea...........$hmtx...l........loca!..$........maxp........... name.J.....,....post........... ...........................3...................................@........@...@............... .....................................$. ....... .....).9.I.Y.i.y.........).......... ..... .0.@.P.`.p......... .......... ....................h.b.\................................................................79..................79..................79.........+...+.>.w.......2.............................#"'&'&'&'&'&/.676767676767676763."..........................327676767676767&'&'&'&'&'&'&#.2......#"'&5476."......327654'&#..FAB22+,.................()**547FAB22+,.................)(**547/--$$#".............."#$$--//--$$#".............."#$$--/G2222GG2222G#....##....#.+.."!))))""........."#.........."!))()""........."#........V.....................................................22FG2222GF22U..#$....$#.....+
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):15344
                                                                        Entropy (8bit):7.984625225844861
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:5D4AEB4E5F5EF754E307D7FFAEF688BD
                                                                        SHA1:06DB651CDF354C64A7383EA9C77024EF4FB4CEF8
                                                                        SHA-256:3E253B66056519AA065B00A453BAC37AC5ED8F3E6FE7B542E93A9DCDCC11D0BC
                                                                        SHA-512:7EB7C301DF79D35A6A521FAE9D3DCCC0A695D3480B4D34C7D262DD0C67ABEC8437ED40E2920625E98AAEAFBA1D908DEC69C3B07494EC7C29307DE49E91C2EF48
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxK.woff2
                                                                        Preview:wOF2......;........H..;..........................d..@..J.`..L.T..<.....x.....^...x.6.$..6. ..t. ..I.h|.l....A....b6........(......@e.]...*:..-.0..r.)..hS..h...N.).D.........b.].......^..t?.m{...."84...9......c...?..r3o....}...S]....zbO.../z..{.....~cc....I...#.G.D....#*e.A..b...b`a5P.4........M....v4..fI#X.z,.,...=avy..F.a.\9.P|.[....r.Q@M.I.._.9..V..Q..]......[ {u..L@...]..K......]C....l$.Z.Z...Zs.4........ x.........F.?.7N..].|.wb\....Z{1L#..t....0.dM...$JV...{..oX...i....6.v.~......)|.TtAP&).KQ.]y........'...:.d..+..d..."C.h..p.2.M..e,.*UP..@.q..7..D.@...,......B.n. r&.......F!.....\...;R.?-.i...,7..cb../I...Eg...!X.)5.Aj7...Ok..l7.j.A@B`".}.w.m..R.9..T.X.X.d....S..`XI..1... .$C.H.,.\. ..A(.AZ.................`Wr.0]y..-..K.1.............1.tBs..n.0...9.F[b.3x...*$....T..PM.Z-.N.rS?I.<8eR'.3..27..?;..OLf*.Rj.@.o.W...........j~ATA....vX.N:.3dM.r.)Q.B...4i.f..K.l..s....e.U.2...k..a.GO.}..../.'..%$..ed.*.'..qP....M..j....../.z&.=...q<....-..?.A.%..K..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (546), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):546
                                                                        Entropy (8bit):5.050550661804725
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:09C3819D373BD4178A620D721429FADA
                                                                        SHA1:FC407211BC5ED4384DC85E981C5947F727254BD9
                                                                        SHA-256:48126B4A0CC388BA014594D6D64A6C6C6BB1C0EA145BB1C3C2B1DA1A514E4A5C
                                                                        SHA-512:34B6AA3D26863729EFDD4B4CCB7AA3D1F111198BCEFB3F7D46BC6F72AD5BB47594134B76ED8C7ECC152773B010CC7D1027F8A31691B27671034E22C77C941840
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-2d0b9454.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-2d0b9454"],{"31dd":function(a,t,s){"use strict";var e={name:"base-header"},d=s("2877"),n=Object(d.a)(e,(function(a,t){var s=t._c;return s("div",t._g(t._b({class:["tawk-card tawk-card-primary tawk-card-small tawk-header-container tawk-flex-none tawk-header tawk-custom-color",t.data.class,t.data.staticClass],style:[t.data.staticStyle,t.data.style]},"div",t.data.attrs,!1),t.listeners),[s("div",{staticClass:"tawk-text-center"},[t._t("default")],2)])}),[],!0,null,null,null);t.a=n.exports}}]);
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (4509)
                                                                        Category:downloaded
                                                                        Size (bytes):254227
                                                                        Entropy (8bit):5.554538440834148
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:D88E41528C2319C3E19E9308647A5DB8
                                                                        SHA1:667C8663F9AE6EEC96AECF7097358319E7994BDA
                                                                        SHA-256:FAE1EA838CC309F01C4B0CFC178ECEA49A7F2A2F2E6C8B57DD1EDDFE285B191D
                                                                        SHA-512:A5AA42C6A509DDF0104E25114637FC822CDEF68E9B6258C4FA6B4B26D9BABB35CF7F6BCDF10B13D55C348F8B56D6FFD79818645A6F420AF2B3217765CE8BF806
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtag/js?id=G-4NSWPYW7GM
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"4",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0},{"function":"__c","vtp_value":"undefined"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_cross_domain","priority":23,"vtp_rules":["list","tirtalawoffice\\.com","^tirtalawoffice\\.com","tirtalawoffice\\.com$","^tirtalawoffice\\.com$","tirtalawoffice.com"],"tag_id":20},{"function":"__ogt_1p_data_v2","priority":13,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):2988
                                                                        Entropy (8bit):5.434643992521198
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E28E9426D7814CE43C72CF9A042F67B2
                                                                        SHA1:599A74ECF1DCF344E2BD7B32E1D06E6743A439CD
                                                                        SHA-256:EFC561FC80B7FD0F8E33F8B67E003B79A7402EE9ADB9B2EE46946A560679A6D3
                                                                        SHA-512:39C9F4CE9E20A6C31EDAE668BC6580560ED3BD3CD23FF0EE7001E8BD77F0ABB49202B8B06E37977B630C4C24E0224EA7D29057F5EC5E8BE865964D93A17666A9
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:"https://fonts.googleapis.com/css?family=Playfair+Display:400,700"
                                                                        Preview:/* cyrillic */.@font-face {. font-family: 'Playfair Display';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/playfairdisplay/v30/nuFiD-vYSZviVYUb_rj3ij__anPXDTjYgFE_.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* vietnamese */.@font-face {. font-family: 'Playfair Display';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/playfairdisplay/v30/nuFiD-vYSZviVYUb_rj3ij__anPXDTPYgFE_.woff2) format('woff2');. unicode-range: U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;.}./* latin-ext */.@font-face {. font-family: 'Playfair Display';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/playfairdisplay/v30/nuFiD-vYSZviVYUb_rj3ij__anPXDTLYgFE_.woff2) format('woff2');. unicode-range: U+0100-02AF, U+0304, U+0308, U+0329, U+1E00-1E9F, U+1EF2-1
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):152
                                                                        Entropy (8bit):5.1022355752559445
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:0BBE6CD8EEC9DC85033BAB7B31ECE14C
                                                                        SHA1:408451C14A48EDA0E060C84761B24E25086E4523
                                                                        SHA-256:7FD70D75F5F3C07DC2CB6F40A225EDC23452567F77991BFC589B176ABA8536EB
                                                                        SHA-512:2C281DB836B5954ADFB42F1BE0868598FBB811A9C03B908C8098FD3D939A34360ABB428DE4301B82541154C4949FB8E067C57575B3BC053F7FFD88E9A5CDB49E
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISJQnflGlVC4tndRIFDW3a7h0SBQ0PqGwMEgUN4YU_hxIFDVo0E44SLAn9uqUg1dGU6RIFDRVQj_4SBQ1a3e0uEgUNUopJoxIFDUC-9V0SBQ1AWQ9bEh4Jdy-xCrxiOV0SBQ2UkJL6EgUNLIsp4hIFDVNaR8U=?alt=proto
                                                                        Preview:CiQKBw1t2u4dGgAKBw0PqGwMGgAKBw3hhT+HGgAKBw1aNBOOGgAKLQoHDRVQj/4aAAoHDVrd7S4aAAoHDVKKSaMaAAoHDUC+9V0aAAoHDUBZD1saAAobCgcNlJCS+hoACgcNLIsp4hoACgcNU1pHxRoA
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (24880), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):24880
                                                                        Entropy (8bit):4.980262785502149
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:205B7836B56519B0725AE54190634C08
                                                                        SHA1:3FB6832CE2F984A9D547BC805C19DFB902230A4B
                                                                        SHA-256:F08B0BFC5CA2E4FB4D2BEFA761A291C460279D018754531C1ED73FCB8BBD83B6
                                                                        SHA-512:BA3A4523B1F9FCB240266240B35A6EFDB7664A5888E057E370E223F541B66FB66C2FF8BEFBC815A0D3E0B50C7816E3E4C777BF69766CF9BA7F7483E46B1A0792
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/css/min-widget.css
                                                                        Preview::root{--tawk-header-background-color:#03a84e;--tawk-header-text-color:#fff}html{font-family:Lato,sans-serif;font-size:1rem;font-weight:400;line-height:1.618;letter-spacing:normal;background:0 0;color:#242424;scroll-behavior:smooth}body{margin:0}a:active,a:hover{outline:none}a:focus{outline:1px solid #1f6885}.tawk-link,a{color:#03a84e;text-decoration:none;cursor:pointer}.tawk-link:hover,a:hover{color:#03a84e;text-decoration:underline}abbr[title]{border-bottom:none;text-decoration:underline}b,strong{font-weight:bolder}:not(pre)>code,:not(pre)>kbd,:not(pre)>samp{font-family:Lato,sans-serif;font-size:.812rem;color:#bf1212;white-space:nowrap}em{color:#bf1212}ins{background:#ffd;color:#545454}mark{background:rgba(109,55,218,.1);color:#03a84e}q{font-style:italic}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sup{top:-.5em}sub{bottom:.25em}audio,canvas,iframe,img,svg,video{vertical-align:middle}audio,canvas,img,video{max-width:100%;height:auto
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):16
                                                                        Entropy (8bit):3.75
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:EC331136E75314D2030EE013B6069921
                                                                        SHA1:6B7428B8B15616A67F767D42964AF94FCBE2A803
                                                                        SHA-256:A7358DF6B7B60280F2A0D7CD5B70A9F1DFA4FCE5C31FB1A24FB2F109AF7EE977
                                                                        SHA-512:30C9B411C937F7D3DE9E59D8BE1CDE4F262B05C6AC2EC2D2C1956E705FE255D84DE17913826A0378B7FD4E51E075EE72A6BF16B870BF78B83D4F1D4507A44278
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISEAmWC9qf6G1rJxIFDQbtu_8=?alt=proto
                                                                        Preview:CgkKBw0G7bv/GgA=
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):4708
                                                                        Entropy (8bit):5.444709878116786
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:856672095F8911207BD650A0E01BD2A7
                                                                        SHA1:2F3618E5534F9554056C8B41518F1BAF5E1B8910
                                                                        SHA-256:5C89B6015999FFE8B03D067F51B6232B2C50121E4595DD4732DAD3B26CAF3B06
                                                                        SHA-512:009FA6778306AF6F3ACE2453990FD832D8C33EFF2D28A96F9AB455DFCDE77944D898DF5F284A48A506CDE467BF957DDC052DF5FC3280697B0F808E67B86F82DE
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.googleapis.com/css2?family=Inter:wght@400;500&display=swap
                                                                        Preview:/* cyrillic-ext */.@font-face {. font-family: 'Inter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/inter/v12/UcC73FwrK3iLTeHuS_fvQtMwCp50KnMa2JL7SUc.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Inter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/inter/v12/UcC73FwrK3iLTeHuS_fvQtMwCp50KnMa0ZL7SUc.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* greek-ext */.@font-face {. font-family: 'Inter';. font-style: normal;. font-weight: 400;. font-display: swap;. src: url(https://fonts.gstatic.com/s/inter/v12/UcC73FwrK3iLTeHuS_fvQtMwCp50KnMa2ZL7SUc.woff2) format('woff2');. unicode-range: U+1F00-1FFF;.}./* greek */.@font-face {. font-family: 'Inter';. font-style: normal;. font-weight: 400;. font-display: swa
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):456
                                                                        Entropy (8bit):4.7909534792721535
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:FA43B4EDE18498B114FC7185993F6DA7
                                                                        SHA1:53C9D2ACFFAB46DD9DA8872EE6D8C0D7CAB42FD8
                                                                        SHA-256:CB8C2B19FD9B56C41DB14BD71B5C0616C1BA4E99B08C8E75084CF695F74B7120
                                                                        SHA-512:8F610E11DACC38551E0088AB6B107834303CA67374D420D6916D6E078157C7329F6E51369B272DD2B624BD9EFC6E89BF8F2E9EB03E8E795563375E6E87BCFB3C
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/linkedin.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m13.3 31.7h-5v-16.7h5v16.7z m18.4 0h-5v-8.9c0-2.4-0.9-3.5-2.5-3.5-1.3 0-2.1 0.6-2.5 1.9v10.5h-5s0-15 0-16.7h3.9l0.3 3.3h0.1c1-1.6 2.7-2.8 4.9-2.8 1.7 0 3.1 0.5 4.2 1.7 1 1.2 1.6 2.8 1.6 5.1v9.4z m-18.3-20.9c0 1.4-1.1 2.5-2.6 2.5s-2.5-1.1-2.5-2.5 1.1-2.5 2.5-2.5 2.6 1.2 2.6 2.5z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):22356
                                                                        Entropy (8bit):3.3962613600010463
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:F66E029841759471D2EC78B86760DCA7
                                                                        SHA1:D9DB67738984EFEE3DD63CB144759AC0521C7DDA
                                                                        SHA-256:5108EF00C54E1F6CE859852834135447457CF19EE19AA7B0FB55B64B425CB526
                                                                        SHA-512:56EC42C707F42339DC21F9BBBA6465E75FBFB92C42B4EA180C7F18120E522284B1FA792C63A214FD472EA47F93203AF98CE67CC06AC317D945E619E3BA4E87EB
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/assets/images/attention-grabbers/168-r-br.svg
                                                                        Preview:<svg version="1.1" id="Layer_1" xmlns="http://www.w3.org/2000/svg" x="0" y="0" viewBox="0 0 169.6 107.9" xml:space="preserve"><style>.st0{fill:#2fa1ad}.st2{fill:#ffb817}.st3{fill:#fed524}</style><switch><g><path class="st0" d="M20.3 71.9c-.5-.1-.9-.2-1.1-.3-1-.4-1.2-1.2-1.2-1.5 0-.4 0-.9.3-1.7.3-.8.5-1.4.8-2 .3-.6.7-1 1.1-1.3.5-.3 1-.5 1.6-.5.4 0 .8 0 1.2.1.1 0 .3.1.5.1l.3.1c.1 0 .4.1.7.2.3.1.7.2 1.2.3l2.2.6c-.6-.4-1.4-.8-2.3-1.3l-3.7-2.1c-.4-.3-.7-.7-.8-1.2v-.9c0-.2.1-.5.2-.8.1-.3.1-.5.2-.7.2-.7.5-1.4.7-1.9.3-.6.6-1 1-1.4.4-.3.9-.6 1.5-.7.5-.1 1-.1 1.6 0 .3 0 .6.1 1 .2s1.1.3 1.9.5c.5.1 1.1.3 1.8.5-.2-.1-5.8-3.6-5.8-3.6-.4-.2-.9-.6-1-1.2-.2-.2-.2-.7.1-1.4.1-.2.2-.5.3-.9.2-.4.4-.9.7-1.3.3-.4.8-.8 1.2-1 .5-.2 1-.3 1.5-.2.2 0 .4.1.5.2.3.1.8.4 1.4.8.5.4 1.2.8 1.8 1.3.7.5 1.4 1 2.2 1.6l2.3 1.8c.8.6 1.6 1.2 2.3 1.8.7.6 1.4 1.1 2 1.6.6.5 1.1.9 1.5 1.3l.8.8c.3.4.5.9.5 1.4 0 .3 0 .7-.1 1l-.8 2.5c-.2.6-.5 1.1-.9 1.5-.4.3-.8.6-1.3.7-.4.1-.9.2-1.4.1-.3 0-.6-.1-.9-.1-.2 0-.3-.1-.5-.1l-3.3-1h.1c.9.5
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 48412, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):48412
                                                                        Entropy (8bit):7.9960297576602555
                                                                        Encrypted:true
                                                                        SSDEEP:
                                                                        MD5:31A8297826CDCEA344698FF952694A7F
                                                                        SHA1:4FA1EE4C471D1C05E9141855EEC5EE09B898D594
                                                                        SHA-256:7C7818C25A18E8A38553FCBCBC2AD0B5E964103A7D2E494F82815E3F70BF3FC5
                                                                        SHA-512:A303971F0E1EA4759679ADF3BE3DC26DFFB13D9AB6B9D2B3C1CC34F57EA6B7870F18E4B7C8552B9225915A5E9E070FAA37DC17F83B5CD66CDBC9149238692123
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.gstatic.com/s/opensans/v35/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTS-muw.woff2
                                                                        Preview:wOF2..............BX.................................:..h?HVAR...`?STAT.$'...0+...|.../V........+..2.0..\.6.$..`. ..~......[.1qE....M.u.../.V..Y.F..V..@..@.q.1..Z.....I..L..(.:.......5*.m....!..8.....oX.Y].!.Z...P'+..#XV.H..>^.R..y!(./.. _n..=..[.e.\!...|..KXX.sb>.C....o.>....1..G./..{G_.".N.(H$.S...Gz.z...Xf.....PKR.g.>..'.r8..8.v5l.pR.tt.....b.j..&9.m.h..A..D.........K.d.7x...k.q._...lxa.-J<.j.{..}....F.n.../&....u........"M.(.e.$..j"...Rt.......{.B,..F..^..K{e'6Fa....r.v..`..px6..IE'.w&';....*...w_..l&.6..%@... .bD..?.^;oF..7...x...k.E..-B."Zt.@....W..g?...`*dNE.....n=...Z...+....&.i..QVv.;n.1...7om...s...G... !N..!!x1)-.d...........|o'....fR[.......K.........F.....%M)../Rs..x.m.L...........Fpu........RJ..+.=..[._Z.J.*<.XP..O xAQ]...;..7..gE.{....c.y@_.G.(.5.u>../.n.>......[4.A....D......g.d.r..mw....3.$.!<..^......G....b.......$p....)...t.....py.]..^.p...U P.O..(.h.M@6hN..]......v...zu#!.Y.a..u/......4i.F..X..B.>..}..+I...zz.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):104
                                                                        Entropy (8bit):5.042444100353061
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E9CF70BE920DDB317A63EEE76F3E0EB5
                                                                        SHA1:04F9F575AA76BB22CF9F76A027E2D13BA3B9548D
                                                                        SHA-256:EF32C20631AAB1363A0B8353A50F3B288C255F34F2E4EA23BD0708F087AA9CC5
                                                                        SHA-512:FFD31BC4F41D5B31F24CE3DE726B5E3AF3D89DACBC17CE945BABB18A2E5BC8322E1A545DDAB00CF2DF702EA197C02F936427D59CC741F050E7740E598279C218
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISJQkr2rSZ4tgOnxIFDZSQkvoSBQ0siyniEgUNU1pHxRIFDQbtu_8SHgl3L7EKvGI5XRIFDZSQkvoSBQ0siyniEgUNU1pHxRIQCZYL2p_obWsnEgUNBu27_w==?alt=proto
                                                                        Preview:CiQKBw2UkJL6GgAKBw0siyniGgAKBw1TWkfFGgAKBw0G7bv/GgAKGwoHDZSQkvoaAAoHDSyLKeIaAAoHDVNaR8UaAAoJCgcNBu27/xoA
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:dropped
                                                                        Size (bytes):6225
                                                                        Entropy (8bit):5.976934819783072
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:2BD5C073A88B83ED74DB88282A56DDFB
                                                                        SHA1:D0EBFC376F8C6A44A8D4CD216817DCD7D0C33650
                                                                        SHA-256:AB5C23A05E39DEED14D9D8262B0DCE9F024F86105A27196CAD37D14A3F516E09
                                                                        SHA-512:5C6C4A92E93FC0F6A675658CC84F6187FDEBD3EEE94EFD07E24658736CBA598F3BC7156B19834B13FB44C1D43FCB7DF9FCCA7F0A453037E30DA76BA8F4B23B89
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" height="24" viewBox="0 0 24 24" width="24"><path d="M0 0h24v24H0z" fill="none"/><defs><path d="M21.5 5h-9.17L11 1H2.5C1.68 1 1 1.68 1 2.5v15c0 .83.68 1.5 1.5 1.5h9.17L13 23h8.5c.82 0 1.5-.68 1.5-1.5v-15c0-.83-.68-1.5-1.5-1.5z" id="a"/></defs><clipPath id="b"><use overflow="visible" xlink:href="#a"/></clipPath><g clip-path="url(#b)"><image height="31" opacity=".2" overflow="visible" transform="translate(3 1)" width="29" xlink:href="data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAB0AAAAfCAYAAAAbW8YEAAAACXBIWXMAAAsSAAALEgHS3X78AAAA GXRFWHRTb2Z0d2FyZQBBZG9iZSBJbWFnZVJlYWR5ccllPAAABQBJREFUeNq8V8tu20YUvXdm+LCk RKiMwI1TFEXhVZJd1gW66xekv9DPqPsvXdU/UaDroJskKy+CInCcGpKtFy2SM/f2DEXZia0odtKW AkFJ8zhzzn3S0Ycvps+79EMDbj3Yfgv4EM+XTN/fEOb3Zg3AXmq7j64D5/e/x/EfzZMnX5jx+LFZ LLyp6yNDOzskYb6RubFdpbdvKUl2Jc+d9PvP5dmzUyH6TVoYXQOq+H5g9vb+cONsO9maLpIyyZPU kZNAppmh9Vpg5kSXwCSVJ5/Vi/r8Tl73y2F9ePidJ3oaga+B4vkUgF+6EW1ndz11gvNdDdL1bDN
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):565
                                                                        Entropy (8bit):4.49467583545669
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:B55D8D2B9321E381A3C38A4BDDB74037
                                                                        SHA1:000C29635758E608BBE15D191E953ADB27627C2E
                                                                        SHA-256:5C833B1818762F1E134FBB158447FB0B92F2B018B15AA36F2E2405213F830D38
                                                                        SHA-512:F4E29945A0EDBB81DCE2719FD6672FD925B1D80B53D69B1FD36FC32300582A3E45677C4AF55DA54476754D3DB1CEB3C2FEF3A1BC0BEC8862A2F48FE49FE87279
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/arrow_left.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m22 30.7q0 0.3-0.2 0.5l-1.1 1.1q-0.3 0.3-0.6 0.3t-0.5-0.3l-10.4-10.4q-0.2-0.2-0.2-0.5t0.2-0.5l10.4-10.4q0.3-0.2 0.5-0.2t0.6 0.2l1.1 1.1q0.2 0.3 0.2 0.5t-0.2 0.6l-8.8 8.7 8.8 8.8q0.2 0.2 0.2 0.5z m8.6 0q0 0.3-0.3 0.5l-1.1 1.1q-0.2 0.3-0.5 0.3t-0.5-0.3l-10.4-10.4q-0.2-0.2-0.2-0.5t0.2-0.5l10.4-10.4q0.2-0.2 0.5-0.2t0.5 0.2l1.1 1.1q0.3 0.3 0.3 0.5t-0.3 0.6l-8.7 8.7 8.7 8.8q0.3 0.2 0.3 0.5z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 245 x 253, 8-bit/color RGBA, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):41925
                                                                        Entropy (8bit):7.958660778567228
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A8A3C88DA8F63D1086336F2A6927AF98
                                                                        SHA1:EE5A1E1C556CD25BECBC674DC083B5E5D479AC6B
                                                                        SHA-256:4D34CF8EC9A7E6E8E67C0E452DE4CEA9C35D7FE8EC5F94AB4C35861470DE1432
                                                                        SHA-512:7BBF8A3DFC8A2A5676518B7E8B33E6422918E13A72239930B1A237AD8E8B446C7EACBF5D4F7AC86C93468CC5E0666AFB7DD187DB526F13FB8FD9BB6D38D94574
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://tirtalawoffice.com/icon/overseas-license.PNG
                                                                        Preview:.PNG........IHDR.............d.1.....sRGB.........gAMA......a.....pHYs..........o.d...ZIDATx^..w.uE.6|.......c ...."b.<..bN`V.dV..**.Y1.9a@.T0+b..FGg.1...u...g........;.Z....CU.p...o...h+...[..I.'.~*..........?....?.c...S....[..W..@=o.1......'2%[.....R&...C...e,..1v$._.._.wc....M.....$..T$m3......8E....U.$.v."..7(H.yQ.C.H.YK......?...?...u...U.........K;..&.#T$.Q..b@.aIWG^....(.V...K^.yP....r.DJ..Y(-...4ej....)<..9.g3.....I....S.@.P#tqBgH1..).;t.is.R.....o.../.%..=8.|.ou..U.:.>/u...;u..$.=P....a.2.gu.{X%......7...".8k -;#q;&.....+_CH^..W..9uef..L....A.1.Y).PBF....`T[.".8g.3......w\..n5Z....Z.......J.+a...!!.Q.L.U...4.U.....qV.E....i.w..J3q.!Fb..}.P.o%..5...j<..1m.j....O|...&.....(.I..3..<.....U.Q.Y......[?...%....i.R_f3.~7B...:.....C....[i.N.aV.V..]J|%%lU.c.<gL..O...(....w&..y.O.Z....cIGAx.'i_.(c."'^Ow.x].'..L.r../.......(.(g.2....;..\h(o%...En...E...6.hR|5.}.....`...7......pe^H.....i.P.+E|+S.7..l.....C..+.A._.....;ot.g.>.......w.^..W....
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (4509)
                                                                        Category:downloaded
                                                                        Size (bytes):251190
                                                                        Entropy (8bit):5.555235925149433
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A3F99FD6B623A7F1A62095946CD0E308
                                                                        SHA1:2A512CCF4C685499067256FAFFB74B09364532CB
                                                                        SHA-256:2F8D35B2CBFBB90382507185FF5A04AF64E5AB21C0141D8971F6EB51E01BE346
                                                                        SHA-512:ABBBA49BAD16DF8A30E5D29F32AD4C8D43A9F9463B26D077B249A2E35886EE0851F12C0DF68CE3333CCD7C7C16BC270A631361AFC051928E919A2C5625D70AD7
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtag/js?id=GT-MK52KJL&l=dataLayer&cx=c
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"4",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0},{"function":"__c","vtp_value":"c"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":"google.co.uk"},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_cross_domain","priority":23,"vtp_rules":["list","tirtalawoffice\\.com","^tirtalawoffice\\.com","tirtalawoffice\\.com$","^tirtalawoffice\\.com$","tirtalawoffice.com"],"tag_id":20},{"function":"__ogt_1p_data_v2","priority":13,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (12748), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):12748
                                                                        Entropy (8bit):5.471144681224903
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:BD2FFB4182F6B444217F6C8BD3AE41E2
                                                                        SHA1:DE1B6A7D7BA7E1A58679BFD5AC44AE62E32BD341
                                                                        SHA-256:B72A47AE1AEF48A901294FB34CC05DE9317D40CD8E21E9B6D9D606338317575D
                                                                        SHA-512:7C8FD3E74A7C3648E6E0F46FB9EF49FDD7A6AFB6DA9708735417EF9698FA37C09456D8D9E05B6FB161F948F31D852BB552A91A3F85654BC87A819362EA9EFA48
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-api.sharethis.com/powr.js?platform=sharethis
                                                                        Preview:!function(){function j(e,t,o,n){var r=new Date;r.setTime(r.getTime()+24*o*60*60*1e3);r="expires="+r.toUTCString();n=n||"samesite=None;",document.cookie=e+"="+t+";"+r+";"+n+"path=/;Secure"}function z(e){for(var t=e+"=",o=decodeURIComponent(document.cookie).split(";"),n=0;n<o.length;n++){for(var r=o[n];" "==r.charAt(0);)r=r.substring(1);if(0==r.indexOf(t))return r.substring(t.length,r.length)}return""}var G,Y,o,X="https://www.powr.io";function F(){return function(){}}function K(e,t,o){e.addEventListener?e.addEventListener(t,o,!1):e.attachEvent&&e.attachEvent("on"+t,o)}function Q(e,t,o,n,r,i){var a=e;F()("Match:",e);var l=a.match(/powr-[^\s\]]*/i),e=a.match(/id="[^"]*"/i),e='<div class="'+l+'" '+(e=null==(e=null==(e=null==(e=null==(e=null==e?a.match(/id='[^']*'/i):e)&&null!=(e=a.match(/id=[^\]]*/i))?e[0].replace("id=",'id="')+'"':e)?a.match(/label="[^"]*"/i):e)?a.match(/label='[^']*'/i):e)?"":e)+"></div>";return F()("Result is:"+e),e}function Z(e){for(var t={},o=e.search("\\?"),n=(e=e.sub
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):40
                                                                        Entropy (8bit):4.458694969562842
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:2302F9FDA1404E798207DF7BBD24735C
                                                                        SHA1:AE15659EE9E2AB273B76248325B3FF2BBFAFDFE5
                                                                        SHA-256:22A45DD09512906CEC062187B37B12BC21090E3998F31E6CFE930D8872D11842
                                                                        SHA-512:A82995C655C2FEFF330108EDF57BAD3374300A9D318CC848DE5F37821215F11F9668FBC500F7DA3805159839F2F7B906CCE2BD23242958134459A78C8F320726
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTA0LjAuNTExMi4xMDISHgl3L7EKvGI5XRIFDZSQkvoSBQ0siyniEgUNU1pHxQ==?alt=proto
                                                                        Preview:ChsKBw2UkJL6GgAKBw0siyniGgAKBw1TWkfFGgA=
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):565
                                                                        Entropy (8bit):4.489859281890485
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:9928D025BD5792B718EE0A185F62E67C
                                                                        SHA1:16406D7B5B6D383B12859B853CF6CB7E3733E33D
                                                                        SHA-256:1BAE747C7FD090F56608956A97C870391E1C43F89D24D5766129B75628985C1E
                                                                        SHA-512:AE02F45454A4FB7B4D05CB5CCCA4BB5BD0D86909916BD78BA300B009CFCC5E71B89A812EA2E650B0D2EB9065D78D512180C4F8843E7DFF3109D3FB68E4810E7F
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/arrow_right.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m22.3 21.4q0 0.3-0.2 0.5l-10.4 10.4q-0.3 0.3-0.6 0.3t-0.5-0.3l-1.1-1.1q-0.2-0.2-0.2-0.5t0.2-0.5l8.8-8.8-8.8-8.7q-0.2-0.3-0.2-0.6t0.2-0.5l1.1-1.1q0.3-0.2 0.5-0.2t0.6 0.2l10.4 10.4q0.2 0.2 0.2 0.5z m8.6 0q0 0.3-0.3 0.5l-10.4 10.4q-0.2 0.3-0.5 0.3t-0.5-0.3l-1.1-1.1q-0.2-0.2-0.2-0.5t0.2-0.5l8.8-8.8-8.8-8.7q-0.2-0.3-0.2-0.6t0.2-0.5l1.1-1.1q0.2-0.2 0.5-0.2t0.5 0.2l10.4 10.4q0.3 0.2 0.3 0.5z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):372
                                                                        Entropy (8bit):5.085833487113797
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A5AA43FA302867D3E888AC2F69B7B288
                                                                        SHA1:952B104251965AC706BACA3A022C103104E8FABE
                                                                        SHA-256:2986551FD9E82929EABB8CBA7C44F74A28D8496C744893432F067B320DFF55DA
                                                                        SHA-512:C32AF9ECF054F30FE9EBF1362385BA8E11106169251D433BEACEC02F3E0D7C078E35C109167B1360707BC5F1B0718B00E9044E2C75633F6D263F2C8B87274E2B
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/messenger.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 50 50">. <g>. <path d="M25,2C12.3,2,2,11.6,2,23.5c0,6.3,2.9,12.2,8,16.3v8.8l8.6-4.5c2.1,0.6,4.2,0.8,6.4,0.8c12.7,0,23-9.6,23-21.5 C48,11.6,37.7,2,25,2z M27.3,30.6l-5.8-6.2l-10.8,6.1l12-12.7l5.9,5.9l10.5-5.9L27.3,30.6z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (10469), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):10469
                                                                        Entropy (8bit):5.311542903443766
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A902D29BB2D86F4DE3FEAE8E697EED5A
                                                                        SHA1:87DDB488D60DF982C5A55A15E62D59C1044C2AB0
                                                                        SHA-256:7979EF8653D67F3FA9DD237E08A359371AE1F541E62EC2B135364A0969CA7F8F
                                                                        SHA-512:9B4C8678CC0176EE2C223BC1C4C00AF94E95F3A43D01658550AC164644F5465DFD4514303A33DA2699DC12CED880A23037815BEC40F66DF06DD3143B1402D1BD
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-f1596d96.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-f1596d96"],{"0bdc":function(t,e,i){"use strict";i.r(e);var s=i("4ba0").a,o=i("2877"),n=Object(o.a)(s,(function(){var t=this,e=t.$createElement,i=t._self._c||e;return i("i-frame",{attrs:{cssLink:t.cssLink,styleObject:t.styleObject,width:t.width,height:t.height}},[i("div",{ref:"tawk-bubble-container",staticClass:"tawk-bubble-container",attrs:{id:"tawk-bubble-container",role:"button",tabindex:"0"},on:{click:t.toggleWidget,keyup:function(e){return!e.type.indexOf("key")&&t._k(e.keyCode,"enter",13,e.key,"Enter")?null:t.toggleWidget.apply(null,arguments)}}},["text"===t.bubble.type?i("div",[i("canvas",{ref:"tawk-canvas-bubble",attrs:{id:"tawk-canvas-bubble",width:"146px",height:"85px"}}),i("div",{staticClass:"tawk-bubble-text-container\n\t\t\t\t\t\ttawk-flex\n\t\t\t\t\t\ttawk-flex-center\n\t\t\t\t\t\ttawk-flex-middle",style:{top:t.isBottom||t.isCenter?"5px":"auto",bottom:t.isBottom||t.isCenter?"auto":"5px",left:"auto",right:"9px"},attrs:{id
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):1842
                                                                        Entropy (8bit):7.844880044441599
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:C69C796362406F9E11C7F4BF5BB628DA
                                                                        SHA1:E489CE95AB56208090868882113D7416ABF46775
                                                                        SHA-256:4DAC0026FBFA2615DCE30C0AF12830863FE885F84387A0147B9E338F548D5D82
                                                                        SHA-512:D3AD560ED0FD29BE7D2CC434694F09E5A6FBEA8B29C0611AECB54A1B73B4D722C53F42A19DAE9E3D5D358444E50FB8FFFBC39D67CE751BDBC8C861F6F95D3162
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/images/branding/product/2x/translate_24dp.png
                                                                        Preview:.PNG........IHDR...0...0.....W.......IDATx..Uw.X...........b.....pb.Sfff.6....3o.wvF.(..r.u..9_|...Is%..D......Xz.c....;...y;.....&#.l......H...X..s..]}..5`aZ..D.m....uk.c..i.|.H... I#yB.7.0..._E.".h..Xt.....9.4.......0:y.....F.ua^.|.....K..G..b&2;.z."...B/l$..s3.@..G..Z..`...p..EUU.hni...aZZZT......."...H.Z.....H....<..g.......U.........f."../...Gg...$....<YTU.p.....ND"$^.5!..@.8....Nhj.f.]......"..B..i..,...oh.5.....F.L........;"C...bO...*.Qa.G..!.....4.._....l..N.].....g...PoD....1r{......X.1..!.....}.o....=..^6i.{.......9`i...\~...Dyy9..`..D...n>.....7:.....1...t.(.D.=>....DH.0...K.Mx....,....$..1.1.P.T.............@'..6...Kv..e...D.?.X...k.2..|l.$m&...K/.c......Vn....V ...`I......8al.zT.=..+Wr..%?.X.`..g....,..[...nc..:!..$.@2..3.|....sB...&..*.a.<..}).zX.Q.)5....X.1..bk.....Vn...C#.c......mx.=.[...,.r.G....OMS....e.06.#.+..8Fne......B!...%..,........W...*.F..x#.Vv....I..c(...x5..u.....`hP.......&>......8...D#Cg.v.{Hyb.v..8.K7X`.....|O.z.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 42 x 16, 8-bit/color RGBA, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):910
                                                                        Entropy (8bit):7.7455040862049085
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:EFA6BB2BFE459BC6F4BDAFA3DB0383F6
                                                                        SHA1:52D15CE52FE50643E542C17812DE43F4ED1B6EE0
                                                                        SHA-256:6318394F737C66F0E2CCFCD88E3935C6667633A1B95FA29FBA2B75431D55EEF2
                                                                        SHA-512:E23C04D8997F5C2F92070E09261B7EE50D9DF8753F45CF66F604F0874FFA8D99E947C97C528EC02A2C3FBE8E43D840B343A7D0225532980D5DA95031216415B7
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/images/branding/googlelogo/1x/googlelogo_color_42x16dp.png
                                                                        Preview:.PNG........IHDR...*.........`"....UIDATx..T...=.Mm......&[....Sl..m.m....U....;.uf..frrr...v...U)...).....2Q..`.y.*...U.9..;..0.^........B.......].h.^..... . L3....jQw..vB.D....<..P.4..|.B....d..?.....Qv.....Dv..$...._.|.*.@........k....`..JG...$..T.y|T.......v.iH...yc6'...%..&.w.oI.ZS{..!6A@.Y.....a....U]..:...g-......01F........Q...k#..G\....~.+....z.>....F...}1[..~.9..r[.?..9......2~....e."1.).}[.WW.{.r...|D..<7..t.M.`..S...8.ab..F ....n..S.:n.>1(g.p$.:k1..6...Y..@.5.8.0y.....R...;.K\. 0p...g.,r.E...............=.....!.^..Y!..D.Z.....aV.....;F.4...!.`^.L.VQ.....&...d....O.\...I).!1....{......K.f*.e ....L......~.%IY(..Y.....NeA...?.^..2.C..^........P....)T.&?.zm.Sl.b..l.D...%.{.B>X{.9Y..M..:.)......EK..b.......}....|.o..].....GH?..3F.B(.:.....AdA........Z... .L....)..@?...f.F....6......u..oQfMC.....OC.1[3..j..j.G...&..D`........@>...g....IEND.B`.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 93 x 107, 8-bit colormap, non-interlaced
                                                                        Category:dropped
                                                                        Size (bytes):5926
                                                                        Entropy (8bit):7.963582328996129
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:926668A14DCDCEFBF9538AD5EAACB640
                                                                        SHA1:33A5D7AA53AEAA00D3A8F5B0A15CED5815625D25
                                                                        SHA-256:8F4E0BB0F1D373D49B0E11CE32B31021C74A57619F5C977D8913B1458FD6FB97
                                                                        SHA-512:51277896BB68AEA39A63D22E4A91DA76974B50DED2FBDF3EEAA506FF63060ABB70810AD9C76E06CDCAFFC9D3FBE3005BD5996A73D44204E663E2C4ABC4908A76
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:.PNG........IHDR...]...k.....".~A....gAMA......a.....sRGB........!tEXtCreation Time.2023:03:15 18:39:13.E.e....pHYs..........o.d....PLTE........."""............)))!!!'''.0/'((010........ ......*++.........12-...---...&&%587022/0+,,,...465353))&8::$$#......221,-/..,,($$%233...+-,..;><$&%...:=:256.....ADB''!?A>)**./2..-.)%$.797...9;6......<>? !.%&)...GHE.........KLK...EJK=AC55023/..~.................L)..v.~R...)*.685...|}zYYV...oE(AFG.eZ/.EF@qqi"..mmdxL...............QPH....sKvE'....hHSTL881.........T3. %(..Z.bE......@@9......-".....vKC$...^.Z1.R4.e<..W...Z\c......._`Y/(".^;S*..oi8..\?=..N ....wwt......cd\...zS`8.l>#.i.W7.P,.x........3-'...u....}.lC.ZA.e=..cbeMQT.......VUT......LKD/...w^.....cV<,.{M.S8.gMzQ6........fgi..........v....pY..ywuj.S,..\fD2<9<EMU.........hha.pN...$........c..g..Zlko.........lZF.}l..h...........FB6<."...mM9..z..u=$.UG1E6!yaPwiY.............6.....IDATh...SSg...!k..0...s..'3..$....D.......B..."..^...H.......T..EE,....E....q...i]/k
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (2306), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):2306
                                                                        Entropy (8bit):5.191993497286019
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:CBCAF94CF2C68654C23D2FA971522E9E
                                                                        SHA1:0A49FFB52DF638C073A059823136A909EEBE1BAE
                                                                        SHA-256:164C3CBA5CE1923D067D50221C35E4C17508356B1A4DD1EAF3AA34AB85C3567A
                                                                        SHA-512:F66AC3679BD2ADCD8F375E945932C7DE1077C0F23CA00891D04B189F99E390C3FA7B7B4896481A4F15058EBC19F2732BDAA046BF66DA694E0DF81C88068F7F9D
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-runtime.js
                                                                        Preview:!function(e){function t(t){for(var n,a,i=t[0],c=t[1],l=t[2],p=0,s=[];p<i.length;p++)a=i[p],Object.prototype.hasOwnProperty.call(o,a)&&o[a]&&s.push(o[a][0]),o[a]=0;for(n in c)Object.prototype.hasOwnProperty.call(c,n)&&(e[n]=c[n]);for(f&&f(t);s.length;)s.shift()();return u.push.apply(u,l||[]),r()}function r(){for(var e,t=0;t<u.length;t++){for(var r=u[t],n=!0,i=1;i<r.length;i++){var c=r[i];0!==o[c]&&(n=!1)}n&&(u.splice(t--,1),e=a(a.s=r[0]))}return e}var n={},o={runtime:0},u=[];function a(t){if(n[t])return n[t].exports;var r=n[t]={i:t,l:!1,exports:{}};return e[t].call(r.exports,r,r.exports,a),r.l=!0,r.exports}a.e=function(e){var t=[],r=o[e];if(0!==r)if(r)t.push(r[2]);else{var n=new Promise((function(t,n){r=o[e]=[t,n]}));t.push(r[2]=n);var u,i=document.createElement("script");i.charset="utf-8",i.timeout=120,a.nc&&i.setAttribute("nonce",a.nc),i.src=function(e){return a.p+"js/twk-"+({}[e]||e)+".js"}(e);var c=new Error;u=function(t){i.onerror=i.onload=null,clearTimeout(l);var r=o[e];if(0!==r){
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:dropped
                                                                        Size (bytes):832
                                                                        Entropy (8bit):4.352583593893328
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:AFE7FC60ED757DB39A88D2950FCE69C9
                                                                        SHA1:E120B53E856848419275723E24A539359CF41B4A
                                                                        SHA-256:847EB36B4DC4B05F94052DCD98077319E74D882334A106BB9CA451BA211C9C2C
                                                                        SHA-512:0A529A65C5BBEB88AEC8927C3FAA86118F3406C3450EBE9903BAE8C3E985A8926AB3688E75098AAC7B23DB76A280E55AC95675400D11D0D253341665A9B2EA98
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m25 21.7q0.3 0 2.2 1t2 1.2q0 0.1 0 0.3 0 0.8-0.4 1.7-0.3 0.9-1.6 1.5t-2.2 0.6q-1.3 0-4.3-1.4-2.2-1-3.8-2.6t-3.3-4.2q-1.6-2.3-1.6-4.3v-0.2q0.1-2 1.7-3.5 0.5-0.5 1.2-0.5 0.1 0 0.4 0t0.4 0.1q0.4 0 0.6 0.1t0.3 0.6q0.2 0.5 0.8 2t0.5 1.7q0 0.5-0.8 1.3t-0.7 1q0 0.2 0.1 0.3 0.7 1.7 2.3 3.1 1.2 1.2 3.3 2.2 0.3 0.2 0.5 0.2 0.4 0 1.2-1.1t1.2-1.1z m-4.5 11.9q2.8 0 5.4-1.1t4.5-3 3-4.5 1.1-5.4-1.1-5.5-3-4.5-4.5-2.9-5.4-1.2-5.5 1.2-4.5 2.9-2.9 4.5-1.2 5.5q0 4.5 2.7 8.2l-1.7 5.2 5.4-1.8q3.5 2.4 7.7 2.4z m0-30.9q3.4 0 6.5 1.4t5.4 3.6 3.5 5.3 1.4 6.6-1.4 6.5-3.5 5.3-5.4 3.6-6.5 1.4q-4.4 0-8.2-2.1l-9.3 3 3-9.1q-2.4-3.9-2.4-8.6 0-3.5 1.4-6.6t3.6-5.3 5.3-3.6 6.6-1.4z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (15846), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):15846
                                                                        Entropy (8bit):5.236893337157778
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:0D3D21546A441253C44A8C1D274A485A
                                                                        SHA1:721F9007BF8FB314D6C6506BF837DC6FE573E684
                                                                        SHA-256:CE6EB52E07DC8DFB25E967FEFFBB8A20D4A4C9A31C99AB9A1B410253A3082A26
                                                                        SHA-512:1A1725ECF13666EBEF70AE119F1A18794FE2913AEA98F547F553CE800B33F074A1DDF7025053F4DB499CE87E55962EA50E371B8D0CF7175C1D441A42FF3D698B
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-48f46bef.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-48f46bef"],{6775:function(t,e,i){"use strict";(function(t){var a=i("5a60"),s=i("2f62"),n=i("f0b0"),r=i("87dd");function o(t,e){var i=Object.keys(t);if(Object.getOwnPropertySymbols){var a=Object.getOwnPropertySymbols(t);e&&(a=a.filter((function(e){return Object.getOwnPropertyDescriptor(t,e).enumerable}))),i.push.apply(i,a)}return i}function l(t){for(var e=1;e<arguments.length;e++){var i=null!=arguments[e]?arguments[e]:{};e%2?o(Object(i),!0).forEach((function(e){c(t,e,i[e])})):Object.getOwnPropertyDescriptors?Object.defineProperties(t,Object.getOwnPropertyDescriptors(i)):o(Object(i)).forEach((function(e){Object.defineProperty(t,e,Object.getOwnPropertyDescriptor(i,e))}))}return t}function c(t,e,i){return e in t?Object.defineProperty(t,e,{value:i,enumerable:!0,configurable:!0,writable:!0}):t[e]=i,t}e.a={name:"MessagePreview",components:{"i-frame":a.a,TawkChatInput:n.TawkChatInput,TawkCard:n.TawkCard,TawkIcon:n.TawkIcon,TawkAvatar:n.Tawk
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:JSON data
                                                                        Category:downloaded
                                                                        Size (bytes):3138
                                                                        Entropy (8bit):4.917588684862206
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:5154771DEA20E6DBA6A749D8764921D3
                                                                        SHA1:C573377147776D50076C65FCCD8AA20A78414A9D
                                                                        SHA-256:CE8359E275821F5EFF6D41096E8FD34F20889270337CE3F874F8EF79159C828A
                                                                        SHA-512:A0D0CCD018C0EEA08F320EFB26AF7EEF11531E67B9E049E4A035E66269526ED627CD32D6D44BE940C821412A0B13C162BB4F615A85499B706BF5ECBAA9049962
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://va.tawk.to/v1/widget-settings?propertyId=6424636a31ebfa0fe7f5631f&widgetId=1gsn29gk4&sv=undefined
                                                                        Preview:{"ok":true,"data":{"settingsVersion":"2-21-0","propertyName":"Tirta Law Office","branding":{"whitelabeled":false,"text":":tawky: Add free *live chat* to your site","url":"https://www.tawk.to/?utm_source=tawk-messenger&utm_medium=link&utm_campaign=referral&utm_term=6424636a31ebfa0fe7f5631f"},"widget":{"type":"inline","version":7,"language":"en","minimized":{"desktop":{"type":"round"},"mobile":{"type":"round"}},"maximized":{"desktop":{"height":0,"width":0}},"bubble":{"type":"image","config":{"width":124,"height":79,"zIndex":1,"rotate":0,"offsetX":0,"offsetY":30,"image":{"type":"gallery","content":"168"}}},"theme":{"header":{"text":"#ffffff","background":"#e1e61b"},"agent":{"messageText":"#ffffff","messageBackground":"#039746"},"visitor":{"messageText":"#333333","messageBackground":"#e5e5e5"}},"notification":{"all":{"estimatedWaitTime":false,"sound":true,"agentTyping":true,"visitorTyping":true,"tab":true},"desktop":{"preview":true},"mobile":{"preview":true}},"behavior":{"click":"max"},"vi
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (13521), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):13521
                                                                        Entropy (8bit):5.0112157191763815
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:950518E32FD92957181F766F08D3CF98
                                                                        SHA1:9FE20C86B818D3576E9D70E6ED091964CB8B7427
                                                                        SHA-256:2F56F47D64037D5AA3A96B50C840580E5549FEE6F9FAFFF8AF3D1821D189FA5C
                                                                        SHA-512:D4D2EA3B555F9E582B12652DDD2BFB32F555ACCDF9750EA576F13A7A020DF9E31A50D732FE95FDC72CFA8B254CA3149FF33FB7D2E1DB15CE68F1755D0673BE53
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/css/bubble-widget.css
                                                                        Preview:.tawk-tooltip:hover .tawk-tooltip-hover{opacity:1;transition:opacity .5s linear .5s}.tawk-tooltip .tawk-tooltip-hover{position:fixed;margin-top:8px;padding:4px 8px;border-radius:5px;background:#545454;color:#fff;text-align:center;font-size:.75rem;right:0;left:auto;opacity:0;transition:opacity 0s linear;z-index:2}.tawk-tooltip .tawk-tooltip-hover .tawk-tooltip-arrow{top:-16px;display:block;left:50%;border:8px solid transparent;border-bottom-color:#545454;position:absolute}.tawk-tooltip .tawk-tooltip-hover.bottom .tawk-tooltip-arrow{border-color:#545454 transparent transparent;bottom:-16px;top:auto}@font-face{font-family:tawk-font-icon;src:url(/fonts/tawk-font-icon-2.woff2?55755728) format("woff2"),url(/fonts/tawk-font-icon-2.woff?55755728) format("woff"),url(/fonts/tawk-font-icon-2.ttf?55755728) format("truetype"),url(/fonts/tawk-font-icon-2.svg?55755728#tawk-font-icon) format("svg");font-weight:400;font-style:normal;font-display:swap}.tawk-icon{font-family:tawk-font-icon;font-size:1.12
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):2228
                                                                        Entropy (8bit):7.82817506159911
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:EF9941290C50CD3866E2BA6B793F010D
                                                                        SHA1:4736508C795667DCEA21F8D864233031223B7832
                                                                        SHA-256:1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A
                                                                        SHA-512:A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.gstatic.com/recaptcha/api2/logo_48.png
                                                                        Preview:.PNG........IHDR...0...0.....W.......gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.......C......pHYs.................IDATh...P....=..8.....Nx. ..PlP8..;.C.1iL#6...*.Z..!......3.po .o.L.i.I..1fl..4..ujL&6$...............w...........,Z..z. ~.....\.._.C.eK...g..%..P..L7...96..q....L.....k6...*..,xz.._......B."#...L(n..f..Yb...*.8.;....K)N...H).%.F"Ic.LB.........jG.uD..B....Tm....T..).A.}D.f..3.V.....O.....t_..].x.{o......*....x?!W...j..@..G=Ed.XF.........J..E?../]..?p..W..H..d5% WA+.....)2r..+..'qk8.../HS.[...u..z.P.*....-.A.}.......I .P.....S....|...)..KS4....I.....W...@....S.s..s..$`.X9.....E.x.=.u.*iJ...........k......'...!.a....*+.....(...S..\h....@............I.$..%.2....l......a.|.....U....y.....t..8....TF.o.p.+.@<.g........-.M.....:.@..(.......@......>..=.ofm.WM{...e..,..D.r.......w....T.L.os..T@Rv..;.....9....56<.x...........2.k.1....dd.V.....m..y5../4|...G.p.V.......6...}.....B........5...&..v..yTd.6...../m.K...(.
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
                                                                        Category:downloaded
                                                                        Size (bytes):15552
                                                                        Entropy (8bit):7.983966851275127
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:285467176F7FE6BB6A9C6873B3DAD2CC
                                                                        SHA1:EA04E4FF5142DDD69307C183DEF721A160E0A64E
                                                                        SHA-256:5A8C1E7681318CAA29E9F44E8A6E271F6A4067A2703E9916DFD4FE9099241DB7
                                                                        SHA-512:5F9BB763406EA8CE978EC675BD51A0263E9547021EA71188DBD62F0212EB00C1421B750D3B94550B50425BEBFF5F881C41299F6A33BBFA12FB1FF18C12BC7FF1
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                                                        Preview:wOF2......<...........<Z.........................d..z..J.`..L.\..<.....<.....^...x.6.$..6. .... ..S..}%.......|....x..[j.E...d..-A...]=sjf$X.o.5......V....i?}.\...;...V......5..mO=,[.B..d'..=..M...q...8..U'..N..G...[..8....Jp..xP...'.?....}.-.1F.C.....%z..#...Q...~.~..3.............r.Xk..v.*.7t.+bw...f..b...q.W..'E.....O..a..HI.....Y.B..i.K.0.:.d.E.Lw....Q..~.6.}B...bT.F.,<./....Qu....|...H....Fk.*-..H..p4.$......{.2.....".T'..........Va.6+.9uv....RW..U$8...p...........H5...B..N..V...{.1....5}p.q6..T...U.P.N...U...!.w..?..mI..8q.}.... >.Z.K.....tq..}.><Ok..w.. ..v....W...{....o...."+#+,..vdt...p.WKK:.p1...3`. 3.......Q.].V.$}.......:.S..bb!I...c.of.2uq.n.MaJ..Cf.......w.$.9C...sj.=...=.Z7...h.w M.D..A.t.....]..GVpL...U(.+.)m..e)..H.}i.o.L...S.r..m..Ko....i..M..J..84.=............S..@......Z.V.E..b...0.....@h>...."$.?....../..?.....?.J.a,..|..d...|`.m5..b..LWc...L...?.G.].i...Q..1.:..LJV.J...bU.2.:\.kt.......t.....k....B..i.z+...........A.....
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (11056), with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):11056
                                                                        Entropy (8bit):5.241385750677578
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:A92075FD9AC5BA130387A80453676099
                                                                        SHA1:4B5B13CF9479B8311D574356E53F8DA74200C57A
                                                                        SHA-256:544039B2FF06226AFD008C3625818BBFE76A2598D7159145D06965AFAF4F09DE
                                                                        SHA-512:9CCABE55B0EBC16B5B9E5DEC07EE5497F4221118E4FD071D30077DD66C8866982464B434E8547EEAA3F737A0014B24A27C60A1FF56904A7212D3AFB240EE3148
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-chunk-f163fcd0.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["chunk-f163fcd0"],{3519:function(e,t,a){"use strict";var s=a("f25b").a,i=a("2877"),n=Object(i.a)(s,(function(){var e=this,t=e.$createElement,a=e._self._c||t;return a("div",{directives:[{name:"show",rawName:"v-show",value:!e.isLoading,expression:"!isLoading"}],ref:"tawk-chat-message-container",staticClass:"tawk-chat-message-container tawk-margin-small-top"},[a("transition-group",{attrs:{name:"list"}},e._l(e.messageBlocks,(function(t){return a("div",{key:t.blockId,ref:t.blockId,refInFor:!0,staticClass:"tawk-margin-small-bottom tawk-flex tawk-flex-bottom tawk-message-block",attrs:{id:"blockId-"+t.blockId}},["call"===t.messageType?[t.callData&&!t.callData.hasError?a("tawk-alert",{staticStyle:{width:"100%"},attrs:{status:e.callStatus(t.callData),title:e.callTitle(t.callData),description:e.callDescription(t.callData),icon:e.callIcon(t.callData)}}):a("tawk-alert",{staticStyle:{width:"100%"},attrs:{status:"danger",title:e.$i18n("chat","error_title
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text
                                                                        Category:downloaded
                                                                        Size (bytes):65995
                                                                        Entropy (8bit):5.528925253306563
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:EF2CE2C45594183931FFF5C9C5D9A1DF
                                                                        SHA1:45CA0AA8C0169688E05EEFCE946D757DD73B2BA1
                                                                        SHA-256:3DC22AA871D59D108DBB8F68AFC56D5B36E67219685F51E1AF3F2BDD07D6498A
                                                                        SHA-512:7CFA432A1BB62A7DB4A3F1E2F12B577E3F25D14A49C50B99144BA1C6FE7667A737404E952FFB1E2C3A949A9AD77FFC82F37589C6258FA1FDF27C1CD1D1D6B23D
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://fonts.googleapis.com/css?family=Montserrat%3A100%2C100italic%2C200%2C200italic%2C300%2C300italic%2Cregular%2Citalic%2C500%2C500italic%2C600%2C600italic%2C700%2C700italic%2C800%2C800italic%2C900%2C900italic%7COpen+Sans%3A300%2C300italic%2Cregular%2Citalic%2C600%2C600italic%2C700%2C700italic%2C800%2C800italic%7COpen+Sans+Condensed%3A300%2C300italic%2C700&ver=5.4
                                                                        Preview:/* cyrillic-ext */.@font-face {. font-family: 'Montserrat';. font-style: italic;. font-weight: 100;. src: url(https://fonts.gstatic.com/s/montserrat/v25/JTUQjIg1_i6t8kCHKm459WxRxC7mw9c.woff2) format('woff2');. unicode-range: U+0460-052F, U+1C80-1C88, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;.}./* cyrillic */.@font-face {. font-family: 'Montserrat';. font-style: italic;. font-weight: 100;. src: url(https://fonts.gstatic.com/s/montserrat/v25/JTUQjIg1_i6t8kCHKm459WxRzS7mw9c.woff2) format('woff2');. unicode-range: U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;.}./* vietnamese */.@font-face {. font-family: 'Montserrat';. font-style: italic;. font-weight: 100;. src: url(https://fonts.gstatic.com/s/montserrat/v25/JTUQjIg1_i6t8kCHKm459WxRxi7mw9c.woff2) format('woff2');. unicode-range: U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;.}./* latin-ext */.@font-face {
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with very long lines (4372)
                                                                        Category:downloaded
                                                                        Size (bytes):173802
                                                                        Entropy (8bit):5.5428601544654965
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:D67B107E657C9D023B7083109E6F6D66
                                                                        SHA1:7265BFE1AC4F13502A15A7BAC898078230297033
                                                                        SHA-256:26FFD7DDEB820E19ACE68B734A0B2FC6E9130D180EF54A88DD2E1C4750FE15DD
                                                                        SHA-512:06A757504FE1DFF5C158AFFBC210BDB48F81CD71935DE0EF349DB682FFF8FB85237280E40EDCEB3EF392C510C816F2638997FF989D1C87FC1607BC05ABCD2E94
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://www.googletagmanager.com/gtag/js?id=UA-206746715-1
                                                                        Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"function":"__c","vtp_value":"undefined"}],. "tags":[{"function":"__ogt_1p_data_v2","priority":2,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":true,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNameValue":"","vtp_streetValue":"","vtp_lastNameType":"CSS_SELECTOR","vtp_isEnabled":true,"vtp_autoAddressEnabled":true,"vtp_regionValue":"","vtp_countryValue":"","vtp_isAutoCollectPiiEnable
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:ASCII text, with no line terminators
                                                                        Category:downloaded
                                                                        Size (bytes):151
                                                                        Entropy (8bit):4.830399334426474
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:E736E189EDB5D0D9D5B8E7F23DD9114A
                                                                        SHA1:BCABEE193F13756FA9154FC492FE420C47140343
                                                                        SHA-256:13CF82E6F9D48221CD55F8B3C3D206F7BDB83F291034B478E484CCFEF7D500DD
                                                                        SHA-512:EA972884C185633EA238BDACEA6AC9DA0E0E92F88588CD85C214514C3597BC7D811C4DC4CD35B671DD2DB97179BEDCEB38BD5D200ABB9653FBCAEAC2CA6EC7B5
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://embed.tawk.to/_s/v4/app/642b759ae8c/js/twk-app.js
                                                                        Preview:(window.tawkJsonp=window.tawkJsonp||[]).push([["app"],[function(n,o,p){n.exports=p("56d7")}],[[0,"runtime","vendor","chunk-vendors","chunk-common"]]]);
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:SVG Scalable Vector Graphics image
                                                                        Category:downloaded
                                                                        Size (bytes):301
                                                                        Entropy (8bit):5.031371107984661
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:C6E9BE45643E197CE1DB1D7E24A99ADC
                                                                        SHA1:D7338E398BB0F7A9082D24F121140D2CF9E88859
                                                                        SHA-256:768D97EC0916217AE82C70AEDA3A61B9B0DAB344EDC4A3240A4F7CD94AF00307
                                                                        SHA-512:8033A55B544066ACEB01404F0102D7651E9D731EBC04A164A831FC32006F826F4169929DA42363D818B93CFA3A04B3568E26621B26B73D1CDF00FAAE23887345
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://platform-cdn.sharethis.com/img/facebook.svg
                                                                        Preview:<svg xmlns="http://www.w3.org/2000/svg" fill="#fff" preserveAspectRatio="xMidYMid meet" height="1em" width="1em" viewBox="0 0 40 40">. <g>. <path d="m21.7 16.7h5v5h-5v11.6h-5v-11.6h-5v-5h5v-2.1c0-2 0.6-4.5 1.8-5.9 1.3-1.3 2.8-2 4.7-2h3.5v5h-3.5c-0.9 0-1.5 0.6-1.5 1.5v3.5z"></path>. </g>.</svg>..
                                                                        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                        File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                        Category:downloaded
                                                                        Size (bytes):1048
                                                                        Entropy (8bit):7.728294815680113
                                                                        Encrypted:false
                                                                        SSDEEP:
                                                                        MD5:6271A8CA09EE8E78C9AA95B7E968CF35
                                                                        SHA1:9AAF25EA353FC7F68CE308EE031DC8A6EA1DA33D
                                                                        SHA-256:9A8D6FEC895B72510A781F8C72643450F7CDAC47E65136DE8C132526E9BCCC30
                                                                        SHA-512:ACF753A0AD71E1FE56BDC2A9E36CBCE2496591CE4C4C3F92635415808D2E38CCFB472D27E7DAAE4DA8D9E51BD700399BD2602F3451B78DE6B5923D6D6278DCD8
                                                                        Malicious:false
                                                                        Reputation:low
                                                                        URL:https://c.sharethis.mgr.consensu.org/static/media/gear.png
                                                                        Preview:.PNG........IHDR...@...@......iq.....sBIT....|.d.....pHYs.................IDATx...kNq.._...F.v...PZ)Q..p.....R~$.l)ee...H..XJ\.7R.......d.4......<kO.s...q....u^...|?...{..../HHHHHHHH..#.g [`?.K@U|.......+.qQ..u...*..T.U...4|..3]..'..h.f(|R..J.M...i.X.Y..C^.....}E..d..>....9..`o(..`=0Dq...'.O....uz.j..m...#6".._.=.Z`.".W..B....e9.R..u\k...?.QQ[....."(............-........o.h_..E...._.B{..<#0)..bL..P.b.R.=C...6-.|d.Ff.....O.oP.@..\C.=F.V1..f.7...b.Q..n......#P..9.#*.:.....~...L...~B=.../+rd.38..+.W......Y.JT.X.B.Z&V..l...Y.p......5.{.0..8o..T...-...#y.5..z.&N[&..+.&....L5........b....)..8.M.C........-.......... h...v^,.n>.]...\.H........<.l:.EF.A.....1......G...}D.,..0..=..B.s.O.U;.Y..1-..i.;. ~.F.....f..(.'d.&.D.S...Ba..(/{.,.Y.t....Z5.......m.96.t.4&.;. ... e.....W.......Dx..p.A.A...A.F....W.6..:B.iq@$Gv..'...6B....4Q~....V..&J_.x..B.......A65....7......K...x!.....:<r....V.8....a......>....\....,.\.,..;~..E..JMj..K.esM...u@dS.7E.5|~!..H...nh.
                                                                        No static file info